Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

Isn't it the case that ubuntu compiles the packages themselves ?

This offers a measure of security agains malicious binaries ...



No, individuals can upload binary packages to PPAs.

Even if Launchpad builds the binary package, Ubuntu does not review packages' content.

The trust model for PPAs requires users to trust PPA owners, not Ubuntu.




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: