08.28.08

Gemini version available ♊︎

He Who Imitates Microsoft Will Suffer from Its Flaw

Posted in GNU/Linux, Microsoft, Mono, Novell, Security at 8:32 am by Dr. Roy Schestowitz

He Who Controls the Bootloader…”

We have warned before that any imitation of .NET is likely to inherit its problems and the same goes for OOXML. Some of the more severe problems pertain to security.

A new vulnerability has just been found in Mono. This one is funny:

Vulnerability reported by Redhat.

Is that a technical vulnerability only, or also a legal one? Either way, Fedora 10 has no Mono in the Live CD. It’s not there anymore.

Early in the week, we also remarked on Novell's support of ActiveX from Microsoft. Carla Schroder is far from impressed.

Nominum Solves Kaminsky Attack, and Novell’s iPrint Open to Attack, Say Researchers. What do these stories have in common? I was thinking perhaps institutionalized delusional thinking and incompetence, but maybe I’m being too harsh.

[...]

Lest anyone think I am being too mean to poor old defenseless Novell and Microsoft, I recall ActiveX security advisories almost from its inception back in 1996 or so. What has changed since then, twelve years later? Nothing, as this random recent security bulletin shows:

“Microsoft has released Security Advisory (955179) to describe attacks on a vulnerability in the Microsoft Office Snapshot Viewer ActiveX control. Because no fix is currently available for this vulnerability, please see the Security Advisory and US-CERT Vulnerability Note VU#837785 for workarounds.”

So we need to revise the popular “fool me once” saying:

Fool me once, shame on you
Fool me twice, shame on me
Fool me thousands of times over many years…let’s get married!”

Now why is it again that corporate participation is important to FOSS?

When will Novell finally start thinking for itself? It already supports Windows Vista , Internet Explorer, ActiveX, .NET, and XAML (Silverlight). It only helps in spreading the problems and everyone suffers as a result, except Microsoft.

“Two security researchers have developed a new technique that essentially bypasses all of the memory protection safeguards in the Windows Vista operating system…”

Dennis Fisher, August 7th, 2008

Share in other sites/networks: These icons link to social bookmarking sites where readers can share and discover new web pages.
  • Reddit
  • email

Decor ᶃ Gemini Space

Below is a Web proxy. We recommend getting a Gemini client/browser.

Black/white/grey bullet button This post is also available in Gemini over at this address (requires a Gemini client/browser to open).

Decor ✐ Cross-references

Black/white/grey bullet button Pages that cross-reference this one, if any exist, are listed below or will be listed below over time.

Decor ▢ Respond and Discuss

Black/white/grey bullet button If you liked this post, consider subscribing to the RSS feed or join us now at the IRC channels.

DecorWhat Else is New


  1. His Majesty’s Revenue and Customs (HMRC) Not Responding After 20 Days (Well-Founded Report of Tax Fraud) and British Police Pretending Not to Exist

    The crimes of Sirius ‘Open Source’ have helped unearth a profound problem in the British law enforcement authorities; What good is a monopolistic taxman (called after the British Monarchy even in 2023) that cannot assess its own tax abuses? Or abuses connected to it via a contractor? Meanwhile, as per what I was told, the police is not responding to my MP and that’s ANOTHER scandal (police not only refusing to act against crimes, committed against many people, but moreover not responding to elected politicians)



  2. Links 08/06/2023: Cinnamon 5.8 and Leap 15.5 Release Mature

    Links for the day



  3. Gemini Links 08/06/2023: Emacs and Thoughts on Bubble

    Links for the day



  4. Links 07/06/2023: Reddit Layoffs and OpenGL 3.1 in Asahi Linux

    Links for the day



  5. Gemini Links 07/06/2023: Jukka Charting Geminispace

    Links for the day



  6. IRC Proceedings: Tuesday, June 06, 2023

    IRC logs for Tuesday, June 06, 2023



  7. NOW LIVE: Working for the Public — Universities, Software and Freedom - a Talk by Richard Stallman at Università di Pisa (Italy)

    As noted a few hours ago, Richard Stallman is delivering a talk at Università di Pisa this morning



