Bonum Certa Men Certa

Phoronix Still Acting Like the Sky is Falling for X11 (Wayland Far More Troublesome)

posted by Roy Schestowitz on Oct 26, 2023

Panic black stamp text on blue

Reprinted with permission from Ryan Farmer.

And now for a bad lip reading regarding the latest “X11 security incident”.

“Hello, I have been using Google Chrome on my multi-CRT setup on a computer from 1999. I am very concerned that attack code will try to exploit a use after free in Xvfb while I use Zaphod heads.”

“May I speak to the manager?”

😀

I’m honestly surprised that anyone is even looking for bugs that are this uninteresting.

No doubt, if they are found they should be fixed. Again, the fixes are not a dramatic overhaul of anything. They boil down to a few lines of code being altered.

I do have to wonder why Trend Micro (a Windows “security” huckster) is looking for crap like this in X11.

Maybe so that “news” sites like Moronix can continue posting about “Linux security problems”.

Microsoft likes this. They benefit from the misdirection.

Microsoft is obviously paying some sites to ham it up as a distraction from constant actual Windows and Azure data breaches where people make off with everything from your banking and healthcare data, to things that are impossible to fix, like your Social Security numbers and credit files.

The realfact (I’m a realfact kind of guy.) shows that Microsoft is too dangerous to actually use or trust anywhere that data security is actually important.

Quite often these “Linux bugs” are not bugs in Linux itself, but rather anything “open source”, often stuff that’s widely used on Windows, or even a part of Windows, or in the “Corrupted Linux” called WSL, which they have extended like the Microsoft Java VM, so they’re not even Linux programs anymore if you build them that way.

The fact that “security researchers” keep finding so many bugs that are only barely important tells me that someone has an agenda. Who pays people to sit down and find trivialities? I wonder.

What to do about these X11 bugs?

Well Debian has already issued an updated set of Xorg packages. Just install them and restart X11. Big whoop.

Honestly, it’s hard to tell how this would even be exploitable, but you should always patch things ASAP.

The same media going on about this doesn’t ever talk about 30-40 emergency vulnerabilities every month in Microsoft Edge, Google Chrome, or Firefox.

Other Recent Techrights' Posts

Microsoft XBox Staff Know They're in Trouble, They Try to Unionise Ahead of Mass Layoffs
As the slang goes, it's going to be a "bloodbath"
SLAPP Censorship - Part 72 Out of 200: Microsoft's Graveley and Garrett Signed Documents That Hold Them Accountable to Truth and Liable for Lies
Such collaborations are unsavoury and apparently unprofessional, too
 
Codecs and Software Patents - Part VI - The European Patent Office, Nokia, Microsoft, Sisvel, and More
Whatever Nokia used to be, it's certainly not an ally and a lot of the turmoil at the EPO is the fault of companies like Nokia
Today the Whole European Patent Office (EPO) is on Strike and Next Monday an Even Bigger Strike
the media refuses to cover these and is thus complicit
The Corrupt Lecture the Non-Corrupt - Part IXX - EPO Management Speaks of Reputation and Integrity While Putting Cocaine Addicts in Management
If the EPO values its "reputation", then it needs to start by ousting the management
Over at Tux Machines...
GNU/Linux news for the past day
IRC Proceedings: Sunday, May 10, 2026
IRC logs for Sunday, May 10, 2026
Links 11/05/2026: Security Breaches, Politics, and Energy Crunch
Links for the day
Gemini Links 10/05/2026: "Accidental Cameras" and "Addictive" Interfaces in Social Control Media
Links for the day
Codecs and Software Patents - Part V - A Reminder That GAFAM and the European Patent Office (Which Serves American Monopolists) Do Considerable Harm to the Commons and Culture
some 'breaking' developments
Gemini Links 10/05/2026: Inkscape, Guix, and Alhena 5.5.8
Links for the day
The "Alicante Mafia" at the European Patent Office (EPO) Experiments With New Methods for Crushing Industrial Actions
Open letter to VP1 and the COO [...] What does this tell us about the status quo at the European Patent Office, Europe's second-largest institution?
The Corrupt Lecture the Non-Corrupt - Part XVIII - "The European Patent Office (EPO) has a zero-tolerance policy for fraud" (except when managers do it)
The guidebook of the EPO says fraud is not to be tolerated, but who enforces or revisits such "Red Lines"?
Links 10/05/2026: Hantavirus Brings Back 'Contact Tracing' Surveillance, "Staple Food Prices Soar in Iran"
Links for the day
Links 10/05/2026: Fake Suicide Notes and New EU Restrictions on Slop
Links for the day
Over at Tux Machines...
GNU/Linux news for the past day
IRC Proceedings: Saturday, May 09, 2026
IRC logs for Saturday, May 09, 2026
Gemini Links 10/05/2026: Travelling to Van and "Dark Mode" as Passing Fad
Links for the day
IBM's Kyndryl Holdings Inc Sank 70-75% in 'Value' in 10 Months, Will IBM Follow?
Kyndryl Holdings Inc now has a debt considerably higher than this company is said to be 'worth'!
Belated Sovereignty: GNU/Linux in Iran Skyrockets to 6% Amid Armed Conflict
unless they're truly in control of their networks, hardware and software, somebody else can control them
Gemini Links 09/05/2026: Liberation, The Nocturnals, Rediscovering Internet Radio, and More
Links for the day
Links 09/05/2026: Kremlin’s Biggest Day of the Year and FBI's Attack on the Media (to Save Face)
Links for the day
Google is "Bullshit"
Fix your slop, Google. It's broken.
SLAPP Censorship - Part 71 Out of 200: 5RB Barristers Made Tens of Thousands of Pounds by Changing From Plural to Singular for Microsoft's Graveley and Garrett
Could not even get the client's name right
Links 09/05/2026: "Grand Theft Oil Futures" and Mass Layoffs at Verizon
Links for the day
Gemini Links 09/05/2026: Inkscape "Copy Text Style" and NomadNet
Links for the day
The Corrupt Lecture the Non-Corrupt - Part XVII - European Patent Office (EPO) Management Not Sharing Responsibility for Financial Resources
For those who wonder, EPO strikes are still going on
Over at Tux Machines...
GNU/Linux news for the past day
IRC Proceedings: Friday, May 08, 2026
IRC logs for Friday, May 08, 2026