Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Update nixpkgs for glibc CVE-2023-4911 fix #800

Merged
merged 1 commit into from
Oct 6, 2023

Conversation

dpausp
Copy link
Member

@dpausp dpausp commented Oct 3, 2023

@flyingcircusio/release-managers

Release process

Impact:

Changelog:

  • glibc: update to 2.37-45 to get the fix for CVE-2023-4911 (PL-131808).

Security implications

  • Security requirements defined? (WHERE)
    • use a recent version of glibc to get the latest security patches
  • Security requirements tested? (EVIDENCE)
    • automated tests still run, works on a test VM. Other than that, we trust glibc to fix the issue as we cannot check it directly.

@dpausp dpausp force-pushed the PL-131808-glibc-CVE-2023-4911 branch 3 times, most recently from 53e1bcd to 3ecf579 Compare October 5, 2023 15:18
@dpausp dpausp marked this pull request as ready for review October 6, 2023 08:35
@dpausp dpausp force-pushed the PL-131808-glibc-CVE-2023-4911 branch from 3ecf579 to 316cbad Compare October 6, 2023 08:36
Copy link
Member

@osnyx osnyx left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

For whatever reason, the hydra check status is not displayed in-line here. I confirm tests are green. https://hydra.flyingcircus.io/jobset/platform-prs/pr-800

@osnyx osnyx merged commit 24fedc3 into fc-23.05-dev Oct 6, 2023
1 check passed
@osnyx osnyx deleted the PL-131808-glibc-CVE-2023-4911 branch October 6, 2023 08:45
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

Successfully merging this pull request may close these issues.

2 participants