-
Licaon_Kter
Hosting on Linux? https://www.bleepingcomputer.com/news/security/linux-kernel-prior-to-508-vulnerable-to-remote-code-execution/
-
perflyst
https://security-tracker.debian.org/tracker/CVE-2019-11815
-
perflyst
no fixes yet
-
perflyst
you could just disable it via modprobe.d
-
Link Mauve
perflyst, “no fixes yet”?
-
Link Mauve
It says there that it’s been fixed in 5.0.8+ and 4.19.37+.
-
Link Mauve
pea, you’re blinking a lot.
-
perflyst
dont think anyone uses sid in prod
-
perflyst
either buster or stretch
-
pea
perflyst, I run Linux 5.1.1 in production, and I don’t use Sid.
-
pep.
I also use 5+ in prod and I don't use Sid
-
Licaon_Kter
pea: 5.1 here...
-
Licaon_Kter
*Buster lol
-
MattJ
You two
-
perflyst
you run Debian with a 5.0 kernel?
-
perflyst
crazy dudes
-
MattJ
No, they use Archlinux and they are proud of that fact :)
-
perflyst
ah, makes sense arch on your workstation is OK, but on a server uuh. next time gentoo on server?
-
pea
Not especially proud of anything, I just use something which works.
-
pea
perflyst, why would it be uuh?
-
perflyst
because it is gentoo
-
pea
ArchLinux isn’t Gentoo, no.
-
pep.
MattJ, as linkmauve says, not particularly proud of it. (Not ashamed either). I just don't like when people wrongly assume Debian
-
reset
Ppl assume debian coz thats what any normal person would use
-
pep.
whatever
-
reset
🙃
-
Licaon_Kter
perflyst: only way to have Debian arm64 on RPi3+ is Buster
-
Licaon_Kter
*with custom build Raspbian kernel