!ZRgXNaHrdpGqwUnGnj:nixos.org

NixOS Security Triage

729 Members
Coordination and triage of security issues in nixpkgs222 Servers

You have reached the beginning of time (for this room).


SenderMessageTime
21 Dec 2025
@me:indeednotjames.comemily

I don't think it's enough to just cherry-pick just that one commit.

There are at least 2 commits that fix validation: https://forgejo.ellis.link/continuwuation/continuwuity/commits/commit/7fa4fa98628593c1a963f5aa8dbc3657d604b047

It is paramount that you update to the latest commit from our forgejo as soon as you can. A full release will be following later today.
https://fedi.transgender.ing/notes/agj9mne73ias00d8

If anything, we should bump our version to the unreleased git commit.

13:48:53
@n4ch7:n3831.netn4ch723hr3r (putting stuff in your name is cringe)i merged them together, if i remember correctly13:50:33
@n4ch7:n3831.netn4ch723hr3r (putting stuff in your name is cringe)* i merged them together, if i remember correctly (im not sure anymore since it was on tmpfs and i OOM'd trying to compile it)13:51:03
@n4ch7:n3831.netn4ch723hr3r (putting stuff in your name is cringe)i managed to compile it13:51:16
@n4ch7:n3831.netn4ch723hr3r (putting stuff in your name is cringe) the 7fa... commit contains // Ensure the sending user isn't a lying bozo which i also have in my commit 13:52:13
@me:indeednotjames.comemily #security-discuss:nixos.org would be a better fit for this discussion. 13:52:30
@magic_rb:matrix.redalder.orgmagic_rb joined the room.14:05:41
@emma:rory.gayEmma [it/its]oh i was about to bring that up here14:08:48
@emma:rory.gayEmma [it/its] should note that tuwunel is also affected: https://github.com/matrix-construct/tuwunel/commit/dc9314de1f8a6e040c5aa331fe52efbe62e6a2c3 14:09:43

Show newer messages


Back to Room ListRoom Version: 6