Greg K-H has more credibility than 99% of posters here.
He's literally the #2 guy in Linuxworld (behind Linus). What have you done?
While you are at it, better not ever update Debian or any number of other OSes because their updates are served over plain HTTP.
But we drink it anyway (at risk) because it's free.
XSS is real threat that everyone like you missed.