andi- changed the topic of #nixos-security to: Vulnerability Roundup Issues: https://github.com/NixOS/nixpkgs/issues?utf8=%E2%9C%93&q=is%3Aissue+is%3Aopen+Vulnerability+roundup + https://broken.sh | Currently supported releases: unstable (master), 20.09, 20.03 (until 27th of November)
justanotheruser has quit [Ping timeout: 260 seconds]
rajivr has joined #nixos-security
das_j has quit [Quit: Bridge terminating on SIGTERM]
ajs124 has quit [Quit: Bridge terminating on SIGTERM]
ajs124 has joined #nixos-security
das_j has joined #nixos-security
justanotheruser has joined #nixos-security
star_cloud has joined #nixos-security
star_cloud has quit [Excess Flood]
star_cloud has joined #nixos-security
supersandro2000 has quit [Quit: The Lounge - https://thelounge.chat]
supersandro2000 has joined #nixos-security
cole-h has quit [Ping timeout: 240 seconds]
star_cloud has quit [Remote host closed the connection]
star_cloud has joined #nixos-security
star_cloud has quit [Remote host closed the connection]
star_cloud has joined #nixos-security
star_cloud has quit [Excess Flood]
star_cloud has joined #nixos-security
eyJhb has joined #nixos-security
<raboof> a quick 'grep -r "insecure ="' suggests there are no packages in nixpkgs that are marked 'insecure' - is that a mechanism we don't use (anymore)?
<qyliss> raboof: are you thinking of knownVulnerabilities? I've never heard of meta.insecure
<qyliss> and isMarkedInsecure in check-meta.nix hasn't either
<raboof> well that explains why I didn't find it :D
<raboof> thanks
supersandro2000 has quit [Quit: The Lounge - https://thelounge.chat]
supersandro2000 has joined #nixos-security
supersandro2000 has quit [Quit: The Lounge - https://thelounge.chat]
supersandro2000 has joined #nixos-security
justanotheruser has quit [Ping timeout: 250 seconds]
prusnak has joined #nixos-security
Ox4A6F has quit [Quit: authenticating]
Ox4A6F1 has joined #nixos-security
star_cloud has quit [Ping timeout: 260 seconds]
zgrep has joined #nixos-security
star_cloud has joined #nixos-security
<hexa-> openvpn
<{^_^}> #121288 (by nh2, 51 seconds ago, open): security: Wireguard generatePrivateKeyFile NixOS option allows unprivileged private key read
<pie_> nh2[m]: thanks, I learned something today.
<nh2[m]> pie_: it's like when you build a house and put in the locked front door at the end. You never know who hides in your basement since then!
<pie_> haha
<pie_> I mean, it completely makes sense.
<qyliss> nh2[m]: are you working on a patch?
<nh2[m]> qyliss: yes
<qyliss> cool :)
justanotheruser has joined #nixos-security
cole-h has joined #nixos-security
ajs124 has quit [*.net *.split]
julm has quit [*.net *.split]
dotlambda has quit [*.net *.split]
c4rc4s has quit [*.net *.split]
ajs124 has joined #nixos-security
julm has joined #nixos-security
dotlambda has joined #nixos-security
c4rc4s has joined #nixos-security
rajivr has quit [Quit: Connection closed for inactivity]
qyliss has quit [Quit: bye]
qyliss has joined #nixos-security
justanotheruser has quit [Ping timeout: 260 seconds]
justanotheruser has joined #nixos-security
qyliss has quit [Quit: bye]
qyliss has joined #nixos-security
qyliss has quit [Quit: bye]
qyliss has joined #nixos-security
qyliss has quit [Quit: bye]
qyliss has joined #nixos-security
supersandro2000 has quit [Killed (verne.freenode.net (Nickname regained by services))]
supersandro2000 has joined #nixos-security