GNU social JP
  • FAQ
  • Login
GNU social JPは日本のGNU socialサーバーです。
Usage/ToS/admin/test/Pleroma FE
  • Public

    • Public
    • Network
    • Groups
    • Featured
    • Popular
    • People

Conversation

Notices

  1. Embed this notice
    Sarah Jamie Lewis (sarahjamielewis@mastodon.social)'s status on Friday, 01-Nov-2024 07:39:49 JST Sarah Jamie Lewis Sarah Jamie Lewis

    Auto updates are one of those things that are probably a good thing when applied at a population level, but have really rough edges.

    I hate them, I never want them. The software was working, and then it wasn't. stop making me jump through hoops to do the thing I was doing perfectly fine 20 minutes ago.

    In conversation Friday, 01-Nov-2024 07:39:49 JST from mastodon.social permalink
    • Mr. Bill, Rich Felker, Elias and Charlie Stross repeated this.
    • Embed this notice
      Sarah Jamie Lewis (sarahjamielewis@mastodon.social)'s status on Friday, 01-Nov-2024 08:13:15 JST Sarah Jamie Lewis Sarah Jamie Lewis
      in reply to

      My spicy take is that auto updates are a security vulnerability best classified as "arbitrary code execution".

      In conversation Friday, 01-Nov-2024 08:13:15 JST permalink
    • Embed this notice
      Ariane (nahratzah@mstdn.social)'s status on Friday, 01-Nov-2024 18:43:44 JST Ariane Ariane
      in reply to

      @sarahjamielewis We always are afraid of the google voice updates. Because we use text-to-speech to speak, and that uses those datafiles.

      And when there's an update, they'll wipe my settings and make me talk different.

      In conversation Friday, 01-Nov-2024 18:43:44 JST permalink
    • Embed this notice
      Rich Felker (dalias@hachyderm.io)'s status on Friday, 01-Nov-2024 18:47:45 JST Rich Felker Rich Felker
      in reply to

      @sarahjamielewis They're not even *good* at population level. They're a sloppy mitigation for software provider failing to provide non-RCE ways to shut off vulnerable functionality or vectors for attackers to access & exploit the vulnerability.

      In conversation Friday, 01-Nov-2024 18:47:45 JST permalink

Feeds

  • Activity Streams
  • RSS 2.0
  • Atom
  • Help
  • About
  • FAQ
  • TOS
  • Privacy
  • Source
  • Version
  • Contact

GNU social JP is a social network, courtesy of GNU social JP管理人. It runs on GNU social, version 2.0.2-dev, available under the GNU Affero General Public License.

Creative Commons Attribution 3.0 All GNU social JP content and data are available under the Creative Commons Attribution 3.0 license.