Bonum Certa Men Certa

The Linux Mint Security Controversy Taken Out of Proportions, Distracting From Real Controversies

Clement Lefebvre
Photo from linuxmint.com



Summary: A so-called accusation (made in a personal blog) causes a media storm which neither Clement Lefebvre nor Canonical seem to be happy about

ONE of the best GNU/Linux distros (distributions of GNU, Linux, and desktop environments, complete with general-purpose applications), based on relative measures of popularity at least, is Linux Mint. It is so popular that in DistroWatch it beats Ubuntu sometimes. Canonical, which is in the centre of several controversies (over trademarks, privacy, and request for 'licensing' of binary packages) must realise that alternatives like Linux Mint can outgrow Ubuntu. There is a screenshots tour of Linux Mint 16 [1] and the release is imminent (now in RC [2-5]).



"Neither side was particularly upset over the original remarks, so to frame it otherwise would be somewhat dishonest."Some people want us to believe that Canonical uses FUD to discourage exploration of Mint as an alternative to Ubuntu (which Mint is a derivative of). Those people, however, base their analysis on the words of just one developer [6] whose words are rebutted by the Mint founder [7] (he is also unhappy about the source of the drama, namely Muktware [8,9], which led to more such coverage [10,11,12]). In trying to judge this, the whole scenario was a demonstration of media gone somewhat rogue, hostile where opportunism lies.

We have been watching this controversy closely for a number of days and it seems like sensationalist authors did a disservice and created an unnecessary rift. Neither side was particularly upset over the original remarks, so to frame it otherwise would be somewhat dishonest. It is very different from what happened recently when it comes to trademarks. Canonical and Shuttleworth (personally) were at fault and the EFF points this out in some follow-ups [13,14,15]. It is important to keep a sober balance and only criticise Canonical (Ubuntu steward) where the company (as a matter of company-wise policy) does something unethical. Presumption of guilt only leads to noise and distraction from the real issues.

Related/contextual items from the news:



  1. Linux Mint 16 Petra Cinnamon Desktop screenshot preview
    Linux Mint 16, code-named Petra, will be the next stable edition of Linux Mint, a desktop distribution based on Ubuntu Desktop. It could be released sometime this month or early next month (December).

    This distribution’s release track record suggests that Linux Mint 16 will be released less than two weeks from today. And when that happens, it will be the first stable edition of Linux Mint with Cinnamon 2.0 desktop pre-installed.


  2. Linux Mint 16 release candidate available for download
    Today in Open Source: Download the release candidate of Linux Mint 16. Plus: Will preloads help Linux? And the top five Linux games


  3. Linux Mint 16 RC released
  4. Linux Mint 16 RC Is Out With Cinnamon, MATE Desktops
    The release candidate version is now out for Linux Mint 16 'Petra' with MATE and Cinnamon 2.0 desktop flavors.

    It's getting close to another six-month update for the Ubuntu-based Linux Mint and the big feature this time around is the Cinnamon 2.0 desktop.


  5. Linux Mint 16 RC Brings Cinnamon 2.0 and MATE 1.6
    Clement Lefebvre had the pleasure of announcing a few hours ago, November 15, 2013, that the Release Candidate version of both the Cinnamon and MATE editions of the upcoming Linux Mint 16 operating systems are now available for download, and testing, from mirrors worldwide.


  6. Ubuntu dev, media slammed over 'security' comment
    Among these outlets were the OMGUbuntu and Muktware sites, both of which only deal with Linux and FOSS stories. In that context, it was even more surprising that they carried such reports.

    Muktware editor Swapnil Bhartiya was asked whether reporter Monika Bhati, the person who filed the story quoting Grawert and contributing to the hysteria, was a Linux user and also whether she had taken a look at the Mint update utility before writing.

    His response: "She is a resident journalist and uses Windows/Linux. We got Robin Jacobs to dive into the git pages and comments in LM to see how updates are labelled."

    Jacobs also wrote a story which, in effect, contradicted Bhati's story - and both stories appeared within 4€½ hours of each other on November 18.

    The editor of OMGUbuntu, which contributed to the same idea being spread, was asked similar questions to those put to Muktware.
  7. Answering controversy: Stability vs Security is something you configure
  8. Linux Mint falsely accused of being “insecure”


  9. Canonical developer criticizes Linux Mint’s security, called ‘a vulnerable system’
    Ubuntu developer Oliver Grawert does not prefer to do online banking with Linux Mint. The reason being its unsecure handling of packaging upgrades that could leave the system vulnerable to attacks.


  10. Canonical Developer Criticizes Linux Mint's Security


  11. Does Linux Mint need better security?
    There have been disturbing reports in the media about Linux Mint having security problems. Is this something to worry about or has it been wildly overblown by the press?


