Live data from Hacker News

Omarchy: Any User Process Can Escalate to Root

0xcc.io

231–240 of 590 posts

Re: Omarchy: Any User Process Can Escalate to Root

#231

Sad that people just complain about what DHH is doing and how he doesn't know anything. Nobody is forcing anybody to use Omarchy at all. Also $10 million was raised by him for it, did anybody else here raise that for a distro? I'm tired of the constant complaining and criticizing. Nobody said you have to use it.

I don't care what he's doing, I care about what he is.

What he is or what random blog posts present him as?

Re: Omarchy: Any User Process Can Escalate to Root

#232
post #182

"Opinionated" software sounds great until you find out the author has the stupidest opinions you've ever heard in your life.

and in this case that's even before you get to the software opinions

Why is it always the people with the worst opinions who make the most stuff though? Why aren't the rest of us making popular stuff?

Re: Omarchy: Any User Process Can Escalate to Root

#233

Why not use rootless podman? It is 2026 not 2016, Podman works much better than Docker today.

I've used docker until recently just because it was what I was used to. It turned out I can basically just `apt install podman` and it'll just work. I might have stayed a bit behind the times with having podman slotted as a redhat thing.

Re: Omarchy: Any User Process Can Escalate to Root

#234
post #36

I think people shouldn't just jump to distros which are getting heavily hyped in media/Youtube, cachyOS had similar wave, and now Omarchy does. (example: NetworkChuck, Primeagen? and a few others) also, archlinux is much easier to install nowadays with archinstall [1], so i'm not sure you really need another opinionated layer on top of it [1] - https://wiki.archlinux.org/title/Archinstall

Just use Fedora. It just werks (most times).

is there a fedora 44 ws with non free package built in ?

Re: Omarchy: Any User Process Can Escalate to Root

#235

I think people shouldn't just jump to distros which are getting heavily hyped in media/Youtube, cachyOS had similar wave, and now Omarchy does. (example: NetworkChuck, Primeagen? and a few others) also, archlinux is much easier to install nowadays with archinstall [1], so i'm not sure you really need another opinionated layer on top of it [1] - https://wiki.archlinux.org/title/Archinstall

I had just enough issues with archinstall the last time I tried it that I went back to EndeavourOS which essentially gets you a GUI installer and some pre-installed utilities on the stock Arch install. The only significant change I'm aware of is that they use dracut instead of mkinitcpio.

Re: Omarchy: Any User Process Can Escalate to Root

#236
Wow... this is really telling. This isn't some obscure whoopsie. The docker install page has a giant section explaining exactly this problem. Every Docker section on every distro wiki walks through this issue in detail. It 80% the reason Podman was created in the first place.

Re: Omarchy: Any User Process Can Escalate to Root

#237
Ubuntu has the exact same vulnerability, except with lxd instead of docker, but for some reason, it's considered working as intended.

On a fresh install of Ubuntu Server, the first user created is part of the lxd group, can install lxd without root thanks to snap, and can immediately create a privileged container with the host's root filesystem mounted inside.

Re: Omarchy: Any User Process Can Escalate to Root

#238
post #202
post #84

Earlier quoted context omitted.

Basic docker users are the same as angry haters I guess.

That's not what I claimed or said, do read my posts please and project less :)

No harm, no foul izacus. I am laughing inside because I'm included in the "angry" group by default (I hate all Linux distros, less than Windows or MacOS) and I'm often a basic docker user but got over major DE customization like Omarchy when I needed to get thing done at a higher rate (back then the coolness was crunchbang).

Re: Omarchy: Any User Process Can Escalate to Root

#239

A few days ago someone found they were flowing USB descriptors straight into the shell. https://github.com/omacom/omarchy/commit/9285b19d6a72eba3df8... Don't use vibecoded distros. It doesn't matter whether they fix this or that, or whether you care about a particular vuln. This is not sensible. It's why you switched away from Windows in the first place, remember?

Other than hype, what's the appeal here? I saw a couple video demos recently, and was horrified that it seemed one had to memorize a dozen key binding shortcuts to really use it. Is that rather common now? I'm just a Gnome pleb who prefers discoverability via UI.

What I don't get is that VS Code has solved this perfectly via the command palette - you just bring up the prompt and start typing and it will find you the command you actually need without having to memorize anything.

Re: Omarchy: Any User Process Can Escalate to Root

#240
post #36

Earlier quoted context omitted.

Just use Fedora. It just werks (most times).

is there a fedora 44 ws with non free package built in ?

You still have to use rpmfusion, which isn’t a huge deal. It’s maybe 5 min one time and then you are set.

Or you could use one of the Universal Blue spins. Bluefin and Aurora have non-free stuff built in and you can install pretty much any package from anywhere.

Post reply on HN