• OsrsNeedsF2P@lemmy.ml
      link
      fedilink
      arrow-up
      1
      ·
      7 hours ago

      As someone who loves the old designs (I’ve run Chicago95 for years now), the only thing stopping me from running CDE is it lacks first-class support from any distro I’ve used

  • germanatlas@lemmy.blahaj.zone
    link
    fedilink
    arrow-up
    81
    arrow-down
    5
    ·
    2 days ago

    no real-world use found for staying more than one version behind

    The ssh vulnerability didn’t affect Debian because the packages were too many versions behind

    • bisby@lemmy.world
      link
      fedilink
      English
      arrow-up
      16
      ·
      2 days ago

      Except this isn’t true at all.

      https://security-tracker.debian.org/tracker/CVE-2024-6387

      Regresshion impacted bookworm and trixie both. Buster was too old.

      With the downside of me doing an apt update and seeing that openssh-server was on 1:9.2p1-2+deb12u3 and I had no idea at a glance if this included the fix or not (qualys’s page states version 8.5p1-9.8p1 were vulnerable).

      If you are running debian bookworm or trixie, you absolutely should update your openssh-server package.

    • azvasKvklenko@sh.itjust.works
      link
      fedilink
      English
      arrow-up
      39
      ·
      2 days ago

      AFAIK, the xz vulnerability was designed for Debian based on its workaround fixing systemd service status detection. Even if it shipped to something like Arch, the malicious code wouldn’t load.

  • marduk@lemmy.sdf.org
    link
    fedilink
    arrow-up
    26
    arrow-down
    1
    ·
    2 days ago

    The “install lib-blah-blah-blah” bit doesn’t bother me 'cause whenever I need to make something work, I just copy and paste the “sudo apt install …” commands straight from the internet :)

  • lemmyvore@feddit.nl
    link
    fedilink
    English
    arrow-up
    12
    arrow-down
    2
    ·
    2 days ago

    I would uninstall the screensaver so fast if I saw a nag screen. Wtf it’s a screensaver, what does it matter? I’ll use a version that’s 50 years old if I want to.

    • bisby@lemmy.world
      link
      fedilink
      English
      arrow-up
      20
      ·
      2 days ago

      Because the dev gets a huge number of bug reports for bugs that were resolved 5 versions ago.

      They actually asked debian to stop shipping the screensaver, because they were getting tired of saying “this is already fixed, debian is just not going to ship the fix for another year”. Debian didn’t want to stop, so the dev added the nag screen, because it was the only way to stop the flood of bug reports for things that were already fixed.

        • Malfeasant@lemmy.world
          link
          fedilink
          arrow-up
          2
          ·
          5 hours ago

          Lololololololol. No, they do not. I support a product that gets updated roughly quarterly, and the number of times people complain about their vulnerability scanner finding something when they’re on a 4 year old version is too damn high.

        • OsrsNeedsF2P@lemmy.ml
          link
          fedilink
          arrow-up
          1
          ·
          7 hours ago

          Lots of people simply don’t know.

          Source: I filed bug reports to Fcitx when I first installed Debian, because I didn’t realize Debian shipped packages from the before the stone ages

        • bisby@lemmy.world
          link
          fedilink
          English
          arrow-up
          8
          ·
          1 day ago

          Should they? Yes. They should also be searching for previous bug reports. I’m sure a lot of people do. But if you have enough users, even if 1% of people don’t use good reporting behaviors, you wind up with a lot of duplicate or bad reports.

          There are plenty of blog posts out there that basically can be summarized as talking about how grueling open source work can be because users are often aggressive in their demands.

          But this is a prime example of debian “stable” doesn’t mean “no crashes” but instead it means “unchanging, which means any bugs and crashes will remain for the whole release”

  • Bob@lemmy.world
    link
    fedilink
    English
    arrow-up
    2
    ·
    1 day ago

    Debian was the first distro I tried when switching to Linux. Didn’t ever make it through the install process…

      • OsrsNeedsF2P@lemmy.ml
        link
        fedilink
        arrow-up
        2
        ·
        7 hours ago

        Was he supposed to start with a higher skill level or something? That’s like the “just be born richer” attitude of tech

        • Siegfried@lemmy.world
          link
          fedilink
          arrow-up
          2
          ·
          5 hours ago

          Nah, it sounded funny…

          “Just be born richer” sounds funnier though

          Anyway, Debian had a reputation of being really difficult to install in the late 2000’s. I probably got lucky with it. I started using it in 2011 (first time using linux and a computer illiterate just as today) and i went through it just the MS way, like “whatever, continue, continue”.

          It’s my main OS since 2013

  • Engywuck@lemm.ee
    link
    fedilink
    arrow-up
    29
    arrow-down
    21
    ·
    2 days ago

    I know this is just a meme, but the “Stop using xxx!” posts are really annoying.