!PbtOpdWBSRFbEZRLIf:numtide.com

Nix Community Projects

638 Members
Meta discussions related to https://nix-community.org. (For project specific discussions use github issues or projects own matrix channel). Need help from an admin? Open an issue on https://github.com/nix-community/infra/issues162 Servers

You have reached the beginning of time (for this room).


SenderMessageTime
7 Jul 2024
@traxys:familleboyer.netTraxys changed their profile picture.10:23:32
@traxys:familleboyer.netTraxys changed their profile picture.10:25:21
@toast003:matrix.orgToast joined the room.17:30:29
@matthewcroughan:defenestrate.itmatthewcroughanThe arm64 community server is down again19:58:50
@matthewcroughan:defenestrate.itmatthewcroughanwhen it is in this state, does anybody know what's happening/19:59:00
@matthewcroughan:defenestrate.itmatthewcroughan * when it is in this state, does anybody know what's happening?19:59:01
@matthewcroughan:defenestrate.itmatthewcroughanWould it be too much to ask for some sort of status endpoint that could be polled to know what the status 19:59:17
@matthewcroughan:defenestrate.itmatthewcroughan * Would it be too much to ask for some sort of status endpoint that could be polled to know what the status is?19:59:19
@matthewcroughan:defenestrate.itmatthewcroughanI presume it's just in the middle of a reboot or something19:59:38
@matthewcroughan:defenestrate.itmatthewcroughanWho is it that controls aarch64.nixos.community anyway?20:25:58
@matthewcroughan:defenestrate.itmatthewcroughanIt looks like it is still vulnerable to regresshion20:26:06
@matthewcroughan:defenestrate.itmatthewcroughan Is it adisbladis or anyone you know? 20:26:30
@emilazy:matrix.orgemily note that the OpenSSH version is not a reliable indicator of that (but an old version + the derivation the server comes from not containing the .patch is) 20:27:53
@emilazy:matrix.orgemily(not sure if you already took that into account)20:28:03
@matthewcroughan:defenestrate.itmatthewcroughanYeah I just saw the version + the config not containing LoginGracePeriod 020:28:19
@matthewcroughan:defenestrate.itmatthewcroughanso maybe it's patched, I didn't look at that20:28:26
@emilazy:matrix.orgemily try nix derivation show $(readlink -f $(which ssh)) 20:29:00
@matthewcroughan:defenestrate.itmatthewcroughanThe server is in a bit of a memory exploded state20:29:27
@matthewcroughan:defenestrate.itmatthewcroughandmesg has logs I see on my scrappy servers when bad memory things happen :D20:29:41
@matthewcroughan:defenestrate.itmatthewcroughan

Looks like the only patches are

      "patches": "/nix/store/isik6ifcjxpw22sfh3kz37galficc78c-locale_archive.patch /nix/store/6id7rg81nbkx9r9pxvax7nssr11xdaas-gss-serv.c.patch?id=a7509603971ce2f3282486a43bb773b1b522af83 /nix/store/ybb4xs45dkngdf3x1xnxqgzn5zmv5alf-dont_create_privsep_path.patch /nix/store/7jbzj9s2wkbznn93ga3aqka6vfx06gjg-ssh-keysign-8.5.patch",

20:30:27
@matthewcroughan:defenestrate.itmatthewcroughan *

Looks like the only patches are

      "patches": "/nix/store/isik6ifcjxpw22sfh3kz37galficc78c-locale_archive.patch /nix/store/6id7rg81nbkx9r9pxvax7nssr11xdaas-gss-serv.c.patch?id=a7509603971ce2f3282486a43bb773b1b522af83 /nix/store/ybb4xs45dkngdf3x1xnxqgzn5zmv5alf-dont_create_privsep_path.patch /nix/store/7jbzj9s2wkbznn93ga3aqka6vfx06gjg-ssh-keysign-8.5.patch",
20:30:30
@matthewcroughan:defenestrate.itmatthewcroughanSo yes, it is in fact vulnerable :D20:31:20
@emilazy:matrix.orgemilythen I guess it's vulnerable20:31:24
@matthewcroughan:defenestrate.itmatthewcroughanShall we do a wordpress and hack it to fix it? 20:31:43
@matthewcroughan:defenestrate.itmatthewcroughanIt'd probably just end up rebooting into the generation with the vulnerability anyway20:32:13
@emilazy:matrix.orgemilygood luck, I don't think anyone has exploited it on a 64-bit system20:32:25
@matthewcroughan:defenestrate.itmatthewcroughanAh right, forgot about that20:32:39
@zowoq:matrix.orgzowoq
In reply to @matthewcroughan:defenestrate.it
Who is it that controls aarch64.nixos.community anyway?
The nixos infra team: https://matrix.to/#/#infra:nixos.org
23:03:25
@hexa:lossy.networkhexayes and no23:04:29

Show newer messages


Back to Room ListRoom Version: 6