!ZRgXNaHrdpGqwUnGnj:nixos.org

NixOS Security Triage

660 Members
Coordination and triage of security issues in nixpkgs | Discussions in #security-discuss:nixos.org | Open PRs: https://github.com/NixOS/nixpkgs/pulls?q=is%3Apr+is%3Aopen+sort%3Aupdated-desc+label%3A%221.severity%3A+security%22205 Servers

You have reached the beginning of time (for this room).


SenderMessageTime
21 May 2025
@zhaofeng:zhaofeng.liZhaofeng Lilibarchive: https://github.com/NixOS/nixpkgs/pull/409300 https://github.com/libarchive/libarchive/releases/tag/v3.8.0 Security fixes mixed with new features, no CVEs assigned as far as I can tell06:46:07
@stigo:matrix.orgstigoI've pinged Red Hat about it, hopefully they will get CVEs fixed10:26:12
@stigo:matrix.orgstigo(MITRE takes ages to repond)10:28:23
@oddlama:matrix.orgoddlama changed their display name from Malte to oddlama.17:42:18
@hexa:lossy.networkhexahttps://github.com/NixOS/nixpkgs/pull/40944523:56:59
23 May 2025
@stigo:matrix.orgstigoRed Hat CNA-LR responded yesterday that they will process the issues11:04:13
@mtheil:scs.ems.hostMarkus Theilhttps://openssl-library.org/news/vulnerabilities/#CVE-2025-457513:18:08
@mtheil:scs.ems.hostMarkus TheilI commented the CVE in https://github.com/NixOS/nixpkgs/pull/397123.13:19:24
@alisonjenkins:matrix.orgAlison Jenkins changed their profile picture.16:05:41
25 May 2025
@hexa:lossy.networkhexahttps://www.openwall.com/lists/oss-security/2025/05/23/215:50:31
@hexa:lossy.networkhexa* https://www.openwall.com/lists/oss-security/2025/05/23/2 ghostscript15:50:49
26 May 2025
@ximnoise:infosec.exchangeximnoise left the room.02:57:15
@ximnoise:infosec.exchangeximnoise joined the room.02:57:30
27 May 2025
@deeok:matrix.orgmatrixrooms.info mod bot (does NOT read/send messages and/or invites; used for checking reported rooms) joined the room.07:49:31
@irenes:matrix.org@irenes:matrix.org left the room.09:00:51

Show newer messages


Back to Room ListRoom Version: 6