Bonum Certa Men Certa

"This is How Codes of Conduct Actually Work. You Get Banned Without Anyone Making a Formal Complaint and There’s Nowhere to Even Turn to."

posted by Roy Schestowitz on Oct 11, 2023

Jono Bacon

Reprinted with permission from Ryan Farmer.

GNOME Patches One Click Remote Code Execution Vulnerability in Tracker Indexer.

GNOME has a component called Tracker. It’s basically a search indexer. These are nothing new. Many operating systems and desktop environments have had them over the years.

You might remember the “Indexing Service” in Windows XP and how it would cause your hard disk drive to grind and thrash, and it didn’t even make searches that much faster.

GNOME’s Tracker Indexer is pretty awful too. In fact, when I had GNOME, I turned it off.

Every once in a while, for me at least, on Fedora, it would find a file that it didn’t like, crash, and put a core dump in my systemd journal.

Rather than report a bug that would probably never be fixed and would just get me some fresh abuse by GNOME/Red Hat/IBM assholes, I just removed tracker somehow. I can’t remember how I did it now. Maybe I just disabled it.

Most of the time it would index .opus music files okay, but then it would find one it crashed on. Anyway, it solves the problem on my end to just turn the thing that’s totally useless and full of bugs and lulz off, right?

When you use GNOME and Fedora, you quickly find that you’re pissing into the wind if you even try to report a bug. Then you don’t bother to. Then when something breaks, you just deploy a kludge that works for you.

Well, this time, someone found a way to get it to run arbitrary code by tricking the user into dropping a .cue file into their home directory. Whoops.

Here’s a link directly to the blog post, archived by Archive Today to avoid a link to Microsoft GitHub.

GNOME is so bad in so many ways (code, user interface, people maintaining it) that it makes me embarrassed that I even have to qualify “Use Linux, but you should probably avoid GNOME unless you like a lot of weirdness and bugs.”

Most people have gotten rid of rotational storage years ago. What is, even, the point of something like Tracker and all of the potential attack code, on SSDs?

“Soon you will all see things that are more terrible than you could possibly imagine! Well, maybe not THAT terrible, but still pretty bad.”

Since more and more GNOME code is getting pretty bad, and since less and less people have any inclination or qualifications to fix it, and their usual answer to problems they don’t know how to fix is just deleting the entire feature (very soon to include the entire X11 session), I gave up on GNOME completely around the same time as the Walter Francis/Khaytsus incident on IRC.

Since I had to nuke Fedora anyway to get away from these people, and the fact that IBM is dropping packages and disinvesting from the desktop environment, and has become an Enemy of Free Software (promoting Microsoft Office, as well as the separate issue of hiding GPL-licensed source code in their Red Hat Enterprise Linux product), I ended up, ultimately, on Debian 12 with KDE.

I just had the 12.2 updates roll in with no drama.

I recently got an update after several months of nothing on the Code of Conduct violation for Mr. Francis.

jflory7 added a new comment to an issue you are following:
“Hi @baronhk, the Fedora Code of Conduct Committee reviewed this report and agreed this behavior is not acceptable under the Fedora Code of Conduct. The person was issued a warning. Any further violations will result in escalated consequence.

Thanks for bringing this to our attention. If this person continues this behavior, please open a new Code of Conduct ticket and bring it to our attention.

-From the E-Mail Update

Well, that’s nice. They wait until things die down and tell me that Walter violated the CoC and will not be punished.

Meanwhile, nobody ever ruled that I was the reason that happened, and I still can’t participate in the alleged Fedora Community.

This is how Codes of Conduct actually work. You get banned without anyone making a formal complaint and there’s nowhere to even turn to. Someone makes a formal complaint about someone important and they’ll “talk to him” several months later.

It’s still important to call them out. Theoretically if he keeps openly trolling people, they’ll eventually do something about him. If anyone deserves to get Kevin Kofler’d (who got banned from Fedora’s KDE sig by people who use Macs and Windows), it’s Walter.

Other Recent Techrights' Posts

12 Days Have Passed Since the Edward Brocklesby Revelations and Debian Project Has Said Absolutely Nothing About That
One must therefore assume they have nothing to say in their defence (covering up severe security failings)
Coercion From the "Consent" and "CoC" Crowd is a Self-Defeating Tactic
Freedom of the press; Nothing less
According to statCounter, GNU/Linux Increased From 3.77% to 3.89% This Month (Worldwide), Windows Now Below 20% in 78 Nations, Below 10% in 27 Nations
Highest since March (for GNU/Linux)
 
