A turning point for CVE numbers
A turning point for CVE numbers
Posted Feb 20, 2024 8:48 UTC (Tue) by gmgod (guest, #143864)In reply to: A turning point for CVE numbers by jbenc
Parent article: A turning point for CVE numbers
The message is clear: you want security, you use the latest kernel (LTS is probably fine because fixes are backported there too).
I do agree and I do think that if the plan goes through, the kernel devs will have to up their testing game.
But at any rate, the time of the go-lucky approach of installing Debian stable and believing the system will never come down after an update is over. You talk about "real problems people have"... If you can afford a hardware failure or a borked package after such an upgrade, you can afford a kernel "failure". If you can't, there are already measures in place to handle those, "bad" kernel update included.
And again, this will go both ways. I bet you we'll see a lot of investment in testing in the next couple years.
