Hacker Newsnew | past | comments | ask | show | jobs | submit | goodpoint's commentslogin

This is plain false.

There's ton of perfectly usable 2-years old software.

I suspect that CVE inflation has poisoned the minds of many developers.

A db driver may have an issue with unsanitized user input when run against SQLite, but you only use it with oracle and sanitize input anyway, but that shows up as a 9.1 critical deployment blocker for corporate employees.

Unexploitable CVEs with inflated ratings make using any open source software a pain in the butt at BigCo.


Old does not mean vulnerable.

valetudo is just a hack, not a firmware replacement, and could be blocked by a firmware update from the OEM

plus it can void your warranty


Installing Valetudo stops any firmeware updates forever from the OEM. [1]

I wouldn't consider it a hack. It's an alternative way to run your vacuum, with yes potentially less features if the OEM makes a lot of future updates, but Valetudo also comes with their own set of updates.

[1] https://valetudo.cloud/pages/usage/firmware-updates.html


> plus it can void your warranty

Unless you happen to live in a jurisdiction that care more about users than companies, like the EU. The manufacturer would have to prove that the new custom firmware is actually the cause of the damage, otherwise they need to fulfill the warranty guarantee regardless of what firmware you run.


Good luck proving that changing the firmware is not voiding a warranty.

> Good luck proving that changing the firmware is not voiding a warranty.

You're thinking about it the wrong way around. The manufacturer has to prove that the custom firmware is the reason it broke, you don't have to prove anything. Username not accurate.


On top of that the very same oil industry pocketing the 757B does lobbying and propaganda "renewables don't work yadda yadda".


And mental health.


I heard his voice while reading this.


It does not run: "unreachable executed"


Maybe your browser do not support webgpu. Try using Chrome.


You'd be surprised.


Even if they are, they are not updating to latest Debian stable.


They try if they are internet connected


I mean they can't in the first place, because ports only have unstable available


This statement is ridiculous.


A music CD installing a stealthed persistent kernel-level rootkit on your Windows PC would also be ridiculous, yet that's exactly what Sony BMG's rootkit in 2005 did. And guess how it was found?


Those people will not use software designed for professional use and move to something else.


Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: