!ZRgXNaHrdpGqwUnGnj:nixos.org

NixOS Security Triage

747 Members
Coordination and triage of security issues in nixpkgs231 Servers

Load older messages


SenderMessageTime
25 May 2021
@sumner:sumnerevans.comsumner OK, I updated the backport commit, and rebased on the latest release-21.05 branch for good measure. 15:23:39
@hexa:lossy.networkhexawill merge when ofborg eval is happy15:24:20
@packetizeme:matrix.orgbinaryoctopus joined the room.15:42:22
@meetmangukiya:matrix.orgmeet joined the room.16:06:36
@georgyo:nycr.chatgeorgyo joined the room.16:54:06
@hexa:lossy.networkhexahttps://github.com/NixOS/nixpkgs/pull/12440018:31:19
@hexa:lossy.networkhexaneeds porting to both stable branches18:31:30
@hexa:lossy.networkhexa
A security issue in nginx resolver was identified, which might allow an
attacker to cause 1-byte memory overwrite by using a specially crafted
DNS response, resulting in worker process crash or, potentially, in
arbitrary code execution (CVE-2021-23017).
18:31:53
@hexa:lossy.networkhexahttps://security.googleblog.com/2021/05/introducing-half-double-new-hammering.html 😒18:39:03
@kevincox:matrix.orgkevincoxYou mean DRAM manufacturers didn't really fix the problem? surprised-pikachu18:48:07
@hexa:lossy.networkhexahttps://github.com/NixOS/nixpkgs/pull/12443322:20:58
@hexa:lossy.networkhexaplease review22:21:07
@hexa:lossy.networkhexathanks for the quick response everbody 🥳22:40:09

There are no newer messages yet.


Back to Room ListRoom Version: 6