!ZRgXNaHrdpGqwUnGnj:nixos.org

NixOS Security Triage

666 Members
Coordination and triage of security issues in nixpkgs209 Servers

Load older messages


SenderMessageTime
23 Jul 2025
@implr:hackerspace.plimplr changed their profile picture.11:21:44
@transcaffeine:finallycoffee.eutranscaffeine https://github.com/NixOS/nixpkgs/pull/427778 snipe-it (due to livewire's CVE-2025-54068) 15:46:29
@grimmauld:grapevine.grimmauld.deGrimmauld (any/all) Marking all the libsoup_2_4 vulnerabilities:
https://github.com/NixOS/nixpkgs/pull/427813
(following the conversation in #dev:nixos.org )
17:31:29
@grimmauld:grapevine.grimmauld.deGrimmauld (any/all) * Marking all the libsoup_2_4 vulnerabilities, should wait for Jan to ack this:
https://github.com/NixOS/nixpkgs/pull/427813
(following the conversation in #dev:nixos.org )
17:31:46
@grimmauld:grapevine.grimmauld.deGrimmauld (any/all) * Marking all the libsoup_2_4 vulnerabilities, should wait for Jan Tojnar to ack this but figured i might as well put it here:
https://github.com/NixOS/nixpkgs/pull/427813
(following the conversation in #dev:nixos.org )
17:32:04
24 Jul 2025
@tgerbet:matrix.orgtgerbet

GLIBC-SA-2025-0005 cc ma27

https://sourceware.org/git/?p=glibc.git;a=blob;f=advisories/GLIBC-SA-2025-0005;h=8bcccc59a546800624576e3a835b759d9ad1f1e0;hb=HEAD

06:53:09
@vcunat:matrix.orgvcunatThis doesn't seem very serious, fortunately.07:01:27
@ma27:nicht-so.sexyma27preparing an update anyways.08:06:33
@h0nig2k:matrix.orgh0nig2kdoes someone already have sqlite CVE 9.8 CVE-2025-6965 this on his/her radar? https://github.com/NixOS/nixpkgs/issues/42803312:30:15
@h0nig2k:matrix.orgh0nig2k* does someone already have sqlite CVE 7.2 CVE-2025-6965 this on his/her radar? https://github.com/NixOS/nixpkgs/issues/42803312:30:58
@k900:0upti.meK900Please search existing PRs before posting: https://github.com/NixOS/nixpkgs/pull/42083712:32:02
@h0nig2k:matrix.orgh0nig2k @K900 the PR is for unstable, the issue was created for 25.05 13:30:59
@ma27:nicht-so.sexyma27
In reply to @ma27:nicht-so.sexy
preparing an update anyways.
https://github.com/NixOS/nixpkgs/pull/428072
14:20:38
@xayomer:kif.rocks@xayomer:kif.rocks left the room.16:09:16
@vcunat:matrix.orgvcunat25.05 proposal: https://github.com/NixOS/nixpkgs/pull/42812118:02:30
25 Jul 2025
@niklaskorz:matrix.orgniklaskorz Nvidia legacy driver 535 update addressing CVE-2025-23286 ("vulnerability where an attacker may access sensitive system-level information"): https://github.com/NixOS/nixpkgs/pull/428379 16:18:55
26 Jul 2025
@oak:universumi.fioak 🏳️‍🌈♥️ changed their profile picture.08:28:43
27 Jul 2025
@nullcube:matrix.orgNullCube joined the room.04:50:47
31 Jul 2025
@sammy:cherrykitten.gaysammy (It/Its) joined the room.09:39:32
@sammy:cherrykitten.dev@sammy:cherrykitten.dev left the room.09:39:40
1 Aug 2025
@tejing:matrix.org@tejing:matrix.org joined the room.02:15:38
@tejing:matrix.org@tejing:matrix.orgGiven that it's addressing an RCE, I'd appreciate a quick turnaround on https://github.com/NixOS/nixpkgs/pull/429899 (The bot's review isn't relevant in this case)02:17:54
@tejing:matrix.org@tejing:matrix.orgThanks!03:23:39
@tejing:matrix.org@tejing:matrix.org left the room.03:55:47
2 Aug 2025
@saiko:knifepoint.netKatalin 🔪 changed their profile picture.00:27:56
19 May 2021
@grahamc:nixos.org@grahamc:nixos.org set the history visibility to "world_readable".22:57:54
@grahamc:nixos.org@grahamc:nixos.org changed the room name to "" from "".22:57:54
@andreas.schraegle:helsinki-systems.deajs124 joined the room.22:58:46
@andi:kack.itandi- joined the room.23:00:51
@hexa:lossy.networkhexa joined the room.23:01:24

Show newer messages


Back to Room ListRoom Version: 6