this post was submitted on 14 May 2026
44 points (97.8% liked)

Linux

13670 readers
48 users here now

A community for everything relating to the GNU/Linux operating system (except the memes!)

Also, check out:

Original icon base courtesy of lewing@isc.tamu.edu and The GIMP

founded 2 years ago
MODERATORS
top 2 comments
sorted by: hot top controversial new old
[โ€“] Lojcs@piefed.social 14 points 3 days ago

However, it is in the same surface and the mitigation is the same as for dirtyfrag.

phew

[โ€“] Badabinski@kbin.earth 4 points 2 days ago

Where's the CVE? Was there an attempt at responsible disclosure? Was confidentiality breached? Did they coordinate this release with the devs like the dirtyfrag people did? This "announcement" doesn't answer any of these questions and I am frustrated by it.

EDIT: Ok, there IS a CVE: https://security-tracker.debian.org/tracker/CVE-2026-46300