This appears to come from dressing up like Elton John in a feather suit and hiring a marketing team.
I don't understand why you're being so defensive about this.
These complaints aren't about what's better or worse for the user community; they're about people trying to put vulnerability researchers in their place.
I don't want or need fanfare, marketing or any of that stuff.
It's a bug for fucks sake. There will be people having web pages for Gnome user interface bugs next.
Why? This is a better resource in every way: https://cgit.freebsd.org/src/commit/?id=000d5b52c19ff3858a6f...
It details the actual problem instead of showing off tired stack exploit tricks.
Case in point: what's "tired" about the stack exploitation techniques they're using here?
And, while you're not right, even stipulating that you were, what would that matter? How is anyone better off with less explanation of a vulnerability?
I'm more interested in the why than the how.
I suppose people with different overall goals will see that differently.
git log -S suggests 4cd93df95e697942adf0ff038fc8f357cbb07cf9, which looks more likely: https://cgit.freebsd.org/src/commit/?id=4cd93df95e697942adf0... - though not to say you don't want the later commit too. I'm sure you do.
CVE numbers are for boring professionals.
Is there something in this website that feels unnecessary? It seems like a good format of sharing high quality information.
This looks like a full bug into a complete root escalation of a kernel. That's hard to do and deserving of praise. The fact that we have a writeup organized like this is awesome.
-------
This is sort of the expert level stuff that I thought HackerNews would most enjoy.