Category: Blog

Threat Model and Vulnerability Assessment Features in the Linux Kernel

Linus Torvalds accepted a document into the kernel that outlines the process for handling security-related bugs, defining the threat model, clarifying which kernel bugs are considered vulnerabilities, and discussing actions regarding bugs identified using AI. The document was prepared by Willy Tarreau, author of HAProxy and a long-time Linux kernel developer responsible for maintaining several stable kernel branches. In […]

Release of Erlang/OTP 29

The release of the functional programming language Erlang 29 has taken place, aimed at the development of distributed fault-tolerant applications that ensure real-time parallel request processing. The language has found applications in areas such as telecommunications, banking systems, e-commerce, computer telephony, and instant messaging. At the same time, the release of OTP 29 (Open Telecom Platform) has been issued — a companion set of libraries and components for […]

OpenZFS 2.4.2

The release of OpenZFS 2.4.2 has occurred, a corrective release of the open implementation of the ZFS file system for Linux and FreeBSD. The main change in the new version is support for the stable branch of Linux 7.0. The previous OpenZFS 2.4 release supported Linux kernels only up to 6.19, while compatibility with older kernels is maintained starting from Linux 4.18. For FreeBSD, support is declared for releases 13.3 and newer, […]

The IBM s390 architecture has received Rust support in the Linux kernel.

IBM engineer Jan Polensky has submitted the first patch set for review, which adds the ability to build the kernel with Rust support for s390. As a result, s390 has become the sixth architecture vying to include Rust in the main Linux kernel. Previously, architectures such as x86_64, ARM, LoongArch, and RISC-V already had this support. s390 is a mainframe architecture, with a history that dates back to 1964 with […]

The new versions of Wine 11.9 and Wine-staging 11.9

An experimental release of the open implementation of the Win32 API — Wine 11.9 — has been published. Since the release of 11.8, 24 bug reports have been closed and 197 changes made. The most significant updates include: the inclusion of the SQLite 3.51.1 library, initial support for system threads, added functions for creating threads using pthread in ntdll, and support for pausing threads in emulated code […]

Rocky Linux has launched a repository for the prompt resolution of vulnerabilities

The developers of the Rocky Linux distribution have announced the creation of a separate repository for urgent package updates addressing vulnerabilities, which is not synchronized with the Red Hat Enterprise Linux repositories. It is noted that the Rocky Linux project adheres to the principle of closely matching the RHEL package base, but recent security threats necessitate this exception. The "security" repository will only publish […]

QEMUtiny — vulnerabilities in QEMU that allow access to the host environment from the guest system.

Researchers who recently discovered the Fragnesia vulnerability in the Linux kernel have published information about vulnerabilities in QEMU that allow gaining root access to the host environment from the guest system. The issue has been codenamed QEMUtiny, but a CVE identifier has not yet been assigned. An exploit has been prepared that involves two vulnerabilities in the CXL (Compute Express Link) device emulation code. Both vulnerabilities are present in the cxl-mailbox-utils.c code. […]

Revisiting the decision to create the Fedora AI Developer Desktop edition

The Fedora Project Council has revoked its earlier decision to create Fedora AI Developer Desktop — an official edition of the distribution for developers using AI tools. Initially, all six council members voted in favor of creating the project, but after reviewing the criticisms voiced during community discussions, two members changed their votes a few days later and expressed […]

A vulnerability in the Linux pidfd subsystem allowing unauthorized access to user-inaccessible files.

A critical vulnerability has been identified in the Linux kernel, the fifth (1, 2, 3) in the last two weeks, allowing a user to escalate their privileges in the system. Two working exploits have been published: sshkeysign_pwn allows an unprivileged user to read the contents of the private host SSH keys /etc/ssh/ssh_host_*_key, while chage_pwn enables reading the contents of the /etc/shadow file containing user password hashes. Information about the vulnerability was not intended for disclosure, […]

Test Days for Podman 6.0

The Fedora Project has announced a series of Test Days for Podman 6.0 — the next major release of the container engine developed as an alternative to Docker without a central daemon. Testing for the new branch runs from May 11 to 15 and targets both developers and regular Fedora users. Podman 6.0 will be one of the largest updates for the project in recent times. […]

The Linux Foundation has released the automotive distribution AGL UCB 21.0 and the SoDeV platform

The Linux Foundation has introduced the twenty-first release of the AGL UCB (Automotive Grade Linux Unified Code Base) distribution, under which a universal platform is developed for use in various automotive subsystems, from dashboards to automotive infotainment systems. At the same time, the first release of the AGL SoDeV (Software Defined Vehicle) reference platform has been presented, designed for creating software-defined automotive systems based on […]

The migration of the JavaScript platform Bun to the Rust language has been approved

Jarred Sumner, the creator and lead developer of the server-side JavaScript platform Bun, recognized the successful experiment of rewriting the project from Zig and Rust using the AI assistant Claude Code, and decided to migrate Bun to Rust. The rewritten version in Rust has already been accepted into the project's main repository, while the Zig code is scheduled for removal. […]

Buy reliable website hosting with DDoS protection, VPS VDS servers 🔥 Buy reliable website hosting with DDoS protection, VPS VDS servers | ProHoster