!ZRgXNaHrdpGqwUnGnj:nixos.org

NixOS Security Triage

723 Members
Coordination and triage of security issues in nixpkgs219 Servers

Load older messages


SenderMessageTime
16 Jan 2024
@k900:0upti.meK900https://www.phoronix.com/news/X.Org-2024-Six-More-Security11:12:02
@k900:0upti.meK900Must be a day that ends in y11:12:05
@k900:0upti.meK900Can someone get it11:14:10
@k900:0upti.meK900I have a migraine11:14:16
@fabianhjr:matrix.orgFabián Herediaon it15:14:01
@k900:0upti.meK900Thanks15:15:24
@fabianhjr:matrix.orgFabián Herediahaving issues with ./generate-expr-from-tarballs.pl, if someone else can pick it up would appreciate it15:25:30
@fabianhjr:matrix.orgFabián Heredia * having issues with ./generate-expr-from-tarballs.pl, if someone else can pick it up would appreciate it 15:25:41
@k900:0upti.meK900Ohgod15:28:26
@k900:0upti.meK900* Oh god15:28:28
@vcunat:matrix.orgvcunatI don't think you need to run it.15:30:41
@vcunat:matrix.orgvcunatJust update version and hash. (version repeats IIRC)15:30:54
@vcunat:matrix.orgvcunatSurely a security update won't change the set of dependencies.15:31:29
@vcunat:matrix.orgvcunat(the X stuff is very unmoving anyway)15:31:49
@fabianhjr:matrix.orgFabián Herediaok, doing manually then.15:35:26
@k900:0upti.meK900The script seems to be working for me15:35:49
@k900:0upti.meK900OK the script kinda works15:46:35
@fabianhjr:matrix.orgFabián Herediahttps://github.com/NixOS/nixpkgs/pull/28135015:49:06
@k900:0upti.meK900https://github.com/NixOS/nixpkgs/pull/281349 ?15:49:45
@k900:0upti.meK900I have another thing there15:49:54
@fabianhjr:matrix.orgFabián Heredia:O15:50:13
@fabianhjr:matrix.orgFabián Herediaclosing as dupe then15:50:20
@k900:0upti.meK900It builds, Plasma test passes, merged15:56:54
@sasha:the-apothecary.clubMoved to @sashanoraa:matrix.org joined the room.17:06:21
@adam:robins.wtf@adam:robins.wtf joined the room.17:18:46
@tgerbet:matrix.orgtgerbethttps://blog.quarkslab.com/pixiefail-nine-vulnerabilities-in-tianocores-edk-ii-ipv6-network-stack.html https://github.com/tianocore/edk2/security/advisories/GHSA-hc6x-cw6p-gj7h20:17:35
@k900:0upti.meK900Not really much we can do20:17:55
@k900:0upti.meK900I guess update our EDK220:17:59
@tgerbet:matrix.orgtgerbetYep update is not yet available but there is a patch for 7 out of 9 issues in edk2 bugtracker, I will take a look in a moment. 20:22:06
@k900:0upti.meK900Thing is, our EDK2 is only used for VM tests basically20:24:46

Show newer messages


Back to Room ListRoom Version: 6