!ZRgXNaHrdpGqwUnGnj:nixos.org

NixOS Security Triage

690 Members
Coordination and triage of security issues in nixpkgs215 Servers

You have reached the beginning of time (for this room).


SenderMessageTime
17 Apr 2025
@k900:0upti.meK900 #NixOS 04:54:53
@k900:0upti.meK900^ space04:54:55
@sigmasquadron:matrix.orgSigmaSquadronwait, the alias changed?04:55:04
@k900:0upti.meK900It has multiple e04:55:14
@k900:0upti.meK900* It has multiple I think?04:55:16
@binarious:matrix.orgbinariousI am part of the space. I also only see an invite button and not a join button at the top.04:55:52
@binarious:matrix.orgbinarious* I am part of the space - or should be. I also only see an invite button and not a join button at the top.04:56:01
@binarious:matrix.orgbinarious Thanks SigmaSquadron, the room invite worked. 04:57:53
@hexa:lossy.networkhexa https://gitlab.gnome.org/GNOME/libxml2/-/issues/890
https://gitlab.gnome.org/GNOME/libxml2/-/issues/889
libxml2 Jan Tojnar
18:48:20
@grimmauld:grapevine.grimmauld.deGrimmauld (any/all) is this still unfixed? If so i'll poke. There seems to be an update available to fix it, and like half the package affectd pull libxml via libsoup propagation and i already was messing with that lot of "fun" 21:08:55
@hexa:lossy.networkhexacheck the PR queue21:09:30
@grimmauld:grapevine.grimmauld.deGrimmauld (any/all)gh search only returns my own PRs mentioning libxml recently, so probably nothing was opened yet21:10:05
@grimmauld:grapevine.grimmauld.deGrimmauld (any/all)https://github.com/NixOS/nixpkgs/pull/39959521:24:11
@grimmauld:grapevine.grimmauld.deGrimmauld (any/all)Also, can someone convert https://github.com/NixOS/nixpkgs/pull/396195 to a draft so it isn't merged accidentially? 2.14.0 is vulnerable, and it'd be bad if the 2.13.8 would be overridden by 2.14.0 - needs 2.14.2 or higher to be safe.21:29:17

Show newer messages


Back to Room ListRoom Version: 6