!ZRgXNaHrdpGqwUnGnj:nixos.org

NixOS Security Triage

709 Members
Coordination and triage of security issues in nixpkgs218 Servers

You have reached the beginning of time (for this room).


SenderMessageTime
11 Jan 2024
@martijnboers:matrix.orgMartijn joined the room.13:27:40
@insurgo:matrix.orgtlaurion aka Insurgo [ Timezone: ET ] changed their display name from Insurgo aka tlaurion (UTC/GMT-5 : catching up) to Insurgo aka tlaurion [(UTC/GMT)-5].19:54:22
12 Jan 2024
@raitobezarius:matrix.orgraitobezariusThere's a critical security vuln on GItLab atm enabling anyone to send the reset password link anywhere, it's being exploited in the wild: https://about.gitlab.com/releases/2024/01/11/critical-security-release-gitlab-16-7-2-released/#account-takeover-via-password-reset-without-user-interactions14:48:02
@hexa:lossy.networkhexa was communicated 15 hours ago in #gitlab:nixos.org 14:54:52
@hexa:lossy.networkhexaand a fix has since been merged14:55:03
@hexa:lossy.networkhexafor reference: https://github.com/NixOS/nixpkgs/pull/28036914:55:17
@raitobezarius:matrix.orgraitobezariuswell amazing people!14:55:30
@yadhukrishnam:matrix.orgyadhukrishna joined the room.18:59:11
@yadhukrishnam:matrix.orgyadhukrishnahow to report security issues to nixos?18:59:34
@k900:0upti.meK900You can post here18:59:42

Show newer messages


Back to Room ListRoom Version: 6