!ZRgXNaHrdpGqwUnGnj:nixos.org

NixOS Security Triage

704 Members
Coordination and triage of security issues in nixpkgs216 Servers

Load older messages


SenderMessageTime
25 Jul 2021
@r_i_s:matrix.orgris_fixes for 6.0 branch and 6.5 branch18:18:51
@r_i_s:matrix.orgris_we have 6.0 branch, 6.2 and 6.3 branches18:19:04
@r_i_s:matrix.orgris_slightly encouraging is how similar the patches are for 6.0 and 6.518:19:41
@r_i_s:matrix.orgris_so patches for 6.2 and 6.3 should be some interpolation of the two18:20:28
@sandro:supersandro.deSandroIf we don't have the 6.5 branch the maintainer is really active18:48:23
@grahamc:nixos.org@grahamc:nixos.org

Given Windows 11 has it as a requirement, any operating system which doesn't support it at all can't boot. Not without reconfiguring your BIOS at every reboot, at any rate, which I don't think many people are going to do. Personally I've been running an indev version of 11, and...

anyone have sources to back this up? sounds like unsubstantiated FUD to me

19:00:37
@hexa:lossy.networkhexahttps://www.microsoft.com/en-us/windows/windows-11-specifications19:51:20
@hexa:lossy.networkhexa

UEFI, Secure Boot capable

19:51:28
@hexa:lossy.networkhexa *
UEFI, Secure Boot capable
19:51:32
@hexa:lossy.networkhexavs https://support.microsoft.com/en-us/windows/windows-10-system-requirements-6d4e9a79-66bf-7950-467c-795cf038671519:51:43
@hexa:lossy.networkhexa * hs ttps://www.microsoft.com/en-us/windows/windows-10-specifications19:52:03
@hexa:lossy.networkhexa * vs https://www.microsoft.com/en-us/windows/windows-10-specifications19:52:11
@hexa:lossy.networkhexaso in win10 it was a feature-specific requirement, in win11 it looks to be a requirement19:52:51
@grahamc:nixos.org@grahamc:nixos.orgSo, just needs to be capable. Fud then20:44:39
@nixinator:nixos.devnixinator
In reply to @grahamc:nixos.org
So, just needs to be capable. Fud then
gotta love the fud........'loveeeee the fuuuuuuuud'.
22:12:20
26 Jul 2021
@Dan:matrix.orgDan joined the room.02:56:44
@hexa:lossy.networkhexahttps://www.oracle.com/security-alerts/cpujul2021.html17:49:50
@hexa:lossy.networkhexa(update mysql >8.0.25)17:50:04
@hexa:lossy.networkhexaand aspell https://nvd.nist.gov/vuln/detail/CVE-2019-2505117:53:42
28 Jul 2021
@js:ukvly.orgjulianst
In reply to @grahamc:nixos.org

Given Windows 11 has it as a requirement, any operating system which doesn't support it at all can't boot. Not without reconfiguring your BIOS at every reboot, at any rate, which I don't think many people are going to do. Personally I've been running an indev version of 11, and...

anyone have sources to back this up? sounds like unsubstantiated FUD to me

I'm not sure where the misinformation comes from. If Windows 11 mandates a TPM 2.0 that has no impact on anyone. It doesn't mean that Secure Boot cannot be disabled anymore
12:37:34
@philipp:xndr.dephilipp
In reply to @js:ukvly.org
I'm not sure where the misinformation comes from. If Windows 11 mandates a TPM 2.0 that has no impact on anyone. It doesn't mean that Secure Boot cannot be disabled anymore
There has been fud about this for every windows release since at least windows 7, I wouldn't worry about it for now. There is also antitrust regulations in place for things like this.
12:43:55
@stick:matrix.orgstick changed their display name from prusnak to stick.15:09:42
@toonn:matrix.orgtoonn Requiring certain hardware for your OS doesn't sound at all like antitrust to me? 19:34:34
@toonn:matrix.orgtoonn It's like not supporting your OS on ARM. 19:34:54
@roosemberth:orbstheorem.chRoosI'd argue things change when you're OS is very much used and you artificially limit compatibility.19:35:45
@toonn:matrix.orgtoonn I mean, Apple's clear prior art. 19:37:16
@roosemberth:orbstheorem.chRoosAn argument could be made about compelling people to replace perfectly working hardware with new one.19:37:18
@toonn:matrix.orgtoonn Some motherboards do allow adding a TPM. 19:37:43
@toonn:matrix.orgtoonn I think it only becomes antitrust if they were in cahoots with hardware companies. 19:38:05
@toonn:matrix.orgtoonn Removing headphone jacks from phones is slightly similar. 19:44:08

There are no newer messages yet.


Back to Room ListRoom Version: 6