  12. Lead Ubuntu Developer Claims Linux Mint is an Unsecure Distro – Is It?


  13. EFF responds: Mark Shuttleworth is still wrong"
    Though Lee was not required, by the law, to remove the logo he removed it.


  14. Trademark Law Does Not Require Companies To Tirelessly Censor the Internet
    Over the past few days, EFF and one of our staff technologists, the talented Micah Lee, have had an illuminating back and forth with Canonical Ltd over the use of the Ubuntu mark. While we don’t believe that Canonical has acted with malice or intent to censor, its silly invocation of trademark law is disturbing. After all, not everyone has easy recourse to lawyers and the ability to push back.

    That matters, because Canonical’s actions reflect a much bigger problem: a pervasive and unfounded belief that if you don’t police every unauthorized use of a trademark you are in danger of losing it. We hope that some clarity on this point might help companies step back from wasteful and censorious trademark enforcement.

    First, some background. This particular story begins in 2012, when Canonical made the disappointing and widely criticized decision to integrate Amazon results into searches conducted through Ubuntu’s desktop dash (this meant that a user searching for one of her own files would receive results from Amazon). At the time, we argued that this default setting raised significant privacy concerns. A few weeks ago, Micah published a web site—at https://fixubuntu.com—that provided users with code to disable this privacy-invasive “feature.”


  15. Electronic Frontier Foundation Goes After Mark Shuttleworth and Canonical
    The Electronic Frontier Foundation, an organization devoted to the protection of freedom in the open source world, has criticized Canonical and Mark Shuttleworth.




Recent Techrights' Posts

Free Software Foundation's Miriam Bastian: We Surpassed Our Year-end Goal of $400,000 USD Thanks to You!
Miriam Bastian: We surpassed our year-end goal of $400,000 USD!
Red Hat Offers DRM, TPM, and Backed Doored 'Confidential' Containers (CoCo) for Microsoft (Proprietary Spyware)
No kidding!
 
