08.07.10

Vista 7 is Under Attack and No Patches Are Available; Ubuntu Community Manager Uses It

Posted in GNOME, GNU/Linux, Microsoft, Mono, Ubuntu, Vista 7, Windows at 9:06 am by Dr. Roy Schestowitz

Jono Bacon

Summary: Yet again a serious zero-day vulnerability is found in Vista 7 (which Microsoft markets as “secure”); Jono Bacon chastised by Ryan Farmer for asking Microsoft for a copy of Vista 7

THE reality behind Vista 7 continues to unfold. Previously we wrote many posts about security problems in this operating system, including:

Based on this news, Vista 7 is not secure, even days after an emergency patch [1, 2]:

Microsoft’s Windows 7 operating system is vulnerable to a new zero-day vulnerability that exposes users to blue-screen crashes or code execution attacks.

Why would anyone use Vista 7? It’s a security threat.

Our reader Ryan Farmer writes to complain that “Ubuntu’s community manager [is] gratuitously advertising for Microsoft” by using Vista 7 for recording sound; “their community manager is writing love letters to Microsoft,” he argues and “their Netbook Remix is adding Mono apps like Banshee… they’re including their own Mono CIL files in the default installation… they’re selling “patent protection”… and they’re congratulating themselves for doing work that really only makes sense in their own distribution.”

“I’d like him to tell me why he needs Windows 7 to do that…”
      –Ryan Farmer
Those latter complaints he wrote about in this new post where he rants: “Nokia has contributed 1.42% of upstream GNOME. / Nokia doesn’t have a Linux distro, much less one with a GNOME desktop and they managed to out-contribute Canonical/Ubuntu.”

These statistics about contributions to GNOME [1, 2, 3, 4] may actually be misleading, so personally I choose to defend Canonical on that one (several readers disagree with me and they too need to have their opinion heard). Anyway, regarding Jono Bacon’s use of Vista 7 (we mentioned this yesterday), Ryan says: “You can output from a mixer deck to your sound card’s 3.5mm input jack, route it through Pulseaudio, and onto Flash apps… it may not be the cleanest way to hook it all up, but it’s not difficult… I’d like him to tell me why he needs Windows 7 to do that… the main problem in this situation is Flash itself… in fact, it’s the same “analog hole” that Microsoft is trying to close… notice how all of a sudden you need to have an “all digital” end to end connection to do things like play Blu Ray movies? … HDCP DRM and ilk” (more of that in the next batch of IRC logs).

Share in other sites/networks: These icons link to social bookmarking sites where readers can share and discover new web pages.
  • Reddit
  • email

This post is also available in Gemini over at:

gemini://gemini.techrights.org/2010/08/07/zero-day-in-win7-again/

If you liked this post, consider subscribing to the RSS feed or join us now at the IRC channels.

Pages that cross-reference this one

What Else is New


  1. IBM and Qt Don't Understand Free Software and They Now Impose Terms and Conditions on Who Qualifies for Use of Free Software Free of Charge

    IBM and Qt Don't Understand Free Software and They Now Impose Terms and Conditions on Who Qualifies for Use of Free Software Free of Charge



  2. Techrights Gemini Capsule, Now With Over 35,000 Pages and Files

    Blog posts combined with static (plain text) files are now 36,000+ in number, just for Gemini protocol alone; that number keeps growing as our conversion proceeds and evolves (our software will be released under terms of the AGPLv3)



  3. Eventually, or Hopefully, Many People Will Come Back to What the Web Used to Be (Or Web Alternatives More Like the 'Old' Web)

    With RSS feeds making a comeback and a resurgence of personal blogs we can take back the Web from a cabal of tech/Internet giants and social control media, censored, curated and spied on by oligarchy



  4. If Wikipedia is Controlled by Corporations and Mobs, It Needs to Be 'Cancelled'

    Facts have never truly mattered in social control media sites; it certainly seems as though Wikipedia now suffers the very same issue/deficit, allowing oligarchs and their companies to define what goes on in the world and which people Wikipedia should regard as persona non grata



  5. GNU/Linux Reaffirms Its Status as the Universal and Inter-planetary Operating System

    The operating system made for and by scientists (not business sharks and marketing cults) is winning the battle, and not only in this planet



  6. IRC Proceedings: Wednesday, February 24, 2021

    IRC logs for Wednesday, February 24, 2021



  7. Links 25/2/2021: Kali Linux 2021.1, Wine Launcher 1.4.46, and Google's Security Posing

    Links for the day



  8. Links 24/2/2021: MariaDB 10.5.9, Krita 4.4.3 Beta, and Debuginfod Server for Debian

    Links for the day



  9. Self-Host Your Videos, Take Full Advantage of HTML5 and Video Attributes

    For self-hosting of videos over the World Wide Web (Gemini too can handle videos; its clients/browsers can, for example, link video files/URLs to external media players) it's worth reviewing the full set of features made available by the standards because a lot can be accomplished without JavaScript and without unnecessary bloat/complexity



  10. Trying Out NoiseTorch to Reduce Background Sound/Noise in GNU/Linux

    An introduction to noisetorch (or NoiseTorch), an application that helps create virtual microphones/devices with reduced background noise



