Comment 14 for bug 1996653

Revision history for this message
Ian (superian) wrote :

I was also being repeatedly told that there was an update, and could see that there were seven security issues rated 'high impact' in the version I was on, all of them available to any bad actor who looked at what had changed, and yet was denied access to it for two days.

Doing 'snap info firefox' told me 107.0 was the current latest/stable, but 'snap refresh firefox' repeatedly denied that any updates were available.

"we just discovered that this feature was disabled on our side"

Oops.

So the end result was that Ubuntu both deliberately (not letting automatic updates work) and accidentally (not realising manual updates were also blocked) withheld published security fixes to a large chunk of its desktop users that it had more or less forced to use the snap store for a critical application.

That's Not Very Good At All, is it?

I don't think this is the first time this has happened either, albeit not for as long as two days.

About the only positive outcome is that I know that, yes, I really do prefer Firefox to the Chromium-based browsers that I was using for those two days, but it's making me wonder just how much Ubuntu values its desktop users. (You know, the sort of people who get their organisation to use Ubuntu on the servers.)