!ZRgXNaHrdpGqwUnGnj:nixos.org

NixOS Security Triage

693 Members
Coordination and triage of security issues in nixpkgs213 Servers

You have reached the beginning of time (for this room).


SenderMessageTime
17 May 2025
@k900:0upti.meK900Ayylmao12:24:09
@tgerbet:matrix.orgtgerbetFixed in https://github.com/NixOS/nixpkgs/pull/400278 and https://github.com/NixOS/nixpkgs/pull/403432 It looks like they did not update the fixed version field in the advisory12:26:11
@k900:0upti.meK900Ayylmao, but different 12:27:29
@grimmauld:grapevine.grimmauld.deGrimmauld (migrated to @grimmauld:m.grimmauld.de)https://github.com/NixOS/nixpkgs/pull/401409 I still have an open security fix PR that noone seems to want to review...14:29:27
@oddlama:matrix.orgoddlama changed their display name from oddlama to Malte.20:12:23
18 May 2025
@k900:0upti.meK900https://www.mozilla.org/en-US/security/advisories/mfsa2025-36/14:06:39
@k900:0upti.meK900 @hexa:lossy.network 14:06:43
@me:linj.techlinjfixed in https://github.com/NixOS/nixpkgs/pull/40823614:07:52
@k900:0upti.meK900Cool 14:08:29
@hexa:lossy.networkhexastill testing on 24.1114:08:58
19 May 2025
@grimmauld:grapevine.grimmauld.deGrimmauld (migrated to @grimmauld:m.grimmauld.de)Can we get a merge on https://github.com/NixOS/nixpkgs/pull/408524? Its analogous to the firefox update and i'd really rather have that.... Yes yes, we are on topic with browser forks, but i can't commit this (yet)14:56:55
@oak:universumi.fioak 🏳️‍🌈♥️ changed their display name from oak 🫱⭕🫲 to oak.10:59:05
@hexa:lossy.networkhexa note that we started requiring an active committer on the maintainers list for browsers cough 14:57:48
@oak:universumi.fioak 🏳️‍🌈♥️ changed their display name from oak to oak 🏳️‍🌈♥️.11:00:52

Show newer messages


Back to Room ListRoom Version: 6