| 4 Feb 2024 |
Jan Tojnar | * UAF in libxml2 again: https://github.com/NixOS/nixpkgs/pull/286300 | 14:52:36 |
tgerbet | In reply to @vcunat:matrix.org gnupg: some kind of 23.11 backport is needed? https://github.com/NixOS/nixpkgs/pull/284778#issuecomment-1925757262 Cherry-picks done in https://github.com/NixOS/nixpkgs/pull/286302 | 14:53:55 |
| raboof changed their display name from raboof @FOSDEM to raboof. | 17:41:47 |
hexa | https://gitlab.gnome.org/GNOME/libxml2/-/releases/v2.12.5 | 18:05:29 |
hexa | cc Jan Tojnar | 18:05:46 |
tgerbet | https://github.com/NixOS/nixpkgs/pull/286300 | 18:06:18 |
hexa | ok, failed to find it via github search | 18:06:53 |
| 5 Feb 2024 |
| puck joined the room. | 12:48:55 |
@adam:robins.wtf | adding in:title can be helpful, if you're not already using that | 14:34:16 |
| @ThorHop:matrix.org removed their profile picture. | 22:45:55 |
| @ThorHop:matrix.org removed their display name IdeallyYes. | 22:46:41 |
| @ThorHop:matrix.org left the room. | 22:47:12 |
hexa | https://webkitgtk.org/security/WSA-2024-0001.html Jan Tojnar | 23:59:26 |
| 7 Feb 2024 |
hexa | https://github.com/python/cpython/issues/113659 | 17:39:34 |
hexa | * https://github.com/python/cpython/issues/113659 doing the bumps | 17:39:55 |
hexa |
New releases of 3.8, 3.9 and 3.10 containing the same fix are expected next week.
| 17:47:34 |
hexa | https://github.com/libexpat/libexpat/blob/R_2_6_0/expat/Changes | 17:53:58 |
hexa | regresses the python3 test suite, I'm following https://github.com/python/cpython/issues/115133 | 17:54:18 |
| 8 Feb 2024 |
| @drewskiwooskie:matrix.org joined the room. | 03:16:46 |
| symys joined the room. | 07:21:42 |
vcunat | Someone who knows gnupg might comment on whether update is the right way (or some attempt to backport patches instead):
https://github.com/NixOS/nixpkgs/pull/286302 | 12:09:41 |
K900 | https://blog.clamav.net/2023/11/clamav-130-122-105-released.html | 12:42:37 |
K900 | Critical ClamAV vuln (ignore date in URL, was not published because of embargo) | 12:42:54 |
K900 | @globin | 12:43:20 |
hexa | https://www.openwall.com/lists/oss-security/2024/02/08/3 https://www.openwall.com/lists/oss-security/2024/02/08/4
adamcstephens 🐝 maybe?
| 20:31:37 |
hexa | https://www.openwall.com/lists/oss-security/2024/02/08/2 marsam | 20:32:13 |
hexa | https://github.com/NixOS/nixpkgs/pull/287226 | 20:32:36 |
| 10 Feb 2024 |
hexa | https://github.com/pixelfed/pixelfed/security/advisories/GHSA-gccq-h3xj-jgvf raitobezarius | 04:11:16 |
hexa | * https://github.com/pixelfed/pixelfed/security/advisories/GHSA-gccq-h3xj-jgvf raitobezarius9.9/10 🚨 | 04:11:36 |
| someone-stole-my-name joined the room. | 09:54:20 |