!ZRgXNaHrdpGqwUnGnj:nixos.org

NixOS Security Triage

688 Members
Coordination and triage of security issues in nixpkgs | Discussions in #security-discuss:nixos.org | Open PRs: https://github.com/NixOS/nixpkgs/pulls?q=is%3Apr+is%3Aopen+sort%3Aupdated-desc+label%3A%221.severity%3A+security%22210 Servers

You have reached the beginning of time (for this room).


SenderMessageTime
11 Jan 2026
@9hp71n:matrix.orgghpzin changed their display name from ghpzin (moved to @ghpzin:envs.net) to ghpzin.15:04:32
@ghpzin:envs.net@ghpzin:envs.net left the room.16:18:27
12 Jan 2026
@hexa:lossy.networkhexahttps://seclists.org/oss-sec/2026/q1/57 libpng 1.6.5423:45:31
@hexa:lossy.networkhexa* https://seclists.org/oss-sec/2026/q1/57 libpng 1.6.54 @vcunat23:46:09
@hexa:lossy.networkhexa * https://seclists.org/oss-sec/2026/q1/57 libpng 1.6.54 vcunat 23:46:13
13 Jan 2026
@vcunat:matrix.orgvcunatUnfortunately, the -apng patches won't apply to this version, even if updated their latest version.07:56:55
14 Jan 2026
@sandro:supersandro.deSandro 🐧FreeRDP 3.20.1, 9 CVEs https://github.com/FreeRDP/FreeRDP/releases/tag/3.20.113:12:33
15 Jan 2026
@h0nig2k:matrix.orgh0nig2kzlib CVE 9.3: https://github.com/NixOS/nixpkgs/issues/48035813:00:45
@vcunat:matrix.orgvcunat

untgz will be removed in the next release.

(the issue is in the untgz utility, not in zlib itself)

13:07:53
@vcunat:matrix.orgvcunat And zlib in nixpkgs doesn't seem to build any utilities. 13:09:58
@goodboy:matrix.orglord_fomoRedacted or Malformed Event16:00:14
@leona:leona.isleonaRedacted or Malformed Event16:04:27
@hexa:lossy.networkhexaRedacted or Malformed Event16:04:36
@goodboy:matrix.orglord_fomoRedacted or Malformed Event16:35:07

Show newer messages


Back to Room ListRoom Version: 6