  11. How the Big Banks and OIN Can Whitewash Software Patents and Do Nothing Concrete About Patent Trolls

    Response to the puff piece entitled "How the Big Banks and OIN Can Lock Out Patent Trolls with Enabled Publications"



  12. IRC Proceedings: Tuesday, February 23, 2021

    IRC logs for Tuesday, February 23, 2021



  13. How to Set Up a Gemini Server of Your Own, Even on a Simple Single-Board Computer

    Using Agate to start one's own Gemini capsule (self-hosted) is a lot simpler than one might be inclined to believe; this is a detailed HOWTO, hoping to encourage more people to join Gemini space, which is fast-growing and free of garbage



  14. Links 23/2/2021: Tails 4.16, Libinput 1.17, Fwupd 1.5.7, Firefox 86, NeoChat 1.1

    Links for the day



  15. The Word Master is Not Problematic in Most Contexts and Its Origin Hasn't a Connection to Slavery

    Slavery is to the word "master" mostly disconnected; it might, however, be closely connected in the minds of racists or the agenda of highly racist corporations (profiting from racism) that look for ways to distract from their racism



  16. On Misapplication, Misuse, Overuse and Abuse of Words (to Suit False Narratives)

    It is looking like the word "abuse" has been extended to basically mean all sorts of things including the act of actually exposing real abuse



  17. The Administrative Council Needs to Fix the EPO While It's Still Possible

    EPO staff and former staff (pensioners) aren't happy and the it's the responsibility of the Administrative Council to do something before it's too late (the reputation of the Office is already severely harmed and it's unable/unwilling to recruit suitable and qualified people, both as examiners and managers, respectively)



  18. 'These Questions Remain Unanswered': Campinos Became Battistelli Just Halfway Through His Term

    The Central Staff Committee of the EPO highlights the grim situation or the deadlock reached after totally dysfunctional Office management somehow managed to kill off channels of communication, in effect going back to where things were back in 2018 under Battistelli



  19. 'The One Percent': Salary Adjustment Procedure (SAP) Supported Only by 1% of EPO Staff

    Out of 2,237 EPO workers who expressed their position on the SAP, which in essence lowers their salary, only 31 expressed support for it (that's 1.385%)



  20. IRC Proceedings: Monday, February 22, 2021

    IRC logs for Monday, February 22, 2021



  21. DDOS Attacks and Decentralisation

    Our server, which is shared among sites, has been under persistent distributed denial of service (DDOS) attacks almost every day in recent weeks, culminating in much worse attacks last night, but we're not too worried anymore



  22. Links 23/2/2021: Gemini (and Gopher) on the Rise Again, Systemd 248 Reaches RC1

    Links for the day



  23. On the Terms Master, Main and Abuse

    Reprinted with permission from Daniel Pocock



  24. Microsoft Inside — Part IV: Microsoft Everywhere, Looking to Poach Developers, Not Disclosing What It Really Wants

    As it turns out, just about everyone looking to recruit for a Microsoft-connected project/company (working on Raspberry Pi, Ubuntu etc.) near Microsoft is 'former' Microsoft, but people who are being approached aren't being told so, at least not upfront; those are very familiar and old tactics, which merit a word of caution to all



  25. Microsoft: We Ain't Done Until Raspberry Pi Won't Run (Anything But Our Proprietary Software With 'Telemetry' Surveillance)

    The ongoing series which we started yesterday and still publish today (about Microsoft recruiters) shows that Microsoft has rather toxic ambitions and the general idea is to infect everything with Microsoft, even the things that compete against Microsoft



  26. Controlling the Conduct of Large Corporations (and Monopolies) Would Help Tackle Disproportionate and Asymmetric Power Structures

    A "CoC" (Code of Conduct) is often crafted or drafted with good intentions; but with enforcement put in the wrong hands it is a tool of corporate oppression instead of protection of people's dignity



  27. Another Reason to Boycott Microsoft/GitHub: The War on Reverse-Engineering

    The high-profile fan-made reverse-engineering efforts are being proactively censored by Microsoft on behalf of another company (without as much as due process), reaffirming the problematic nature of GitHub, a monopoly that represses Free software developers



  28. Links 22/2/2021: Lots More About Linux on Mars, Release of 4MLinux 35.2

    Links for the day



  29. Microsoft Inside — Part III: Microsoft Finds Out That Free Software Developers Don't Want to Work for Microsoft on Microsoft Platforms

    The attempts to poach high-profile Free software and GNU/Linux developers aren't succeeding, especially once it turns out who's really behind those attempts (they don't give it away upfront)



  30. Techrights is Now in Gemini (Having Completed a Two Week-Long Migration) With Over 32,000 Pages in Total

    The site is now mirrored across an alternative to the World Wide Web


RSS 64x64RSS Feed: subscribe to the RSS feed for regular updates

Home iconSite Wiki: You can improve this site by helping the extension of the site's content

Home iconSite Home: Background about the site and some key features in the front page

Chat iconIRC Channel: Come and chat with us in real time

Recent Posts