• 1 Post
  • 118 Comments
Joined 1Y ago
cake
Cake day: Jun 24, 2023

help-circle
rss

Go to Edit > Preferences > System and check where your User Extensions folder is, then extract the xz file to there

Maybe you can also change the extensions folder in this configuration


Dude, you need a prize for this comment. Very well explained!


Does it matter?

This is a vulnerability anyway and we should be take care of.


Well, looks like you know how to format a PC. Then you already did 90% of the dirty work of installing and using a Linux.

Choose a friendly-linux distro and you’ll be fine. I suggest you to try Arch (I’m joking!) Linux Mint, Fedora, PopOS or Zorin OS.

I think PopOs would be really easy!


I miss the point why they don’t invested into Flatpak. I mean, with Flatpak they could’ve focus on make Zed works on the Flatpak platform and, as a consequence, it will be fine in every distro. The only thing that they should’ve be taking care is X11 and Wayland, but every other aspect to worry such as distro choice, QT/GTK, Gnome/KDE, etc would be vanished away


Go with Arch with btrfs.

You can delay your updates as long as you need, but make sure to update your arch.keyring first. And never partially update, cause things can go crazy really fast if you partially update.

Also, Arch meet all your criteria. I see no reason to not use it.


You know you can install the Nix Package Manager on any distro and have all Nix repo in your hand, right?



Why don’t we improve the basic stuff, like processor architecture?

Because if we do, we make everything we have working now break. So everything would need be ported to this new architecture.

The same with bash or any other foundation lib.

And also these “improvements” may make these libs more complex and, therefore, more unstable and hackable.

The simple is simple for a reason: It works trustfully


Flatpak is user wide, so yeah, they can…


I bet that a kid with no root access or sudo permission couldn’t break any Linux system, immutable or not…


Gnome itself is embedded with parental control and you can enable it while adding a new user

I don’t know how other DEs deal with it, but I think all of them has something similar, tho

Edit: also may be a good idea set a AdGuard to set a DNS block for some origins… AdGuard gives you the capability to block several apps and you can customize blocks as well


It looks like a third party issue rather than Gnome issue…

Maybe you just need to wait for an update that fiz it


Arbitrary, exactly like any other distro tierlist


Agreed. In Arch you can run a post-script after update in pacman, so you can update the python file. But I don’t know how other package managers deal with it


Because is Chinese. And that’s not what I think, it is what it is.

Or they will ban X and Im not aware?


I thought that US was the country of freedom, but turns out that the freedom is just to racists, nazis and for them to fuck up other countries.


The first tool I can think of is LibreOffice Draw

Maybe there are other tools, but I think LibreOffice Draw do the job pretty well

Edit: If the PDF has written text, you may wanna use an OCR tool, but I don’t have any to suggest


I am able to fully use passkey with Firefox and KeePassXC on Linux.


whereas I’ve configured Firefox on their Linux laptop not to keep any cookies after the browser is closed.

Here is your issue

It has nothing to do with Linux at all. It’s all about the browsers configurations you made




I don’t know the distro, but surely the messenger is based on Matrix protocol


I think you can run like this:

$ pkexec env DISPLAY=$DISPLAY XAUTHORITY=$XAUTHORITY <yourapp>

For example, if I wanna open kgx (a.k.a. Gnome Console), I would run:

pkexec env DISPLAY=$DISPLAY XAUTHORITY=$XAUTHORITY kgx



I’m afraid you can’t

The calendar shares information due to CalDav compatibility, however I don’t think it applies to Tasks as well, since we don’t even know what protocol Google Tasks uses

I think the best you can do is use the Todo.txt app on your phone and sync it through Google Drive to have access in both your phone and your PC


Definitely Linux Lite run on a potato. Maybe you should try it



Ah! Okay…

Well, it was intentionally xD

But I didn’t thought it would be a funny pun hahaha

Anyway, I did it mostly because the OP also did


Well, I guess u have your answer, tho

The important thing here is to feel good with your decision


Well, until someone find a new backdoor, I call it safe again

I’ll not lose my mental health to a potentially and unknown shady backdoor that could be installed or not in a lib


What I did there? o.O

I don’t even know


Arch wasn’t affected at all, cause the backdoor trigger was only on deb and rpm distros.

