What I learned from patching Docker Engine default seccomp profile for CVE-2026-31431 (Copy Fail)
1. If a seccomp rule already filters an argument (like AF_VSOCK), it's just a matter of adding a second negation for the AF_ALG, right?
Wrong!
These are two rules that ...
@Piechocinski Czyli, wiceminister powiedział, że najbogatsi Polacy nie są podatnikami 🫠
Bo jak inaczej miliarderzy (których nawet nie dotyczy 2 próg) mieliby na tym skorzystać?
Deep inner suffering inevitably arises when the human person is reduced to performance, consumption, or a statistical datum. Many young people today live under the yoke of expectations to perform, immersed in an exasperated competitiveness that generates anxiety, fear of not measuring up, and disorientation.
As much as I'd like to move off Vim... every editor is either a bloated mess or a security nightmare.
I really wanted to move to Zed but the silent "npm" installs really threw me off.
Looks like neovim is not leaving my toolset any time soon
@valigo So you're saying that:
Linux distro packagers:
> subject ANYONE who wants to use Zed even for Rust/C/C++ programming to security nightmare that is npm.
while
> Zed is a little bit to blame here
.
Are you serious?
Wrote a blog: Improvements to Rootless mode in Docker v29.5
https://t.co/8cbGXw8pKM
- Faster image pulling and pushing
- Support for `docker run --net=host`
- Support for localhost registries
- Source IP propagation without the legacy slirp4netns dependency
💥 Introducing "Dirty Frag"
A universal Linux LPE chaining two vulns in xfrm-ESP and RxRPC. A successor class to Dirty Pipe & Copy Fail.
No race, no panic on failure, fully deterministic. ~9 years latent.
Ubuntu / RHEL / Fedora / openSUSE / CentOS / AlmaLinux, and more.
Even if you've applied the "Copy Fail" mitigation, your Linux is still vulnerable to "Dirty Frag". Apply the Dirty Frag mitigation.
Details:
https://t.co/9nqku4svkY
I was bored this weekend so I've started to reimplement Divine Divinity game engine (basically like OpenMW does with Morrowind, still requires original game content)
Can already fly over Ferol!
#opendivine