

0·
6 months agoNothing in the Qualys report nor the Ubuntu page for the CVE indicate that there is something to be fixed in systemd, only that you can create systemd-tmpfiles rules that will expose the vulnerability in snapd.
What do you think systemd-tmpfiles needs to do differently?

While his perceptions of other people’s motives and meanings may be suspect, his technical analysis seems pretty spot on.