!UNVBThoJtlIiVwiDjU:nixos.org

Staging

346 Members
Staging merges | Find currently open staging-next PRs: https://github.com/NixOS/nixpkgs/pulls?q=is%3Apr+sort%3Aupdated-desc+head%3Astaging-next+head%3Astaging-next-21.05+is%3Aopen114 Servers

Load older messages


SenderMessageTime
16 Jan 2026
@emilazy:matrix.orgemilyso a security bug in any code that allows user input to trigger it both before and after remediation22:33:56
@emilazy:matrix.orgemilyor well, maybe the alignment part makes it subtler here22:34:40
@emilazy:matrix.orgemilygiving untrusted input control over alignment is pretty wild already though. unless I'm missing something this feels like nothing22:35:14
@fabianhjr:matrix.orgfabianhjrThere are two, that is the first one and the second one is stack leak to a dns resolver22:37:35
@emilazy:matrix.orgemilyah ok I missed that one22:37:49
@emilazy:matrix.orgemilythat one is also nothing :)22:38:28
@fabianhjr:matrix.orgfabianhjrThough I would say I don't think those are critical enough to require and inmediate rebuild22:38:31
@ma27:nicht-so.sexyma27fwiw no objections from my side on targeting staging instead of -next. Can retarget the PR tomorrow, I'll go to sleep now.22:39:24
@k900:0upti.meK900 The second one is nothing 22:39:41
@k900:0upti.meK900The first one I may have misread22:39:47
@k900:0upti.meK900It's almost 2AM22:39:51
@emilazy:matrix.orgemilyyeah heap overflow in a case that is maybe compiler UB regardless and I'm any case involves giving attackers crazy levels of control of memory allocation, plus uncommon calls leaking small amounts of stack to DNS server = I sleep22:40:41
@emilazy:matrix.orgemilyI'd expect -next contains juicier fixes already22:41:40
17 Jan 2026
@xokdvium:matrix.orgSergei Zimmerman (xokdvium)There's a slight include messup with cppnix 2.33 and glibc 2.42. I should send that to staging-next now? https://github.com/NixOS/nix/pull/1501118:45:42
@xokdvium:matrix.orgSergei Zimmerman (xokdvium)Or just master and the regular merge will do the thing?18:46:54
@k900:0upti.meK900master is fine18:48:17
@emilazy:matrix.orgemilystaging-nixos, no?18:53:29
@emilazy:matrix.orgemilygiven the test rebuilds?18:53:37
@emilazy:matrix.orgemilyor is it not default yet?18:53:43
@xokdvium:matrix.orgSergei Zimmerman (xokdvium)Not the default18:54:59
@xokdvium:matrix.orgSergei Zimmerman (xokdvium)Going to also grab aarch64-darwin patches to fix darwin19:00:11
@xokdvium:matrix.orgSergei Zimmerman (xokdvium)* Going to also grab aarch64-darwin patches to fix darwin sandbox shenanigans19:00:25
18 Jan 2026
@reckenrode:matrix.orgRandy Eckenrodepython3Packages.setproctitle is failing to build on 25.11. It happened to build on unstable, but that may have been a happy accident, so I’m going to fix the failure on staging first. When I do the backport, should it still target staging-25.11, or can it be retargeted to release-25.11 since it’s not technically causing rebuilds (but it will cause a bunch of builds)?19:53:52
@leona:leona.isleonaRedacted or Malformed Event19:54:15
@leona:leona.isleonaRedacted or Malformed Event19:54:22
@hexa:lossy.networkhexadepends on the number of rebuilds20:12:45
@reckenrode:matrix.orgRandy EckenrodeIt was tagged 2501–5000, which is why I’m targeting staging for unstable. Since it’s broken on 25.11, would that still go through staging-25.11 due to the number of builds?20:14:10
@vcunat:matrix.orgVladimír ČunátCan you make it rebuild on darwin only? (for now)20:23:43
@vcunat:matrix.orgVladimír Čunát It's broken exactly on staging-next and release-25.11 currently. 20:24:29
@vcunat:matrix.orgVladimír ČunátIf it's a darwin-only rebuild for setproctitle, I'd target these two.20:24:58

Show newer messages


Back to Room ListRoom Version: 6