andi- changed the topic of #nixos-security to: Vulnerability Roundup Issues: https://github.com/NixOS/nixpkgs/issues?utf8=%E2%9C%93&q=is%3Aissue+is%3Aopen+Vulnerability+roundup + https://broken.sh | Currently supported releases: unstable (master), 20.09, 20.03 (until 27th of November)
rajivr has joined #nixos-security
bridge[evilred] has joined #nixos-security
ris has quit [Ping timeout: 246 seconds]
star_cloud has quit [Remote host closed the connection]
star_cloud has joined #nixos-security
star_cloud has quit [Excess Flood]
star_cloud has joined #nixos-security
{`-`} has joined #nixos-security
kalbasit has joined #nixos-security
kalbasit has quit [Ping timeout: 240 seconds]
FRidh has joined #nixos-security
tokudan has quit [Read error: Connection reset by peer]
tokudan has joined #nixos-security
blitzclone[m] has quit [Ping timeout: 260 seconds]
blitzclone[m] has joined #nixos-security
justanotheruser has quit [Ping timeout: 264 seconds]
dstzd has quit [Quit: ZNC - https://znc.in]
dstzd has joined #nixos-security
star_cloud has quit [Remote host closed the connection]
star_cloud has joined #nixos-security
star_cloud has quit [Excess Flood]
star_cloud has joined #nixos-security
justanotheruser has joined #nixos-security
<{^_^}> #105157 (by mweinelt, 10 seconds ago, open): libslirp: fix CVE-2020-29129
FRidh has quit [Ping timeout: 264 seconds]
FRidh has joined #nixos-security
justanotheruser has quit [Ping timeout: 264 seconds]
star_cloud has quit [Remote host closed the connection]
star_cloud has joined #nixos-security
star_cloud has quit [Excess Flood]
star_cloud has joined #nixos-security
rajivr has quit [Quit: Connection closed for inactivity]
MichaelRaskin has joined #nixos-security
ris has joined #nixos-security
<hexa-> 20.03 EOL
<hexa-> closed #102838 #102762 102708, because of EOL and they were not in a state to be mmerged
<{^_^}> https://github.com/NixOS/nixpkgs/pull/102838 (by redvers, 3 weeks ago, closed): [20.03] ant: 1.10.2 -> 1.10.9 [20.03]
<{^_^}> https://github.com/NixOS/nixpkgs/pull/102762 (by redvers, 3 weeks ago, closed): [20.03] zsh: 5.7.1 -> 5.8
FRidh has quit [Quit: Konversation terminated!]
<hexa-> can someone look into https://github.com/NixOS/nixpkgs/pull/104189 please?
<{^_^}> #104189 (by mweinelt, 1 week ago, open): [staging-20.09] openldap: 2.4.51 -> 2.4.56
kalbasit has joined #nixos-security
julm has quit [Ping timeout: 256 seconds]
julm has joined #nixos-security
<hexa-> sad :<
kalbasit has quit [Ping timeout: 256 seconds]
<infinisil> :/
<simpson> Heh. Understandable.
<hexa-> this relates to #105157, which won't apply to qemu until we apply #101608, and would need to be patch separately
<{^_^}> https://github.com/NixOS/nixpkgs/pull/105157 (by mweinelt, 7 hours ago, open): libslirp: fix CVE-2020-29129
<{^_^}> https://github.com/NixOS/nixpkgs/pull/101608 (by zowoq, 4 weeks ago, closed): qemu: use shared libslirp instead of vendored
<simpson> Probably should either redo that PR series or somehow convince zowoq that they're a valued contributor. I know which is easier~