!ZRgXNaHrdpGqwUnGnj:nixos.org

NixOS Security Triage

677 Members
Coordination and triage of security issues in nixpkgs | Discussions in #security-discuss:nixos.org | Open PRs: https://github.com/NixOS/nixpkgs/pulls?q=is%3Apr+is%3Aopen+sort%3Aupdated-desc+label%3A%221.severity%3A+security%22211 Servers

Load older messages


SenderMessageTime
18 Jan 2026
@balabala888:matrix.orgNightfan joined the room.17:42:00
20 Jan 2026
@wim:dewith.iowfdewith changed their display name from Wim de With to wfdewith.10:45:07
@wim:dewith.iowfdewithfreerdp: https://github.com/NixOS/nixpkgs/pull/48191210:45:16
@teutat3s:pub.solarteutat3smastodon: https://github.com/mastodon/mastodon/releases/tag/v4.5.5 | one high DoS vuln with a score of 7.5/1017:12:18
@teutat3s:pub.solarteutat3s* mastodon: https://github.com/mastodon/mastodon/releases/tag/v4.5.5 | one high DoS vuln with a score of 7.5/10 | https://github.com/mastodon/mastodon/security/advisories/GHSA-gg8q-rcg7-p79g17:13:00
@teutat3s:pub.solarteutat3shttps://github.com/NixOS/nixpkgs/pull/48202123:29:06
21 Jan 2026
@hexa:lossy.networkhexahttps://seclists.org/oss-sec/2026/q1/98 bind916:34:03
@ma27:nicht-so.sexyma27

another one for glibc: https://www.openwall.com/lists/oss-security/2026/01/20/3

will do the patching tomorrow, off to bed now.

22:19:43
@ma27:nicht-so.sexyma27

There is no known application impact for this CVE, and the feature is generally non-functional with the two flags.

doesn't seem too bad anyways
(from https://sourceware.org/bugzilla/show_bug.cgi?id=33814)

22:21:09
@tgerbet:matrix.orgtgerbethttps://github.com/NixOS/nixpkgs/pull/48246423:12:35
19 May 2021
@grahamc:nixos.org@grahamc:nixos.org set the history visibility to "world_readable".22:57:54
@grahamc:nixos.org@grahamc:nixos.org changed the room name to "" from "".22:57:54
@andreas.schraegle:helsinki-systems.deajs124 joined the room.22:58:46
@andi:kack.itandi- joined the room.23:00:51
@hexa:lossy.networkhexa joined the room.23:01:24
@sushi_dude:matrix.orgSushi Dude joined the room.23:04:45
@0x4a6f:matrix.org[0x4A6F] joined the room.23:04:54
@sumner:sumnerevans.comsumner joined the room.23:11:04
@sugi:matrix.besaid.desugi joined the room.23:24:52
@foxboron:archlinux.orgFoxboron joined the room.23:32:00
@adisbladis:matrix.orgadisbladis joined the room.23:43:35
20 May 2021
@sandro:supersandro.deSandro joined the room.00:06:39
@schatztruhe:stratum0.orgnora joined the room.00:31:53
@mkos:matrix.orgMark joined the room.00:38:14
@andreas.schraegle:helsinki-systems.deajs124 changed their display name from Andreas Schrägle to ajs124.00:40:47
@nh2:matrix.orgnh2 joined the room.05:48:59
@colemickens:matrix.orgcolemickens 🏳️‍🌈 joined the room.06:18:01
@srhb:matrix.orgsrhb joined the room.06:22:05
@7c6f434c:nitro.chat7c6f434c joined the room.06:51:58
@Ericson2314:matrix.orgJohn Ericson joined the room.07:05:55

Show newer messages


Back to Room ListRoom Version: 6