486

transcriptScreenshot of github showing part of the commit message of this commit with this text:

Remove the backdoor found in 5.6.0 and 5.6.1 (CVE-2024-3094).

While the backdoor was inactive (and thus harmless) without inserting
a small trigger code into the build system when the source package was
created, it's good to remove this anyway:

  - The executable payloads were embedded as binary blobs in
    the test files. This was a blatant violation of the
    Debian Free Software Guidelines.

  - On machines that see lots bots poking at the SSH port, the backdoor
    noticeably increased CPU load, resulting in degraded user experience
    and thus overwhelmingly negative user feedback.

  - The maintainer who added the backdoor has disappeared.

  - Backdoors are bad for security.

This reverts the following without making any other changes:

The sentence "This was a blatant violation of the Debian Free Software Guidelines" is highlighted.

Below the github screenshot is a frame of the 1998 film The Big Lebowski with the meme caption "What, are you a fucking park ranger now?" from the scene where that line was spoken.

you are viewing a single comment's thread
view the rest of the comments
[-] Plasma@lemmy.ml 235 points 8 months ago

Backdoors are bad for security ๐Ÿ˜†๐Ÿ˜†

[-] shootwhatsmyname@lemm.ee 98 points 8 months ago

oh dang removes backdoor from my house

[-] unreachable@lemmy.world 29 points 8 months ago

OnlyF~~ans~~rontDoor

[-] Potatos_are_not_friends@lemmy.world 20 points 8 months ago

Hell yeah. Make the windows difficult to enter, and now you have a singular point of entry.

Then put a gun turret there.

[-] frezik@midwest.social 13 points 8 months ago

Your house isn't truly secure until you have a lava moat, and other ideas I came up with when I was eight.

[-] eatham@aussie.zone 6 points 8 months ago

Just remove the windows

[-] waspentalive@lemmy.one 6 points 8 months ago* (last edited 8 months ago)

Don't remove the back door from your house, bar it with a sturdy 2x4 that holds it closed. Just be sure to use a 2x4 that is not made weak by the application of a specific chemical that only the secret bad guy knows about.

this post was submitted on 11 Apr 2024
486 points (96.0% liked)

Programmer Humor

32651 readers
231 users here now

Post funny things about programming here! (Or just rant about your favourite programming language.)

Rules:

founded 5 years ago
MODERATORS