Latest Linux and open source news from around the web

All Sources 9to5Linux Fedora Magazine Foss Force How-to Geek It's FOSS Linux Insider Linux Journal Linux Magazine Linux TLDR Linux.org Linuxiac LPI LWN.net OMG! Ubuntu Phoronix
OMG! Ubuntu

Firefox 146 Released with Fractional Scaling Support on Linux,

Mozilla Firefox 146 is out, adding a final flurry of features to round off whatโ€™s been an interesting year for the open source browser โ€“ but is there anything good in the update? Arguably, the โ€˜headlineโ€™ change for Linux users is Firefox now fully supports fractional-scaling under Wayland by default. The change, Mozilla say, makes โ€œrendering more effectiveโ€ (i.e., text, icons, menus and cursors appear non-blurry, position correctly and render at the right size). โ€˜Fullyโ€™ is an important qualifier as Firefox already scaled well, but a parts didnโ€™t (e.g., AI link previews would show oversized on my laptop @ 150% [โ€ฆ]

Phoronix

Rust-Based Project Aims To Provide Modern Thumbnails For Audio/Video Files On GNOME

Since Showtime replaced Totem as the default video player of GNOME, the desktop has lacked thumbnail capabilities for audio and video files. But to address that defect, the Rust-based gst-thumbnailers project has been in development to leverage GStreamer and paired with Rust to provide safe thumbnail generation capabilities for audio and video content...

LWN.net

[$] Disagreements over post-quantum encryption for TLS

The Internet Engineering Task Force (IETF) is the standards body responsible for the TLS encryption standard โ€” which your browser is using right now to allow you to read LWN.net. As part of its work to keep TLS secure, the IETF has been entertaining proposals to adopt "post-quantum" cryptography (that is, cryptography that is not known to be easily broken by a quantum computer) for TLS version 1.3. Discussion of the proposal has exposed a large disagreement between participants who worried about weakened security and others who worried about weakened marketability.

LWN.net

Addressing Linux's missing PKI infrastructure

Jon Seager, VP of engineering for Canonical, has announced a plan to develop a universal Public Key Infrastructure tool called upki: Earlier this year, LWN featured an excellent article titled "Linux's missing CRL infrastructure". The article highlighted a number of key issues surrounding traditional Public Key Infrastructure (PKI), but critically noted how even the available measures are effectively ignored by the majority of system-level software on Linux. One of the motivators for the discussion is that the Online Certificate Status Protocol (OCSP) will cease to be supported by Let's Encrypt. The remaining alternative is to use Certificate Revocation Lists (CRLs), yet there is little or no support for managing (or even querying) these lists in most Linux system utilities. To solve this, I'm happy to share that in partnership with rustls maintainers Dirkjan Ochtman and Joe Birr-Pixton, we're starting the development of upki: a universal PKI tool. This project initially aims to close

Phoronix

Linux 6.19's Hung Task & System Lockup Detectors Can Provide Greater Insight

Beginning with the Linux 6.19 kernel, the hung task detector and system lock-up detector are now optionally able to provide greater insight into the issues by dumping additional system information. The new lockup_sys_info and hung_task_sys_info sysctl knobs were merged over as part of the pull requests managed by Andrew Morton...

Phoronix

Live Update Orchestrator "LUO" Merged For Linux 6.19

Google engineers for the past number of months have been working on the Live Update Orchestrator as a new way of applying live Linux kernel updates. The Live Update Orchestrator "LUO" builds atop the Kexec Handover "KHO" functionality already within the kernel. Google has since been deplyoing LUO in their production environments for faster security updates to kernels, especially when involving VMs. LUO is now upstream in Linux 6.19...

LWN.net

Security updates for Monday

Security updates have been issued by Debian (ffmpeg, krita, lasso, and libpng1.6), Fedora (abrt, cef, chromium, tinygltf, webkitgtk, and xkbcomp), Oracle (buildah, delve and golang, expat, python-kdcproxy, qt6-qtquick3d, qt6-qtsvg, sssd, thunderbird, and valkey), Red Hat (webkit2gtk3), and SUSE (git-bug, go1, and libpng12-0).