| 4 Feb 2024 |
DerivationDingus | In reply to @vcunat:matrix.org I'd suggest moving the discussion elsewhere. This channel should be just security triage. Oof, my apologies. I thought I was in a different room. | 08:19:15 |
vcunat | * I'd suggest moving the discussion elsewhere (and e.g. linking from here). This channel should be just security triage. | 08:19:19 |
vcunat | * I'd suggest moving the discussion elsewhere (and e.g. link it from here). This channel should be just security triage. | 08:19:24 |
K900 | https://www.openwall.com/lists/oss-security/2024/01/30/7 | 09:18:33 |
K900 | OH GOD | 09:18:36 |
K900 | I finally read the writeup | 09:20:20 |
K900 | Ugh wrong room | 09:20:32 |
| Bryan Honof changed their profile picture. | 11:31:31 |
vcunat | gnupg: some kind of 23.11 backport is needed?
https://github.com/NixOS/nixpkgs/pull/284778#issuecomment-1925757262 | 14:15:28 |
Jan Tojnar | libxml2 again: https://github.com/NixOS/nixpkgs/pull/286300 | 14:52:16 |
Jan Tojnar | * UAF in libxml2 again: https://github.com/NixOS/nixpkgs/pull/286300 | 14:52:36 |
tgerbet | In reply to @vcunat:matrix.org gnupg: some kind of 23.11 backport is needed? https://github.com/NixOS/nixpkgs/pull/284778#issuecomment-1925757262 Cherry-picks done in https://github.com/NixOS/nixpkgs/pull/286302 | 14:53:55 |
| raboof changed their display name from raboof @FOSDEM to raboof. | 17:41:47 |
hexa | https://gitlab.gnome.org/GNOME/libxml2/-/releases/v2.12.5 | 18:05:29 |
hexa | cc Jan Tojnar | 18:05:46 |
tgerbet | https://github.com/NixOS/nixpkgs/pull/286300 | 18:06:18 |
hexa | ok, failed to find it via github search | 18:06:53 |
| 5 Feb 2024 |
| puck joined the room. | 12:48:55 |
@adam:robins.wtf | adding in:title can be helpful, if you're not already using that | 14:34:16 |
| @ThorHop:matrix.org removed their profile picture. | 22:45:55 |
| @ThorHop:matrix.org removed their display name IdeallyYes. | 22:46:41 |
| @ThorHop:matrix.org left the room. | 22:47:12 |
hexa | https://webkitgtk.org/security/WSA-2024-0001.html Jan Tojnar | 23:59:26 |
| 7 Feb 2024 |
hexa | https://github.com/python/cpython/issues/113659 | 17:39:34 |
hexa | * https://github.com/python/cpython/issues/113659 doing the bumps | 17:39:55 |
hexa |
New releases of 3.8, 3.9 and 3.10 containing the same fix are expected next week.
| 17:47:34 |
hexa | https://github.com/libexpat/libexpat/blob/R_2_6_0/expat/Changes | 17:53:58 |
hexa | regresses the python3 test suite, I'm following https://github.com/python/cpython/issues/115133 | 17:54:18 |
| 8 Feb 2024 |
| @drewskiwooskie:matrix.org joined the room. | 03:16:46 |
| symys joined the room. | 07:21:42 |