Elektrine lite

← Feed

@TeaWithDani@lemmy.world

2026-09-15 23:30 UTC

My bet is, Canonical as a service provider has a paying customer that is willing to pay for access to more secure rust utils. Or they want to save resources fixing CVEs. There’s also the spectre of future security regulations possibly demanding these changes one day too.

Replies (2)

  • @Azazel@lemmy.ml 2026-09-15 23:34

    Hmm you could very well be right. I guess I’m being to reasonable by knowing new rust code is not automatically (and not usually) more secure then old c battle tested c code. Shareholders and CEOs don’t understand that, I wouldn’t be surprised if someone’s been convinced rust is axiomatically more secure and bankrolling the migration over it

    Open ##4713212

  • @PuercoPop@piefed.social 2026-09-16 00:17

    Ubuntu did invest in a security audit of uutils. It revealed issues that show fundamental misunderstandings on how to use posix APIs. If they cared about security they would have postponed the adoption at least one more cycle. Uutils are they not ready for general availability. Plus after decades of bug fixing coreutils doesn’t have lots of security issues. The CTO of canonical keynoted Rust conf about uutils and is pushing forward the project. My guess is for political capital inside canonical. Will long term uutils or another coreutils written in Rust will be a great yes. Today is not the day.

    Open ##4713653