Hacker News new | ask | show | jobs
by fulafel 3077 days ago
Ubuntu doesn't really have timely security updates for most of the packages they ship - those in "universe" etc are only randomly issued security patches, and you easily end up running unpatched stuff if you're not careful. With LTS releases you end up with having years of exposure to unpatched abitrary code execution bugs in security critical programs like firejail.
1 comments

Just watching Ubuntu's response to Meltdown/Spectre has been painful.

Spectre patched kernels were only just released into -proposed in the last day or so.

doesn't seem like Ubuntu is all that behind.

Ubuntu Meltdown: Jan 10 Spectre: Jan 11

Spectre for 16.04 LTS only landed in -proposed on Jan 16th. It's still not available for general consumption.