logoalt Hacker News

int0x29yesterday at 8:14 PM3 repliesview on HN

I'm curious what broke the embargo. Did it leak or did a third party find it independently?


Replies

reisseyesterday at 11:08 PM

No embargo exists (or could possibly exist) in the first place.

Linux is open source, so every patch fixing the security bug is immediately visible to everyone. There is no workaround to that by the very design how the kernel is developed. The "embargo" people talking about is the rather stupid notion that if people keep their mouth shut and not write "THIS IS A LPE" straight in the patch description, everyone can pretend vulnerability is not leaked until the "official" message in the mailing list is sent.

This approach might have been defensible before, but in LLM era, when people have automated pipelines feeding diffs straight from the mailing lists to SotA models asking to identify probable security issues fixed by those, it is both stupid and dangerous.

show 1 reply
either-orryesterday at 10:17 PM

A link to the patch was posted in someone's X account. Someone else saw that and posted a working exploit in less than an hour (potentially exploited by an LLM, though other than the quick turnaround, claim not substantiated).

https://x.com/encrypted_past/status/2052409822998392962

john_strinlaiyesterday at 8:15 PM

it was published publicly by an unrelated third party

show 1 reply