Links 22/01/2025: Jeju Air Blame-Shifting (Talk to the Wall), Copyright Maximalism Rebounds
Links for the day
[Meme] The 'Garbage in, Garbage Out' Patent Office
"law of the buzzword"
Clueless and Nontechnical EPO Management Uses the 'Great Scam' (Hey Hi Hype) to Justify Automation Where It's Both Detrimental and Illegal
The EPC has been practically set aflame; thus, the EPO has no legitimacy or reason to exist anymore
Links 22/01/2025: Democratising Tech Initiative and "Bye Bye Meta"
Links for the day
The Japanese translation of the term "free software"
by Akira Urushibata
Links 22/01/2025: "The AI Bubble Is Bursting" and Microsoft's Scam Altman is Already Looking for De Facto Bailout From the Insurrectionist
Links for the day
Dr. Andy Farnell's Latest Article About Software Freedom and Richard Stallman
why Dr. Stallman is being picked on
Geminispace (Gemini Protocol) Offers an Escape From Social Control Networks Owned by Oligarchs and Governments
Gemini capsules that promote fascism and retreat to feudalism are rare and scarce
The Free Software Foundation (FSF) Has Formally Added an Outreach and Communications Coordinator
Maybe the addition happened last year (we mentioned it in passing), but now it's in the "rota"
Electronic Frontier Foundation: Fighting 'for the Poor and Powerless' While Taking Home $336,000 in Annual Salary
nowadays works for or serves not the interests of the masses
Of Note: The Misguided, Infiltrated, Weakened Electronic Frontier Foundation (EFF) Now Operating at a Loss of Over a Million Dollars
Worst since the COVID-19 lockdowns
[Meme] Omit Microsoft When It's a Scandal or a Breach, Whereupon It Becomes Just an 'IT Company'
Microsoft is like a cult. Members of this cult promote the opposite of security, expecting to be financially rewarded for it.
Calling Out Windows (TCO) is Apparently Impermissible in Some News Sites
The online news sites are failing us (and corporate sponsors play a role)
Richard Stallman's Remarks on His Pain
Published two days ago
Focusing on the Issues
we'll do our best to find the news and not talk about "Mr. T"
Only About 3.6% of Web Users in Pakistan Use Vista 11, According to statCounter
It's not hard to see why so far in 2025 Microsoft has already had several waves of mass layoffs - more than any other company
Rumour: In IBM, Impending "25% Reduction in Finance Roles"
25% to be laid off?
[Meme] Fake Articles From linuxsecurity.com (Just Googlebombing "Linux" With LLM Slop)
Google should really just entirely delist that site
RedHat.com Written by Microsoft Staff, Promoting Microsoft' Proprietary Software That Does Not Even Run on Linux!
This is RedHat.com this week...
Links 22/01/2025: Mass Layoffs at Stripe, Microsoft's Illegal Accounting Practices Under Scrutiny
Links for the day
Fake 'Article' by Brittany Day (Guardian Digital, Inc) About Linux Mint 22.1 'Xia'
Apparently they've convinced themselves that this is OK
Red Hat Dumps "Inclusive Language", Puts "Master" In Official Communications and Headlines
Red Hat: you CANNOT say "master" (because it is racist). Also Red Hat: we put in it our headlines.
Over at Tux Machines...
GNU/Linux news for the past day
IRC Proceedings: Tuesday, January 21, 2025
IRC logs for Tuesday, January 21, 2025
Gemini Links 21/01/2025: Media Provocations and Nazis Not Tolerated
Links for the day
[Meme] Plagiarism Does Not Eliminate Jobs by Replacing Humans, It Replaces Human Knowledge With False Cruft
We need to boycott sites that fake their output
Slopwatch: BetaNews Plagiarism and LLM Slop by UNIXMen
"state-of-the-art" plagiarism
What Fedora, OpenSUSE, and Debian Elections Teach Us About the State of Weak (or Fake) Communities
They show a total lack of trust in these communities
[Meme] Doing Dog's Job (Not God's Job)
The FSF did not advertise the talk by RMS (its founder), who spoke in France almost exactly 23 hours ago
Links 21/01/2025: Mass Layoffs in "Security" at Microsoft (Despite Microsoft Promising It Would Improve After Many Megabreaches), Skype is Dead (Quietly)
Links for the day
Alternate Version of Daniel Pocock's 2024 Talk, "Technology in European Parliament Election Campaign"
There's loud ovation at the end of the talk
Gemini Links 21/01/2025: London Library, Kobo Sage, and Beyerdynamic DT 48 E
Links for the day
The January 20 Public Talk by Richard Stallman (Around Midday ET), Livestream 'Assassinated' by Google's YouTube
our guess is that the 'cancel mob' sabotaged it, possibly by making a lot of false reports to YouTube
[Meme] Free Software and Socially-Engineered Groupthink (to Serve Big Sponsors Like Google and Microsoft)
They do this to RMS all the time
[Video] Daniel Pocock's Public Talk About Free Software Politics, Social Engineering, Debian Deaths and Suicides, Coercion and Exploitation of Women
took many months to get
BetaNews Cannot Survive If Its Fake Articles Are Just SPAM for Companies Like AOHi and Aren't Even Composed by Humans
This is what domains or former "news" sites do when they die and look very desperately for "another way"
Pocock shot in the face, shot in the back, shot on Hitler's birthday saving France, Belgium and FOSDEM
Reprinted with permission from Daniel Pocock
Dr Richard Stallman in Montpellier, Robert Edward Ernest Pocock in France
Reprinted with permission from Daniel Pocock
Over at Tux Machines...
GNU/Linux news for the past day
IRC Proceedings: Monday, January 20, 2025
IRC logs for Monday, January 20, 2025
Links 20/01/2025: Conflict, Climate, and More
Links for the day
Gemini Links 20/01/2025: Conflicted Feelings and Politics
Links for the day
Daniel Pocock's ClueCon 2024 Presentation Was Also Streamed Live in YouTube and Later Removed by Google, Citing "Copyrights". Now It's Back.
The talk covers social control media, Debian, politics, and more
Google 'Cancels' RMS
Is the talk happening?
Microsoft Revisionism Debunked by Microsoft's Own Words About “the Failure of OS/2”
The Register on “the failure of OS/2”
Improving Daily Links by Culling Spam, Chaff, and LLM Slop
the Web is getting worse
Links 20/01/2025: Indonesia to Prevents Kids' Access to Social Control Media (Addiction and Worse), Climate News Catchuo
Links for the day
[Meme] EPO Targets
Targets mean nothing if or when you measure the wrong thing
EPO Union Says Monopoly-Granting Targets at EPO "Difficult to Achieve Without Compromising [Staff] Health, Personal Time or the Quality of the Final Products" (Products as in Monopolies, Not Real Products)
To those of us (over 99.999% of people impacted by this) who do not work at the EPO the misuse of words like "products" (monopolies are not products) should be disturbing
The EPO is Nowadays Trying to Trick Staff Into Settling Instead of Solving the Underlying Problems of Corruption and Injustice
This seems like a classic case of "divide-and-rule" or using misled/weak people to harm the whole group (or "the village")
Links 20/01/2025: More PR Stunts by ByteDance and MLK’s Legacy Disrespected
Links for the day
Gemini Links 20/01/2025: Magnetic Fields, NixOS, and Pleroma
Links for the day
BetaNews Spreads Donald Trump Propaganda, Promotes Scams, and Publishes Fake 'Articles' About "Linux"
This is typical BetaNews
Richard Stallman 'Unveils' His January 20 Talk in Montpellier, France
It's free (gratis)
Over at Tux Machines...
GNU/Linux news for the past day
IRC Proceedings: Sunday, January 19, 2025
IRC logs for Sunday, January 19, 2025