  8. Richard Stallman's Talk is in Two Hours and There's a BigBlueButton Livestream

    Dr. Stallman is in Italy to give talks at universities this week; he will soon give a live talk, accessible in his site or directly at the source



  9. Links 06/06/2023: Angie 1.2.0, New EasyOS and EndeavourOS Released

    Links for the day



  10. Gemini Links 06/06/2023: OpenKuBSD, GrapheneOS, and More

    Links for the day



  11. Links 06/06/2023: OpenSUSE Plans for Leap

    Links for the day



  12. Gemini Links 06/06/2023: Bubble 4.0, Neutral News, and Older Bits

    Links for the day



  13. IBM's War on Open (Look at the Pattern of Layoffs at Red Hat)

    By abandoning OpenSource.com and OpenOffice.org/LibreOffice IBM sends out a clear signal that it doesn’t understand or simply does not care about the community of Free software users; its siege against the FSF and other institutions never ended and today we look at who’s being laid off or shown the door (the work environment is intentionally being made worse)



  14. Links 06/06/2023: IceWM 3.4.0 and Liveslak 1.7.0

    Links for the day



  15. Gemini Links 06/06/2023: Apple Might Kill VR, Tea Tea Deluxe 1.2.7 and Tea Land

    Links for the day



  16. IRC Proceedings: Monday, June 05, 2023

    IRC logs for Monday, June 05, 2023



  17. Links 05/06/2023: Debian 12 Almost Ready, Hong Kong 'Cannot' Remember Tiananmen Massacre

    Links for the day



  18. Gemini Links 05/06/2023: New Ship in Cosmic Voyage, Stack Overflow Moderator Strike

    Links for the day



  19. IRC Proceedings: Sunday, June 04, 2023

    IRC logs for Sunday, June 04, 2023



  20. Links 04/06/2023: Unifont 15.0.05 and PCLinuxOS Stuff

    Links for the day



  21. Gemini Links 04/06/2023: Wayland and the Old Computer Challenge

    Links for the day



  22. StatCounter: GNU/Linux (Including ChromeOS) Grows to 8% Market Share Worldwide

    This month’s numbers from StatCounter are good for GNU/Linux (including ChromeOS, which technically has both GNU and Linux); the firm assesses logs from 3 million sites and shows Windows down to 66% in desktops/laptops (a decade ago it was above 90%) with modest growth for GNU/Linux, which is at an all-time high, even if one does not count ChromeOS that isn’t freedom- or privacy-respecting



  23. Journalism Cannot and Quite Likely Won't Survive on the World Wide Web

    We’re reaching the point where the overwhelming majority of new pages on the Web (the World Wide Web) are basically junk, sometimes crafted not by humans; how to cope with this rapid deterioration is still an unknown — an enigma that demands hard answers or technical workarounds



  24. Do Not Assume Pensions Are Safe, Especially When Managed by Mr. EPOTIF Benoît Battistelli and António Campinos

    With the "hoax" that is the financial assessment by António Campinos (who is deliriously celebrating the inauguration of illegal and unconstitutional kangaroo courts) we urge EPO workers to check carefully the integrity of their pensions, seeing that pension promises have been broken for years already



  25. Links 04/06/2023: Why Flatpak and Wealth of Devices With GNU/Linux

    Links for the day



  26. Gemini Links 04/06/2023: Rosy Crow 1.1.3 and NearlyFreeSpeech.NET

    Links for the day



  27. IRC Proceedings: Saturday, June 03, 2023

    IRC logs for Saturday, June 03, 2023



  28. Links 04/06/2023: Azure Outage Again (So Many!) and Tiananmen Massacre Censored

    Links for the day



  29. Links 03/06/2023: Qubes OS 4.2.0 RC1 and elementaryOS Updates for May

    Links for the day



  30. Gemini Links 03/06/2023: Hidden Communities and Exam Prep is Not Education

    Links for the day


RSS 64x64RSS Feed: subscribe to the RSS feed for regular updates

Home iconSite Wiki: You can improve this site by helping the extension of the site's content

Home iconSite Home: Background about the site and some key features in the front page

Chat iconIRC Channel: Come and chat with us in real time

Recent Posts