andi- changed the topic of #nixos-security to: Vulnerability Roundup Issues: + | Currently supported releases: unstable (master), 20.09, 20.03 (until 27th of November)
<hexa-> > Subject: CVE-2021-29136: umoci: malicious layer with symlink entry for "/"
<{^_^}> error: syntax error, unexpected WITH, expecting ')', at (string):494:49
<hexa-> allows overwriting of host files
<{^_^}> #118670 (by mweinelt, 33 minutes ago, open): Django: 2.2.19 -> 2.2.20; 3.1.7 -> 3.2; asgiref: 3.3.1 -> 3.3.2
<hexa-> > pkgs.ceph.version
<{^_^}> "15.2.8"
<lukegb> hexa-: NixOS is probably secure since I don't think the ceph dashboard actually works :)))
<hexa-> lol
<hexa-> lucky us
<{^_^}> #118698 (by mweinelt, 2 minutes ago, open): umoci: 0.4.6 -> 0.4.7
