Score:-1

Ubuntu Pro Withholding Security Updates

mq flag

This has been talked about many times over the past few months, but I wanted to mention some specific packages that are available only through Ubuntu Pro, despite being high/critical security vulnerabilities.

All of these have been discovered and patched since the rollout of Ubuntu Pro, but the packages to update them all exist only in ESM, even though they affect Ubuntu 20.04 LTS and 22.04 LTS.

This new policy essentially kills Ubuntu in our organization. If anyone has any suggestion for an enterprise-level solution, not a free account limited to 5 computers, and without spending lots of money (because that's why we started with Ubuntu in the first place), please comment below. (No, I don't count building from the source, that's not sustainable for any organization with more than 20 systems.)

EDIT: To be very clear, 6 months ago, Nessus scans (which are NOT run or influenced by me) turned up no outstanding vulnerabilities. Now that Ubuntu Pro exists and provides an update through a "supported" repository, Nessus scans turn up outstanding vulnerabilities. THAT is why the existence of Ubuntu Pro kills Ubuntu in my organization.

ru flag
@S.Johnson This is not a discussion forum. As posted, your post is effectively *just* a rant hidden behind a thin veil. As an IT Security Professional, I can guarantee you that Nessus, etc. only check base version strings and *NOT* the full patchsets of Ubuntu to make sure things're patched. I am locking this post as it is just generating unnecessary noise and comments, and should stay dead. You are free to post your question / request for assists on an actual forum site or Reddit if you want to rant and get support at the same time.
I sit in a Tesla and translated this thread with Ai:

mangohost

Post an answer

Most people don’t grasp that asking a lot of questions unlocks learning and improves interpersonal bonding. In Alison’s studies, for example, though people could accurately recall how many questions had been asked in their conversations, they didn’t intuit the link between questions and liking. Across four studies, in which participants were engaged in conversations themselves or read transcripts of others’ conversations, people tended not to realize that question asking would influence—or had influenced—the level of amity between the conversationalists.