One More (Failed) Attempt to Deplatform the Sites by Harassing and Threatening Webhosts
What we're seeing here is a person who abuses the system in Canada at Canadian taxpayers' expense trying to do the same in the UK, at British taxpayers' expense
[Meme] Shitburger of an LLM
IBM and the Hololens
Links 17/06/2024: Chatbot Nonsense Thrown Under the Bus (Severe Failure, Pure Hype), How to Finance Free Software 'Hackers'
Links for the day
Debian's Personal Attacks Are Upsetting Women, Too
Female Debian Developer: "I Believe Daniel [Pocock] is On the Right Track."
Microsoft's Bing is So Irrelevant in Moldova (1%) That Russia's Yandex is About 5 Times Bigger
How much longer before Microsoft throws in the towel?
Yes, You Can
Unless you live somewhere like Russia...
[Meme] Listen to the Experts
Bill Gates didn't even finish university]
Roy and Rianne's Righteously Royalty-free RSS Reader (R.R.R.R.R.R.) and the Front-End Interfaces
As the Web deteriorates the availability, quality and prevalence of RSS feeds is not improving, to put it mildly
Algeria Shows High GNU/Linux and Android Adoption, All-Time High and Almost Three-Quarters of Web Requests
GNU/Linux was below 3%, now it is above 3%
Mass Layoffs at Microsoft-owned GitHub (About 80 Percent of the Staff in India Laid Off)
It's not just in India
Over at Tux Machines...
GNU/Linux news for the past day
IRC Proceedings: Sunday, June 16, 2024
IRC logs for Sunday, June 16, 2024
Gemini Links 16/06/2024: Scarecrows, Moles, Ham Radio, and No IPs
Links for the day
Africa is Android and Green (Chrome, Not Just Android Logo)
In Africa Firefox is almost below 1% now
Covering Abuses and Corruption
We'll never surrender to blackmail
Ubuntu Running Out of Energy
Its planet too is deteriorating
Links 16/06/2024: In Defence of Email and Why Recycling Symbol Lost All Meaning
Links for the day
Gemini Links 16/06/2024: Computer Science Course Union and Potentiometer
Links for the day
Cross border crime: sale of Swiss insurance in France and European Union without authorisation
Reprinted with permission from Daniel Pocock
Letting Microsoft systemd Manage /home Was a Terrible Idea All Along
systemd-tmpfiles, deleting /home
Patriotism is OK, But We Need Facts and Reason, Not Blind Obedience to Authority
Very seldom in the history of human civilisation has groupthink proven to be of real merit
When You Touch One of Us You Touch All of Us
We have a principled, uncompromising stance on this matter
Links 16/06/2024: New Sanctions Against Russia, Fentanylware (TikTok) Causing More Problems
Links for the day
Social Control Media in Japan: Twitter (X) Has Collapsed, YouTube Rising (Apparently)
What a genius Mr. Musk is!
Windows Cleansed in South Africa (Already Hovering Around 10% Market Share)
Plus Microsoft's mass layoffs in Africa
[Meme] Satya Nadella's Windows PC RECALLS Not What He Did
Satya got lucky
Usage of Let's Encrypt in Geminispace Has Collapsed (That's a Good Thing!)
Ideally, or eventually, all capsules will sign their own certificates or have their own CA
North Macedonia: Windows Down From 99.2% to 28.5%
Last year it was even measured at 26%
Over at Tux Machines...
GNU/Linux news for the past day
IRC Proceedings: Saturday, June 15, 2024
IRC logs for Saturday, June 15, 2024
Gemini Links 16/06/2024: Hand Held Maneuvering Unit and Hugo Static Files
Links for the day
Removing the Tumour From IRC
looking back
[Meme] The Free(dom) Software Engineer in European Elections
“When the debate is lost, slander becomes the tool of the loser.”
Vista 11 Was 'Leaked' Exactly 3 Years Ago and This One Picture Says It All
how 'well' Vista 11 has done
A Smokescreen for Brad Smith
Maybe the key point was to say "Linux is not secure either" or "Windows and Linux are equally vulnerable", so don't bother dumping Microsoft
Windows Sinking Below 13% Market Share in the Island of Jamaica
Microsoft's decline continues and will mostly likely continue indefinitely in Jamaica and its neighbours
Links 15/06/2024: Microsoft's Intellectual Ventures Attacks Kubernetes With Software Patents, More Layoff Waves
Links for the day
Gemini Links 15/06/2024: On Lagrange and on YouTube Getting Worse
Links for the day
Edward Brocklesby: hacker received advance notice of zero-day vulnerabilities in MH and NMH email software
Reprinted with permission from Daniel Pocock
[Meme] Code Liberates Kids
Matthias Kirschner: I can't code, but I can write a book
In Armenia, Bing is Measured at 0.6%, About Ten Times Less Than Yandex
Bing will probably get mothballed in the coming years
[Meme] A Pack and Pact (Collusion Against Computer Users)
They never really cared about users, no more than drug dealers care about drug users...
GNU/Linux in Azerbaijan: From ~0.1% to 7%
Azerbaijan is around the same size as Portugal
Women in Free Software (FOSS) Need Action, Not Mere Words
the men who are loudest about women's rights are some of the very worst offenders
Embrace, Extend, Extinguish Minecraft
These folks should check out Minetest
Techrights Statement on Men Who Viciously Attack Women in Free Software
history shows women will win
Over at Tux Machines...
GNU/Linux news for the past day
IRC Proceedings: Friday, June 14, 2024
IRC logs for Friday, June 14, 2024
[Meme] People Who Cannot Find Gainful Employment Because of Their Poor Behaviour Online (Not the People Who Merely Call Them Out on It)
Imagine trying to become a lecturer while talking like this in public
You Too Would Get Nervous
countries where Windows is down to 2%
[Meme] The Two Phases (and Faces) of Microsofters
Microsofters: stalk IRC, then troll IRC
The 'Nobody Reads Techrights Anyway' Crowd
Send In the Clowns
Books in the Making
I intend to spend a considerable amount of time explaining what my family and I were subjected to for the 'crime' of promoting/covering Free software
Microsoft is Still Losing Malta
And GNU/Linux is doing well on laptops and desktops
Tux Machines: Third Party Impending
There will be more next week