!ZRgXNaHrdpGqwUnGnj:nixos.org

NixOS Security Triage

748 Members
Coordination and triage of security issues in nixpkgs230 Servers

Load older messages


SenderMessageTime
26 Jul 2021
@hexa:lossy.networkhexaand aspell https://nvd.nist.gov/vuln/detail/CVE-2019-2505117:53:42
28 Jul 2021
@js:ukvly.orgjulianst
In reply to @grahamc:nixos.org

Given Windows 11 has it as a requirement, any operating system which doesn't support it at all can't boot. Not without reconfiguring your BIOS at every reboot, at any rate, which I don't think many people are going to do. Personally I've been running an indev version of 11, and...

anyone have sources to back this up? sounds like unsubstantiated FUD to me

I'm not sure where the misinformation comes from. If Windows 11 mandates a TPM 2.0 that has no impact on anyone. It doesn't mean that Secure Boot cannot be disabled anymore
12:37:34
@philipp:xndr.dephilipp
In reply to @js:ukvly.org
I'm not sure where the misinformation comes from. If Windows 11 mandates a TPM 2.0 that has no impact on anyone. It doesn't mean that Secure Boot cannot be disabled anymore
There has been fud about this for every windows release since at least windows 7, I wouldn't worry about it for now. There is also antitrust regulations in place for things like this.
12:43:55
@stick:matrix.orgstick changed their display name from prusnak to stick.15:09:42
@toonn:matrix.orgtoonn Requiring certain hardware for your OS doesn't sound at all like antitrust to me? 19:34:34
@toonn:matrix.orgtoonn It's like not supporting your OS on ARM. 19:34:54
@roosemberth:orbstheorem.chRoosI'd argue things change when you're OS is very much used and you artificially limit compatibility.19:35:45
@toonn:matrix.orgtoonn I mean, Apple's clear prior art. 19:37:16
@roosemberth:orbstheorem.chRoosAn argument could be made about compelling people to replace perfectly working hardware with new one.19:37:18
@toonn:matrix.orgtoonn Some motherboards do allow adding a TPM. 19:37:43
@toonn:matrix.orgtoonn I think it only becomes antitrust if they were in cahoots with hardware companies. 19:38:05
@toonn:matrix.orgtoonn Removing headphone jacks from phones is slightly similar. 19:44:08
@genevino:matrix.orgArminio GenevinoThat is just terrible. I love Apple hardware, but having to use a USB-C to headphone adapter is just stupid. I realize those jacks broke easily, but meh.19:45:41
@nixinator:nixos.devnixinator
In reply to @genevino:matrix.org
That is just terrible. I love Apple hardware, but having to use a USB-C to headphone adapter is just stupid. I realize those jacks broke easily, but meh.
have you thought about upgrading the macbook wheel? https://www.youtube.com/watch?v=9BnLbv6QYcA
23:11:23
29 Jul 2021
@stick:matrix.orgstick changed their display name from stick to stick2.16:25:15
@stick:matrix.orgstick changed their display name from stick2 to stick.16:25:55
30 Jul 2021
@stick:matrix.orgstick changed their display name from stick to stick3.10:32:55
@stick:matrix.orgstick changed their display name from stick3 to stick.10:33:02
@stick:matrix.orgstick changed their display name from stick to stick[m].10:35:18
@stick:matrix.orgstick changed their display name from stick[m] to stick.10:35:43
@disrupt_the_flow:matrix.orgdisrupt_the_flowRedacted or Malformed Event11:44:22
@disrupt_the_flow:matrix.orgdisrupt_the_flowRedacted or Malformed Event11:45:30
@disrupt_the_flow:matrix.orgdisrupt_the_flowHello. Anyone using the hardened profile and KDE Wayland? Seems after issuing nixos-rebuild switch an error saying plasma5 attribute doesn't exist in pam.nix pops up. The fuck?11:50:50
@linus.heckemann:matrix.mayflower.deLinux Hackerman
In reply to @disrupt_the_flow:matrix.org
Hello. Anyone using the hardened profile and KDE Wayland? Seems after issuing nixos-rebuild switch an error saying plasma5 attribute doesn't exist in pam.nix pops up. The fuck?
Don't use the hardened profile
14:03:36
@linus.heckemann:matrix.mayflower.deLinux HackermanAt least not without reading and understanding it fully14:03:50
@disrupt_the_flow:matrix.orgdisrupt_the_flow
In reply to @linus.heckemann:matrix.mayflower.de
At least not without reading and understanding it fully
I did read it and somewhat understood it. An issue was with the memory allocator. If the allocator wasn't libc nothing worked. Even after reinstalling. Dunno why. Maybe Wayland? Anyway as for the above error idk.
14:28:42
@seniorivn:matrix.org@seniorivn:matrix.org joined the room.14:30:28
@linus.heckemann:matrix.mayflower.deLinux HackermanThe hardened profile breaks things. Don't use it if it break things you need.14:39:22
@linus.heckemann:matrix.mayflower.deLinux HackermanSorry, I'm in a bit of a foul mood for unrelated reasons and this probably isn't the best disposition to be helping people in. I'll be off.14:40:27
@tnias:stratum0.orgtniasEspecially on a desktop/workstation it is not usable. Would not recommend.14:41:14

Show newer messages


Back to Room ListRoom Version: 6