!ZRgXNaHrdpGqwUnGnj:nixos.org

NixOS Security Triage

660 Members
Coordination and triage of security issues in nixpkgs | Discussions in #security-discuss:nixos.org | Open PRs: https://github.com/NixOS/nixpkgs/pulls?q=is%3Apr+is%3Aopen+sort%3Aupdated-desc+label%3A%221.severity%3A+security%22205 Servers

You have reached the beginning of time (for this room).


SenderMessageTime
26 Sep 2024
@hexa:lossy.networkhexa it probably doesn't, but that is for #security-discuss:nixos.org 18:52:36
@vcunat:matrix.orgvcunat
In reply to @fabianhjr:matrix.org
https://x.com/evilsocket/status/1838169889330135132

Claims 9.9 RCE unauthenticated over network affecting all GNU/Linux Systems
CUPS? Much earlier than expected, though:
https://www.evilsocket.net/2024/09/26/Attacking-UNIX-systems-via-CUPS-Part-I/
20:21:55
@fabianhjr:matrix.orgFabián Herediayeah, and also underwhelming for the original hype20:25:19
@void68:matrix.orgvoidI recall another one in hplip last year, somebody is getting efficient at it it seems.23:52:39
27 Sep 2024
@sigmasquadron:matrix.orgSigmaSquadron joined the room.00:18:22
@vengmark2:matrix.org@vengmark2:matrix.org joined the room.02:26:49
@vengmark2:matrix.org@vengmark2:matrix.org left the room.02:29:26
@fabianhjr:matrix.orgFabián HerediaThe following PR wasn't triaged and was going stale around 2x High (7.5 CVSS) CVEs on libtiff. https://github.com/NixOS/nixpkgs/pull/34056906:26:33
@hexa:lossy.networkhexahttps://github.com/OpenPrinting/cups-filters/security/advisories/GHSA-rq86-c7g6-r2h813:11:40
@elikoga:matrix.orgelikoga set a profile picture.16:27:28
28 Sep 2024
@9hp71n:matrix.orgghpzin (moved to @ghpzin:envs.net) joined the room.11:00:47
@scrumplex:duckhub.ioScrumplex joined the room.11:04:11

Show newer messages


Back to Room ListRoom Version: 6