Alt account of @Badabinski

Just a sweaty nerd interested in software, home automation, emotional issues, and polite discourse about all of the above.

  • 0 Posts
  • 410 Comments
Joined 1 year ago
cake
Cake day: June 9th, 2024

help-circle










  • I dunno, I’d slow your roll on that. Hanlon’s razor came to notoriety in the field of computer science for a reason. I’ve done software dev professionally for over ten years now and you wouldn’t believe the stupid shit I’ve seen people write. The only thing that sucks more than a computer is the human writing software for it.

    For those unfamiliar, here’s Hanlon’s razor:

    Never attribute to malice that which is adequately explained by stupidity.

    EDIT: After a quick look at the CVEs, this definitely sounds like a big ol’ fuckup. It sounds like there might be some unsafe defaults in polkit as well?

    EDIT: Here’s the report from the actual researchers which is MUCH more cogent than OP’s article: https://www.openwall.com/lists/oss-security/2025/06/17/4

    It’s chaining two separate oopsies together. This overview on GitHub also provides more details about the libblockdev side of things: https://github.com/advisories/GHSA-mpgj-hch9-5rvx

    Specifically, this section:

    However, a local attacker can create a specially crafted XFS image containing a SUID-root shell, then trick udisks into resizing it. This mounts their malicious filesystem with root privileges, allowing them to execute their SUID-root shell and gain complete control of the system.

    That really doesn’t sound like something intentional to me. That sounds like a HUGE oopsy-woopsy fucky-wucky, to get technical about it.


  • Absolutely fucking yes w.r.t. the characters being stupid in the show. In the books, the people from Preservation are incredibly competent.

    TV SHOW AND BOOK SPOILERS

    As an example, book Mensah would NOT have had a fucking panic attack dragging a sensor up a mountain alone because she would not have been foolish enough to put herself in that situation. Book Mensah does not take needless risks. She only does inadvisable things when her moral code requires her to do so.

    Mensah and the other preservation folks are acting too much like the corporates. The books show you that living under a corporate boot makes you stunted and limited because that’s a natural consequence of the profit-focused environment they create. Preservation cares about people, so the people from there are well rounded and don’t do stupid things quite as often.

    It’s really hurting my enjoyment of the show. Why can’t we have competence porn like we used to with shows like TNG and DS9?





  • Each VM can be sized appropriately for the demands of the container. With docker desktop, you can’t have a container use all of your system cores without making the VM have access to all of your cores all the time always. One of the biggest benefits (imo) of running containers on a Linux workstation is that if you don’t define a CPI limit, a container can use all the compute/memory on your system. You just can’t do that with Docker desktop. This also affects multi threaded container builds when you’re using buildkit.

    Being able to spin up a vm to build a container with all cores accessible to it, and then run the actual container with a smaller number of cores would make container builds so much faster.

    EDIT: I’ve looked, and it appears that podman desktop also does 1 big VM, rather than having 1 VM per container.



  • For people like me who didn’t know what this was:

    Stremio offers a secure, modern and seamless entertainment experience. With its easy-to-use interface and diverse content library, including 4K HDR support, users can enjoy their favorite movies and TV shows across all their devices. And with its commitment to security, Stremio is the ultimate choice for a worry-free, high-quality streaming experience.

    edit: honestly, that’s a shitty description. This one seems a bit better:

    Stremio is a modern media center that gives you the freedom to watch everything you want.