A lot of those packages are pretty core to deployments, the docker ones in particular are probably on every developer/homelabber using void (so everyone probably?)
The docker runtimes handle a lot of the container sandboxing and security configuration, and are a huge source of container escape vulnerability.
I’m so tired of “Ai big number” headlines. 100+ packages - but how many good ones? (Genuinely, I don’t know, as I don’t the recognize those listed.)
We need projects that diligently keep the slop out. We don’t need every protect to do so, but it is critical that some do.
We have Meta and Microsoft to provide quick-to-market low quality shit.
The version of Linux that matters is the slow thoughtful good software.
I’m not mad at slop slingers, aa long as they don’t secretly inject slop risk where not welcome.
Edit: Thanks for responses.
For anyone who has read this far, I encourage seeing responses below for informative and nuanced thoughts on this.
A lot of those packages are pretty core to deployments, the docker ones in particular are probably on every developer/homelabber using void (so everyone probably?)
The docker runtimes handle a lot of the container sandboxing and security configuration, and are a huge source of container escape vulnerability.