in reply to Nick

@ratcatcher @thrilway While we'd love if K-9 Mail could regenerate automagically into Thunderbird, the Google Play Store doesn't like that. You'll need to download Thunderbird for Android separately, and we'll have instructions on how to transfer your information between the two apps. (For the immediate future, a separate K-9 Mail branded app will still exist.)

So this "CVSS 9.9" "unauthenticated RCE vs all GNU/Linux systems (plus others)" thing...

- Does NOT affect all GNU/Linux systems.
- Is not CVSS 9.9. I put it at a 6.3

It also requires:
1) The victim system has no active firewall to block incoming connections.
2) A user on the victim system must print something to a printer that mysteriously appears on the system that has never been there before.

If these two things happen, then command execution can happen as the "lp" user.

<yawn>

We get it. You found a vulnerability.
Lying about it to try to stir up interest in it is not appreciated by anybody who takes themselves seriously in this industry.

CVE-2024-47176, CVE-2024-47076, CVE-2024-47175, and CVE-2024-47177 have been assigned.

evilsocket.net/2024/09/26/Atta…

People on StackOverflow telling people to screw up #accessibility with the HTML dialog element defeats the purpose of using that element in the first place IMO. Please upvote my answer that corrects the numerous wrong answers, including the accepted answer, to this question if you have an SO account.

stackoverflow.com/a/79028606/2…

#webDev #a11y #html #css #javaScript

Reminder that the original Metatext third party app is no longer being maintained, as its lead developer had to step back due to health issues.

However, there is a new version of Metatext run by different people called Feditext which is currently in public beta testing. You can follow the official Feditext account at:

➡️ @Feditext

If you would like to join the public beta testing, it's on Apple TestFlight. There are more instructions here:

➡️ mastodon.social/@Feditext/1128…

#FediTips #Mastodon #iOS

reshared this

Kamarádi, jste úžasní. Strašně moc jste nakopli předprodej Syndikátu, knihy, u které vám nemůžeme říct, o čem je. Ale je skvělá. Je o budoucnosti. Blízké. A trochu detektivka. Trochu akční thriller. A trochu o lásce. Jinak by to nešlo.
Knihy z předprodeje jsou, samozřejmě, se slevou a podpisem. Když budete knihu číst mezi prvními, bude to rozhodně nejlepší. knihydobrovsky.cz/kniha/syndik…

Philosophy and mental health are deeply interconnected. The practical wisdom derived from philosophical reflection offers valuable insights and tools for navigating life's challenges. By integrating philosophical concepts into counseling, individuals can gain a deeper understanding of themselves and their experiences, fostering greater mental well-being.

#Philosophy #MentalHealth

psychologytoday.com/intl/blog/…

it would be very nice for the world and industry if what the C++ committee said here was true and if they actually cared about memory safety. but with a committee that writes nonsense like this, actively denying the problem, i don't see this happening.

> "Memory safety is a very small part of security."
-- C++ Committee submission to DOE laying out the language's memory safety strategy.

downloads.regulations.gov/ONCD…

1/2 "Na spiatočnej ceste vlakom sedeli vedľa mňa dve dámy. Rozprávali sa o niečo hlasnejšie, ako by sa patrilo, ale práve preto viem, že jedna z nich zarába v štátnej službe 900 eur – s príplatkami, keď je dobrý mesiac (august dobrý nebol).

Úprimne netuším, ako sa z 900 eur dá s aspoň nejakou mierou dôstojnosti prežiť, o nižších sumách nehovoriac, lebo aj tie mnohí ľudia dostávajú. A majú rodiny."

~ #SamoMarec

komentare.sme.sk/c/23387676/na…

Hey Rust users. I want to call attention to this Hacker News comment by the primary developer of async/await support in Rust: news.ycombinator.com/item?id=4… Especially this:

> The state of async Rust is not better because no one hired me to finish it past the MVP.

I wish there was a way that all of us who have ever complained about async Rust could pool funds to hire this person. I'd be happy to be the first to contribute, though I don't remember if I've actually complained about this.

in reply to DAVID WOODBRIDGE

This is very sad news. I think that iMore was the first Web site I encountered where I was blown away to find an article on VoiceOver. It was then that I realized that accessibility features on Apple products weren't just documented on blindness-specific Web sites but that there was an awareness of this technology from mainstream sources. This is a sobering reminder that it's not just blindness-specific sites that could go away at any time.