logoalt Hacker News

cpercivatoday at 1:01 AM2 repliesview on HN

Debian is probably the best of all the Linuxes, but still suffers from split-brain: If patches are sent upstream first, Debian can't start digesting them until they're already public.

With FreeBSD there's never any question of "who should this get reported to".


Replies

JoshTripletttoday at 1:26 AM

> Debian can't start digesting them until they're already public

Not sure what you mean by this. Debian is able to handle coordinated disclosures (when they're actually coordinated), and get embargoed security updates out rapidly without breaking the embargo.

Is there some other aspect of this that you're referencing?

show 2 replies
goodpointtoday at 1:13 PM

No, Debian has its own security team and receives embargoed vulnerabilities and patches.