!ZRgXNaHrdpGqwUnGnj:nixos.org

NixOS Security Triage

720 Members
Coordination and triage of security issues in nixpkgs222 Servers

You have reached the beginning of time (for this room).


SenderMessageTime
27 Sep 2023
@lily:lily.flowersLily Fosterhttps://github.com/NixOS/nixpkgs/pull/257727 (apologies for my delinquency in getting this PR made...)21:54:52
@felschr:matrix.orgfelschrhttps://github.com/NixOS/nixpkgs/pull/25766622:22:34
@fack:cyberia.club@fack:cyberia.club joined the room.22:32:42
28 Sep 2023
@networkexception:chat.upi.li@networkexception:chat.upi.liDo we know if CVE-2023-5217 affects libvpx (non-vendored used in firefox) in general or just chromium? 10:24:34
@lily:lily.flowersLily Foster
In reply to @networkexception:chat.upi.li
Do we know if CVE-2023-5217 affects libvpx (non-vendored used in firefox) in general or just chromium?
It looks like this is the fix, so probably affects libvpx in general: https://github.com/webmproject/libvpx/commit/3fbd1dca6a4d2dad332a2110d646e4ffef36d590#diff-209da1a41dad17bc25b2837a44a1cbf0664ab202a2fe570d74f1db5a32e1c939
10:31:56
@ajs124:ajs124.deajs124https://github.com/NixOS/nixpkgs/pull/25773412:28:48
@cafkafk:gitter.imcafkafk joined the room.17:36:25
@hexa:lossy.networkhexahttps://www.openwall.com/lists/oss-security/2023/09/28/518:42:58
@hexa:lossy.networkhexa * libvpx https://www.openwall.com/lists/oss-security/2023/09/28/518:43:01
@uep:matrix.orguepfirefox too https://www.mozilla.org/en-US/security/advisories/mfsa2023-44/21:51:15

Show newer messages


Back to Room ListRoom Version: 6