Quite the Ubuntu 24.04 vulnerability, via snap packages. Surprise surprise.

https://cdn2.qualys.com/advisory/2026/03/17/snap-confine-systemd-tmpfiles.txt

#ubuntu #linux #CVE20263888

The exploit took 30 days in ubuntu 24.04 and 10 days in 25.10 ... If you read till the end – or jump to it – you'll see the authors responsibly disclosed it to Canonical (who makes Ubuntu) and got it fixed.

Compare to ... Microsoft and its cloud, which the US gov itself declared, in 2024, to be "a pile of shit", and "For years, reviewers said, Microsoft had tried and failed to fully explain how it protects sensitive information in the cloud as it hops from server to server across the digital terrain. Given that and other unknowns, government experts couldn’t vouch for the technology’s security."

https://www.propublica.org/article/microsoft-cloud-fedramp-cybersecurity-government

Federal Cyber Experts Thought Microsoft’s Cloud Was “a Pile of Shit.” They Approved It Anyway.

A federal program created to protect the government against cyber threats authorized a sprawling Microsoft cloud product, despite the company’s inability to fully explain how it protects sensitive data.

ProPublica