!ZRgXNaHrdpGqwUnGnj:nixos.org

NixOS Security Triage

660 Members
Coordination and triage of security issues in nixpkgs | Discussions in #security-discuss:nixos.org | Open PRs: https://github.com/NixOS/nixpkgs/pulls?q=is%3Apr+is%3Aopen+sort%3Aupdated-desc+label%3A%221.severity%3A+security%22205 Servers

Load older messages


SenderMessageTime
26 Sep 2024
@void68:matrix.orgvoidI recall another one in hplip last year, somebody is getting efficient at it it seems.23:52:39
27 Sep 2024
@sigmasquadron:matrix.orgSigmaSquadron joined the room.00:18:22
@vengmark2:matrix.org@vengmark2:matrix.org joined the room.02:26:49
@vengmark2:matrix.org@vengmark2:matrix.org left the room.02:29:26
@fabianhjr:matrix.orgFabián HerediaThe following PR wasn't triaged and was going stale around 2x High (7.5 CVSS) CVEs on libtiff. https://github.com/NixOS/nixpkgs/pull/34056906:26:33
@hexa:lossy.networkhexahttps://github.com/OpenPrinting/cups-filters/security/advisories/GHSA-rq86-c7g6-r2h813:11:40
@elikoga:matrix.orgelikoga set a profile picture.16:27:28
28 Sep 2024
@9hp71n:matrix.orgghpzin (moved to @ghpzin:envs.net) joined the room.11:00:47
@scrumplex:duckhub.ioScrumplex joined the room.11:04:11
30 Sep 2024
@entheogenesis:matrix.org@entheogenesis:matrix.org left the room.18:32:15
1 Oct 2024
@-_o:matrix.org-_o joined the room.21:00:31
2 Oct 2024
@insurgo:matrix.orgtlaurion aka Insurgo [ Timezone: ET ] changed their display name from tlaurion aka Insurgo [UTC-4] (🛫🗺️🛬: Back 2024-10-01) to tlaurion aka Insurgo [UTC-4].12:42:28
4 Oct 2024
@ajcxz0:matrix.org@ajcxz0:matrix.org left the room.01:00:45
5 Oct 2024
@magic_rb:matrix.redalder.orgmagic_rb changed their profile picture.22:16:56
@gvelim:matrix.orggvelim joined the room.22:54:48
6 Oct 2024
@sofie:fsfe.orgSofie joined the room.15:22:25
@sofo:matrix.org@sofo:matrix.org left the room.15:22:36
@bytebandit:tac.lolDerivationDingus changed their display name from bytebandit to DerivationDingus.19:43:28
7 Oct 2024
@hexa:lossy.networkhexahttps://meta.discourse.org/t/3-3-2-security-and-maintenance-release/329341/113:29:31
8 Oct 2024
@schuelermine:matrix.orgschuelermine changed their profile picture.16:30:17
9 Oct 2024
@emilazy:matrix.orgemilyTor/Mullvad Browser still need updating for the Firefox vulnerabilities20:35:53
@emilazy:matrix.orgemily cc felschr 20:36:25
@scrumplex:duckhub.ioScrumplex I assume tor-browser needs to be bumped to 13.5.7? 20:37:06
@hexa:lossy.networkhexafloorp and librewolf as well20:37:24
@scrumplex:duckhub.ioScrumplexhttps://github.com/mullvad/mullvad-browser/releases/tag/13.5.720:37:34
@scrumplex:duckhub.ioScrumplexhttps://github.com/NixOS/nixpkgs/pull/34759320:41:19
@scrumplex:duckhub.ioScrumplexhttps://github.com/NixOS/nixpkgs/pull/34759420:45:01
@scrumplex:duckhub.ioScrumplexI couldn't quite determine if https://codeberg.org/librewolf/source/releases/tag/131.0.2-1 actually fixes the issue? The diff to the previous tag doesn't seem to change much?20:49:12
@scrumplex:duckhub.ioScrumplexLatest Floorp release is from 30. September 2024, so I guess there is no patched version https://floorp.app/en/download?platform=linux20:51:20
@hexa:lossy.networkhexa131.0.2 is the correct base version20:54:36

Show newer messages


Back to Room ListRoom Version: 6