gchristensen changed the topic of #nixos-security to: Vulnerability Roundup Issues: https://github.com/NixOS/nixpkgs/issues?utf8=%E2%9C%93&q=is%3Aissue+is%3Aopen+Vulnerability+roundup + https://broken.sh
ris has quit [Ping timeout: 240 seconds]
haiko has quit [Ping timeout: 264 seconds]
haiko has joined #nixos-security
ckauhaus has joined #nixos-security
ckauhaus has quit [Quit: WeeChat 2.6]
ckauhaus has joined #nixos-security
MichaelRaskin has joined #nixos-security
ris has joined #nixos-security
FRidh has joined #nixos-security
hmpffff has joined #nixos-security
FRidh has quit [Quit: Konversation terminated!]
tilpner has quit [Remote host closed the connection]
tilpner has joined #nixos-security
<ris> #73970
<{^_^}> https://github.com/NixOS/nixpkgs/pull/73970 (by risicle, 40 seconds ago, open): tightvnc: add patches for CVE-2019-8287, CVE-2019-15678, CVE-2019-15679 & CVE-2019-15680
<ris> also outstanding:
<ris> #73580
<{^_^}> https://github.com/NixOS/nixpkgs/pull/73580 (by risicle, 5 days ago, open): [r19.03] dpdk: 17.11.2 -> 17.11.9, addressing CVE-2019-14818
<ris> #73590
<{^_^}> https://github.com/NixOS/nixpkgs/pull/73590 (by risicle, 5 days ago, open): [r19.09] ghostscript: add patches for CVE-2019-3835, CVE-2019-3838, CVE-2019-14869
<ris> #73707
<{^_^}> https://github.com/NixOS/nixpkgs/pull/73707 (by risicle, 4 days ago, open): [r19.09] fribidi: add patch for CVE-2019-18397
<ris> #73718
<{^_^}> https://github.com/NixOS/nixpkgs/pull/73718 (by risicle, 4 days ago, open): [r19.03] fribidi: add patch for CVE-2019-18397
<ckauhaus> ris: great :-)
<ckauhaus> would someone review these PRs?
<ris> i wish we had a better test for ghostscript
<ckauhaus> yeah, I have to take a look at it
<ris> mangling patches of mostly postscript makes me very uncomfortable
justanotheruser has joined #nixos-security
justanotheruser has quit [Ping timeout: 252 seconds]
justanotheruser has joined #nixos-security
MichaelRaskin has quit [Quit: MichaelRaskin]
ckauhaus has quit [Quit: WeeChat 2.6]
justanotheruser has quit [Ping timeout: 246 seconds]
justanotheruser has joined #nixos-security
<ris> Could someone add the security label to #71242 ?
<{^_^}> https://github.com/NixOS/nixpkgs/pull/71242 (by lsix, 5 weeks ago, open): aspell: 0.60.6.1 -> 0.60.8
pie__ has joined #nixos-security
pie_ has quit [Ping timeout: 276 seconds]
<ris> #73999
<{^_^}> https://github.com/NixOS/nixpkgs/pull/73999 (by risicle, 20 seconds ago, open): [r19.09] aspell: add patch for CVE-2019-17544