However it still a good practice to update your system and leave this version behind. Anyway, Arch already updated and is no longer distributing the backdoor version, therefore 5.6.1-3 is safe

You can use Arch btw again. Actually, you never had to leave it at first


For my daily laptop I use Arch with LTS kernel. I’ve using it for years and had only 1 issue with normal kernel (that made me switch to LTS)

Also I used Arch as server for long time in my homelab, however now I changed to OrangePi and Raspberry Pi, so I use Ubuntu


Nothing is as good as an Arch server… I love the adrenalin running in my veins every update!

I even set an autoupdate script to make things even more scarier!

Despite the adrenalin rush, my Arch never broke


Well, if the choice to change from XZ to zstd is based on other technical features, my previous point is pointless

It’s always great to see better technology being implemented!


I think it solves nothing, cause it’s not primarily a XZ issue itself, but some bad actors that infiltrate into the community for years to finally use his credibility to upload a backdoor. Every single package is vulnerable to this kind of attack and has little we can do to completely avoid it

Of course we have to make the best moves to prevent this happening again, however it’s not a simple “I’ll use X instead of Z” (see what I did here?!), cause both X and Z may be doomed with this shit anytime



Well… I typed “vim -y” at the terminal to see what was that and now I don’t know how to leave vim.


I’ve been using some sort of unix CLI since the time I learned to pee standing (last year?)

Well, if you’re a woman that’s a huge thing, pee standing!

If you’re a man, pee sitting (at home/friends home), please… It makes cleaning very, very simpler and the bathroom doesn’t smell like public restroom


And more, it’s known that av can increase sloppy behavior regarding security in people that does not know about security, making them feel safe and, therefore, clicking anywhere and installing anything

Av does increase the risk of being infected for most people

The way this xz backdoor was treated is good enough!

  1. Identify
  2. Announce
  3. Evaluate
  4. Rollback

Always with good version control and cryptographic keys to sign the packages


[Solved] I can’t connect to Gnome Online Accounts
# Prologue Today I messed up with the permissions at my home folder, so after a struggle time I finally was able to enter in TTY2 and set all my home folder with permissions 766. However I don't know if all my files, folders and hidden stuff had this permission, but still, now my desktop is mostly working. # Actual issue Now, with mostly correct permissions, I found that my Google Account synced wasn't retrieving any data, so I removed my account from Gnome Online Accounts and tried to login again. Well, it does not work as intended anymore. The popup shows asking for the username and after asking for the password. After I enter the password, it keeps loading forever never asking me for allow granting Gnome permissions. Interestingly, if I type the password wrong, it recognizes that's wrong and gives me a error message. This bug only happens when I type the correct username and password. Even more interesting, is that if I try to connect any other Google account, it does work! # What I tried - Reboot my laptop - Remove the folders `~/.config/goa-1.0`, `~/.cache/gnome-control-center-goa-helper` and `~/.local/share/gnome-control-center-goa-helper` - Restore the correct permissions to `~/.gnupg` to 600 - Creating a new user (I wasn't able to login as well) - Deleting app permission for Gnome on Google Manage Account - Tried to `pacman -S gnutls`, `pacman -S gnome-online-accounts` and `pacman -S gvfs-goa` I'm hopeless. I don't know what else to try. I need this account connected to my Gnome Online Accounts cause it makes part of my workflow. Is there any other configuration file I missed? Is there any other database I missed? Any ideia how to solve it? Thank you in advance, guys --- # My setup ## Hardware Information: - **Modelo do hardware:** Acer Aspire A515-45 - **Memória:** 12,0&nbsp;GiB - **Processador:** AMD Ryzen™ 7 5700U with Radeon™ Graphics × 16 - **Gráficos:** AMD Radeon™ Graphics - **Capacidade de disco:** 256,1&nbsp;GB ## Software Information: - **Versão do firmware:** V1.13 - **Nome do SO:** Arch Linux - **Compilação do SO:** rolling - **Tipo do SO:** 64 bits - **Versão do GNOME:** 45.0 - **Sistema de janelas:** Wayland - **Verificação do kernel:** Linux 6.1.59-1-lts # Solution Turns out that Google's new 2FA method was not allowing me to proceed with verification. I turned off 2FA, login in the Gnome Accounts and then turn back on the 2FA
fedilink