this post was submitted on 08 Jul 2025
11 points (100.0% liked)

Linux

2027 readers
1 users here now

Everything about Linux

RULES

founded 2 years ago
MODERATORS
top 2 comments
sorted by: hot top controversial new old
[โ€“] lurch@sh.itjust.works 5 points 1 week ago (1 children)

AFAIK they are already patched, because the company I work for has already applied an Ubuntu update on various hosts to address this. (I saw the ticket being closed.)

[โ€“] LeFrog@discuss.tchncs.de 5 points 1 week ago* (last edited 1 week ago)

I think this is the regular modus operandi in these days: CVD

In computer security, coordinated vulnerability disclosure (CVD, sometimes known as responsible disclosure) is a vulnerability disclosure model in which a vulnerability or an issue is disclosed to the public only after the responsible parties have been allowed sufficient time to patch or remedy the vulnerability or issue.

So the devs get enough time to prepare a fix before the public gets informed that they should update their software.