!ZRgXNaHrdpGqwUnGnj:nixos.org

NixOS Security Triage

660 Members
Coordination and triage of security issues in nixpkgs | Discussions in #security-discuss:nixos.org | Open PRs: https://github.com/NixOS/nixpkgs/pulls?q=is%3Apr+is%3Aopen+sort%3Aupdated-desc+label%3A%221.severity%3A+security%22205 Servers

Load older messages


SenderMessageTime
22 Sep 2024
@implr:hackerspace.plimplr joined the room.18:36:15
23 Sep 2024
@shaderoit99:matrix.org@shaderoit99:matrix.org joined the room.06:04:19
@elikoga:matrix.orgelikoga joined the room.15:30:45
@purpleseaotter:nope.chat@purpleseaotter:nope.chat joined the room.16:30:49
@purpleseaotter:nope.chat@purpleseaotter:nope.chatAaa16:32:33
@k900:0upti.meK900?16:32:48
@purpleseaotter:nope.chat@purpleseaotter:nope.chatHello16:32:56
@purpleseaotter:nope.chat@purpleseaotter:nope.chatThe room is loading very slowly for me16:33:03
@purpleseaotter:nope.chat@purpleseaotter:nope.chatI cannot see any messages before "Aaa"16:33:20
@k900:0upti.meK900There might be split brain shenanigans again16:33:52
@purpleseaotter:nope.chat@purpleseaotter:nope.chatI had a few questions for this room that I hope Ill get an answer to16:35:04
@k900:0upti.meK900This is not the room for questions16:36:07
@purpleseaotter:nope.chat@purpleseaotter:nope.chat

So I switched from fedora silverblue to NixOS a while back...

All is fine and good, but I am trying to set up a secure system to operate from and im just missing a few things to realize this.

Whats the status on apparmor/selinux/tomoyo support in NixOS? I really want to use one of the 3 and ideally SELinux

16:36:08
@purpleseaotter:nope.chat@purpleseaotter:nope.chat
In reply to @k900:0upti.me
This is not the room for questions
Oh? Then what is the room? Apologies
16:36:16
@k900:0upti.meK900This is a room for reporting security issues in packages16:36:17
@k900:0upti.meK900 You want #NixOS Security Discussions 16:36:21
@purpleseaotter:nope.chat@purpleseaotter:nope.chatThank you sorry. I will delete my message16:36:35
@k900:0upti.meK900Please don't16:36:43
@purpleseaotter:nope.chat@purpleseaotter:nope.chat
In reply to @k900:0upti.me
Please don't
Any reason? I wont but im a little confused
16:37:14
@k900:0upti.meK900Rewriting room history generally makes things more confusing16:37:40
@k900:0upti.meK900And people who follow the room have already been pinged and deleting your message won't unping them16:37:55
@purpleseaotter:nope.chat@purpleseaotter:nope.chat left the room.17:13:29
@fabianhjr:matrix.orgFabián Herediahttps://x.com/evilsocket/status/1838169889330135132 Claims 9.9 RCE unauthenticated over network affecting all GNU/Linux Systems18:02:39
@fabianhjr:matrix.orgFabián HerediaSays openwall disclosure coming on Sept 3018:06:13
@fabianhjr:matrix.orgFabián Herediahttps://x.com/evilsocket/status/183824160897996028518:06:17
@hexa:lossy.networkhexahttps://xcancel.com/evilsocket/status/183816988933013513218:08:36
@hexa:lossy.networkhexafull thread for those w/o twatteer18:08:41
@hexa:lossy.networkhexa * full thread for those w/o twatter18:08:44
@vcunat:matrix.orgvcunatNot sure. I read the thread that workarounds will be known on Oct 6, so I'm not sure how specific it will be on Sep 30.18:12:51
@emilazy:matrix.orgemilyopenwall presumably means the private distros list that we're not on18:13:19

Show newer messages


Back to Room ListRoom Version: 6