[Discuss] With AI, 2, 000 Vulnerabilities per Linux kernel release

Rich Pieri richard.pieri at gmail.com
Fri Sep 4 14:21:19 EDT 2026


On Fri, 4 Sep 2026 10:54:40 -0700
Kent Borg <kentborg at borg.org> wrote:

> The logic is some code bases are so bad that changes to remove one
> bug churns the crap enough that is is impossible to say that the bug
> count went down.

I can see the reasoning behind this but I think it's not a mathematical
infinity. It's a practical infinity: the code is so bad that the bug
count may as well be infinity.

Yes, this sounds like a good time to throw it out and start over. It's
happened before. A recent-ish example is libqt5webkit5 which is so
badly buggy that it got tossed out for a complete redo.

-- 
\m/ (--) \m/


More information about the Discuss mailing list