| 22 Jul 2021 |
ris_ | not tonight | 23:01:09 |
hexa | no problem, the issues are not going anywhere | 23:01:32 |
hexa | https://github.com/NixOS/nixpkgs/pull/124502#issuecomment-881944444 | 23:02:12 |
hexa | that comment is the most intriguing | 23:02:29 |
ris_ | yeah i saw it - it's probably a good idea all in all | 23:03:07 |
| 23 Jul 2021 |
nixinator | In reply to @mlieberman85:matrix.org Personally I'm looking at building a tool that can generate SPDX and/or CycloneDX formatted SBOMs based on Nix derivations. I have some thoughts on it but would definitely be interested in bouncing my ideas off of some folks who have more experience in the Nix derivation space. what do you need? | 02:08:37 |
Gytis Ivaskevicius | Does nixos have some sort of security newsletter? Currently I am subscribing to manjaro one and I feel ashamed for it :D | 07:04:13 |
Sandro | No | 07:07:15 |
Mic92 | There was one on google groups quite some time ago | 07:49:41 |
| Samæ joined the room. | 08:26:07 |
Samæ | Hi everyone. How can I check that my system (kernel) is patched against CVE-2021-33909? I found this PR https://github.com/NixOS/nixpkgs/pull/131113 related to zen-kernels, but it doesn't clearly answer my question. | 08:27:59 |
das_j | Samæ: It's patched if you updated and rebooted recently. But you could try the exploit from the oss mailing lsit | 08:28:45 |