/srv/irclogs.ubuntu.com/2024/03/29/#ubuntu-discuss.txt

=== JanC is now known as Guest9843
=== JanC_ is now known as JanC
lotuspsychjewelcome to the community ironbear 04:03
ironbearHello All04:03
ironbearlotuspsychje: thanks04:04
ironbearSo is this the thread to talk to experienced users?04:05
lotuspsychjeevery quality ubuntu discussion fits here ironbear 04:06
lotuspsychjeexpert or novice04:07
Bashing-omironbear: ironbear: Well -- there are experienced users that frequent this channel :D04:07
ironbearI ran into an issue with a bug on my cpu even after just changing over from windows on an older machine (10ish years old)04:08
ironbearMDS CPU bug present and SMT on, data leak possible. See https://www.kernel.org/doc/html/latest/admin-guide/hw-vuln/mds.html for more details.04:08
ironbearwent to the website and tried to fix but it feel like im hitting a wall with permissions.04:09
lotuspsychje!usn | ironbear 04:10
ubottuironbear: Please see https://usn.ubuntu.com/ for information about recent Ubuntu security updates.04:10
ironbearlotuspsychje and ubuttu: thanks havent seen this site yet04:12
sarnoldlotuspsychje: if ironbear returns https://wiki.ubuntu.com/SecurityTeam/KnowledgeBase/MDS04:29
lotuspsychjeah nice tnx sarnold 04:29
=== guiverc2 is now known as guiverc
=== JanC is now known as Guest7658
=== JanC_ is now known as JanC
=== JanC is now known as Guest6853
=== JanC_ is now known as JanC
=== arraybolt3 is now known as arraybolt3-dange
=== arraybolt3-dange is now known as arraybolt3-cmp
pragmaticenigmahey leftyfb ... I wonder if this is the source of the SSH traffic up-tick being seen: https://arstechnica.com/security/2024/03/backdoor-found-in-widely-used-linux-utility-breaks-encrypted-ssh-connections/19:30
leftyfbthe vulnerable package was never released19:31
pragmaticenigmaIt did make it into the released beta for Fedora 4019:32
oerheks5.4.619:33
pragmaticenigmatimings are a bit off though... Fedora 40B was released march 26, your chart showed the sustained attempts starting the 2119:33
oerheks"In some cases, the backdoor has been unable to work as intended."19:34
leftyfbI doubt verymuch this is related19:34
pragmaticenigmaThe article does mention this person has been very active contributor for xz source for the last couple years19:36
pragmaticenigmathough it sounds like the vulnerability was rather blatently added as if they were running out of time or just got impatient19:37
=== JanC_ is now known as JanC
JanClooks like not only the "JiaT75" account was involved but also "hansjans162" & "Larhzu"21:08
JanCthey might all be the same person21:09
oerheksthe manhunt on ycombinator points to an finnish group, originally21:10
JanCthe original author was Finnish, so that is not very useful probably21:10
JanC(at least I think so?)21:10
oerhekssure, the person joined in 202221:11
JanCno, xz was moved to github then21:11
oerheksso any name or alias, who knows21:11
=== JanC_ is now known as JanC
=== JanC is now known as Guest8342
=== JanC_ is now known as JanC
=== Guest55 is now known as arraybolt3

Generated by irclog2html.py 2.7 by Marius Gedminas - find it at mg.pov.lt!