DevConf.CZ 2026

Satish Mane

Satish Mane is a Software Maintenance Engineer at Red Hat working on the RHEL userspace. His primary focus is maintaining ABI compatibility over the 10-year enterprise lifecycle. He backports critical CVE patches like Node.js, Ruby, and Python packages without breaking downstream dependencies. This involves adapting modern upstream fixes for older toolchains, managing RPM macros, and passing strict Koji/TFT gating.


Company or affiliation:

Red Hat

Job title:

Software Maintenance Engineer


Session

06-19
12:30
35min
Backports Over Breakages: Patching AI Stacks Without Killing Your Models
Satish Mane, Nikita Sanjay Patwa

Generative AI might be the future, but it still runs on Python, glibc, OpenSSL, and the Linux kernel. What happens when a critical CVE drops in these foundational components? If you blindly update, you risk breaking brittle ML dependencies. If you do nothing, your AI infrastructure becomes a massive attack vector.

In this session, we will explore incident response from the perspective of an Enterprise Linux distro engineer. We will demystify how CVE severity is analyzed specifically for AI workloads and unpack the delicate engineering decisions behind backporting security fixes without triggering regressions in complex AI runtimes.

Through a hands-on live demo, we will recreate a historical CVE in a core cryptographic library, demonstrate its impact on a running AI inference service, and apply a seamless system patch to validate service continuity. You will leave with a practical playbook for navigating security crises without sacrificing the stability of your production AI.

Security and Compliance
E104 (capacity 72)