!NBBFPbiuttRgTqbrcY:nixos.org

NixOS Security Discussions

368 Members
Discussions around Security | Triaging happens in #security:nixos.org125 Servers

Load older messages


SenderMessageTime
8 Jul 2022
@whentze:matrix.orgWanja HentzeI might give that a try, but I'll pick some more low-hanging fruit first15:59:53
@whentze:matrix.orgWanja HentzeNext one: https://github.com/NixOS/nixpkgs/pull/18073916:08:52
@whentze:matrix.orgWanja HentzeThis one has been in unstable for a while now, but the backport fell through the cracks16:09:17
@qyliss:fairydust.spaceAlyssa Rosswhentze: PRs or not-yet-discussed CVEs can go in the triage channel I think16:10:33
@qyliss:fairydust.spaceAlyssa Rossthe point is to not lose those things in the noise of discussion16:10:40
@whentze:matrix.orgWanja Hentzeoh ok16:10:56
@andreas.schraegle:helsinki-systems.de@andreas.schraegle:helsinki-systems.de
In reply to @whentze:matrix.org
Next one: https://github.com/NixOS/nixpkgs/pull/180739
feel free to cross-post to #php:nixos.org, if you want maintainer feedback. although for these patch releases, they probably don't need to be involved.
16:11:43
@whentze:matrix.orgWanja HentzeI figured so, especially because it's already merged into master and a PHP maintainer commented there that it should be backported16:12:23
@whentze:matrix.orgWanja Hentze(https://github.com/NixOS/nixpkgs/pull/177136#issuecomment-1152151418)16:12:34
@andreas.schraegle:helsinki-systems.de@andreas.schraegle:helsinki-systems.deyeah, the issue was that the automatic backport doesn't work for them anymore, I think. that and everyone just forgot about it, apparently. anyways, thanks for taking care of this.16:13:33
@kn:envs.netkn set a profile picture.17:05:20
@winterqt:nixos.devWinter (she/her)

why does #180744 cause so many Linux rebuilds for just a vim version bump 🤔

do that many things rely on vim...? i don't think it's in stdenv so not sure what else could depend on it

17:15:31
@whentze:matrix.orgWanja HentzeI was wondering the same17:18:42
@winterqt:nixos.devWinter (she/her)huh, #179537 (another vim bump) caused more darwin rebuilds than this one17:21:01
@winterqt:nixos.devWinter (she/her)unless ofborg is still going through darwin or something17:21:17
@whentze:matrix.orgWanja Hentzethe darwin queue is very slow today I think17:21:57
@winterqt:nixos.devWinter (she/her)don't think the labels rely on build machines, just relies on eval17:26:54
@winterqt:nixos.devWinter (she/her) Wanja Hentze: did you omit the sha256- prefix on purpose in the Vim hash? don't think i've seen that done before (not surprised it works though) 17:29:19
@whentze:matrix.orgWanja Hentzesemi-on-purpose?17:29:52
@whentze:matrix.orgWanja HentzeI left it off because the old version didn't have it17:29:59
@whentze:matrix.orgWanja HentzeI have no idea when it's actually required17:30:09
@whentze:matrix.orgWanja Hentzethere are like 5 formats for the hash and I've totally lost track17:30:30
@winterqt:nixos.devWinter (she/her)
In reply to @whentze:matrix.org
I left it off because the old version didn't have it
the old version was using a base32 hash, you used a base64 hash; usually for base64 hashes we include the sha256 prefix
17:31:42
@whentze:matrix.orgWanja Hentzeoh, I see17:32:03
@winterqt:nixos.devWinter (she/her)again i'm totally nitpicking here sorry 😅17:32:25
@whentze:matrix.orgWanja Hentzewell, maybe that's causing the mass rebuild for some silly reason?!17:32:38
@whentze:matrix.orgWanja Hentzemaybe it has to pull in a general AI now to figure out which hash format I meant17:32:56
@winterqt:nixos.devWinter (she/her)but yeah just for consistency's sake i would recommend fixing that, if you don't mind17:34:42
@whentze:matrix.orgWanja Hentzefixed it17:34:41
@winterqt:nixos.devWinter (she/her)thanks!17:35:27

There are no newer messages yet.


Back to Room ListRoom Version: 9