!ZRgXNaHrdpGqwUnGnj:nixos.org

NixOS Security Triage

694 Members
Coordination and triage of security issues in nixpkgs214 Servers

You have reached the beginning of time (for this room).


SenderMessageTime
27 Jun 2025
@grimmauld:grapevine.grimmauld.deGrimmauld (migrated to @grimmauld:m.grimmauld.de)https://github.com/NixOS/nixpkgs/pull/403244 anyone wants to look at a long-overdue java update?07:12:14
@h0nig2k:matrix.orgh0nig2khttps://github.com/NixOS/nixpkgs/issues/420588 libarchive just received a CVE with 9,817:54:00
@stigo:matrix.orgstigoInterestingly, RedHat's CVSS score was a bit lower (3.9) when they published it on June 917:58:47
@stigo:matrix.orgstigoThey should have been adressed by https://github.com/NixOS/nixpkgs/pull/40930018:00:40
@stigo:matrix.orgstigo* I should have been adressed by https://github.com/NixOS/nixpkgs/pull/40930018:01:49
@stigo:matrix.orgstigo* It should have been adressed by https://github.com/NixOS/nixpkgs/pull/40930018:01:54
@h0nig2k:matrix.orgh0nig2k you are right, i was not aware of the backport, thx! 18:05:15
@hexa:lossy.networkhexahttps://www.libssh.org/2025/06/24/libssh-0-11-2-security-and-bugfix-release/ https://github.com/NixOS/nixpkgs/pull/41974720:22:31
28 Jun 2025
@grimmauld:grapevine.grimmauld.deGrimmauld (migrated to @grimmauld:m.grimmauld.de) https://github.com/advisories/GHSA-c2mm-9c32-xc37
https://github.com/NixOS/nixpkgs/pull/413267
cc primeos
15:08:20
@grimmauld:grapevine.grimmauld.deGrimmauld (migrated to @grimmauld:m.grimmauld.de)according to repology, perl also has an update for security, though i am too unfamiliar with our perl to judge whether we already patched it or not15:18:33

Show newer messages


Back to Room ListRoom Version: 6