| 13 Mar 2026 |
Arian | Lmao redhat filed a CVE for it | 14:48:56 |
Arian | https://www.cve.org/CVERecord?id=CVE-2026-4105 | 14:49:11 |
Arian | And the CVE is wrong. Marks more things as affected than needed. Great. | 14:49:40 |
magic_rb | you mean that rhel7 is not affected? | 14:53:34 |
K900 | New kernels with apparmor security fixes: https://lore.kernel.org/stable/2026031357-statistic-surrogate-41a7@gregkh/T/#t | 16:46:35 |
K900 | Someone please do the dance | 16:46:45 |
ma27 | ok, on it. | 16:56:43 |
Arian | In reply to @magic_rb:matrix.redalder.org you mean that rhel7 is not affected? Afaics not a single RHEL version is affected | 17:36:21 |
Arian | RHEL is on 257. This vulnerability was introduced in 259. Idk wtf they're doing | 17:36:38 |
magic_rb | lmao | 17:37:31 |
| 14 Mar 2026 |
| amadaluzia -> 4d2.org changed their display name from amadaluzia to amadaluzia[uorg]. | 18:50:59 |
| amadaluzia joined the room. | 19:29:28 |
| amadaluzia -> 4d2.org changed their display name from amadaluzia[uorg] to amadaluzia -> 4d2.org. | 21:23:01 |
| 16 Mar 2026 |
| azban joined the room. | 01:15:52 |
| azban left the room. | 01:18:58 |
| azban joined the room. | 01:19:05 |
| azban left the room. | 01:19:25 |
| azban joined the room. | 01:37:27 |
hexa | https://seclists.org/oss-sec/2026/q1/317 gstreamer | 03:20:03 |
| 17 Mar 2026 |
Fernando Rodrigues | https://github.com/NixOS/nixpkgs/pull/500711 Xen | 12:14:58 |
hexa | https://seclists.org/oss-sec/2026/q1/331 | 21:09:09 |
hexa | * https://seclists.org/oss-sec/2026/q1/331 expat | 21:09:21 |
| 18 Mar 2026 |
Markus Theil | Botan had a new release these days. I don't really know if any packages use TLS from Botan or just crypto operations like hashing, encryption/decryption. The security relevant changes touch OCSP handling and parallel signatures with e.g. ML-DSA.
https://botan.randombit.net/news.html#version-3-11-0-2026-03-15
https://github.com/NixOS/nixpkgs/pull/500384 | 08:13:02 |
Markus Theil | OpenSSL also will release new version in the following weeks: https://openssl-library.org/news/secadv/20260313.txt (sry, if this was already posted here.) | 08:15:35 |
Markus Theil | * OpenSSL also will release new versions in the following weeks: https://openssl-library.org/news/secadv/20260313.txt (sry, if this was already posted here.) | 08:15:43 |
| 曜日 joined the room. | 20:32:49 |
| 19 Mar 2026 |
uep | https://community.ui.com/releases/Security-Advisory-Bulletin-062-062/c29719c0-405e-4d4a-8f26-e343e99f931b | 09:54:37 |
uep | CVSS 10 | 09:54:59 |
Tom | https://github.com/NixOS/nixpkgs/pull/501181 | 10:05:08 |
hexa | https://github.com/wolfSSL/wolfssl/releases/tag/v5.9.0-stable | 12:55:16 |