Hacker News new | ask | show | jobs
by cpncrunch 1967 days ago
I hadn't heard of Qualys until today, and am very unhappy with them. They have thrown us all under the bus by releasing details of this vulnerability before updates are available for major distros. (Still no update for Centos 8 at time of writing this, not sure about any others).
1 comments

RedHat built the fixed sudo RPMs 5 days ago.
They only released it yesterday:

https://access.redhat.com/security/cve/CVE-2021-3156

Still nothing on Centos. Perhaps just another reason to not trust Redhat.

Update is finally here.