> So? The Linux kernel folks patched within hours or days.
Thank God that's all that's necessary and means we immediately get the updates to our computers without even having to reboot. There are no middle men between those plucky fast acting Linux kernel folks and me too, which also helps. Unlike Windows where... oh wait, no, it's the other way around isn't it?
Seriously gweihir, I'm sure you have your heart in the right place, and I run GNU/Linux (Debian) myself, but stop with this fucking nonsense that GNU and Linux people are somehow the only ones who "care" about security and Microsoft doesn't care at all. There are clear reasons why Windows has vulnerabilities more frequently than GNU/Linux, and they aren't because Microsoft doesn't care about it.
Likewise the GNU/Linux folks, especially the kernel people - a sizable number of which have conniptions when you just ask them to maybe work with people who are trying to introduce better security and use more solid programming languages than C - are not far more security focused. They benefit from having more eyes on their work, but most are just trying to get a device driver to work or make something a little faster. The userland people aren't much better - these are people who don't see the problem in throwing out wholesale decades of well tested code in order to "improve" security because they don't have the brains to figure out how to graft a security layer onto X11 when it's never been easier to do so.
We're going to be picking through Wayland related CVEs for the next 20 years.
The GNOME/Wayland people in particular are more unserious about security than Microsoft is.