Re: Feedback on a new simple firewall service OFF TOPIC PRAISE

2021-06-10 Thread Joshua Branson
Solene Rapenne writes: > Hello, > > I'm looking for advices and feedback. I wrote a simple service (reusing > the iptables service as a start) that I called "firewall", the purpose maybe eventually it could use nftables, which is the better newer version. > is to block all incoming ports and

Is Guix vulnerable to this polkit CVE?

2021-06-10 Thread Leo Prikler
Guix commit 9178566954cc7f34d2d991d31df4565adad93508 ought to fix this with a patch and graft. If you haven't updated already, consider doing so. If you want to play with polkit, you can always roll back :P

Re: Is Guix vulnerable to this polkit CVE?

2021-06-10 Thread Tobias Geerinckx-Rice
jbra...@dismail.de 写道: You all awesome devs have probably already fixed it, but I am just emailing to make sure. It was fixed in Guix[0], but thank you for your vigilance! o7 Rest well, T G-R [0]:

Is Guix vulnerable to this polkit CVE?

2021-06-10 Thread jbranso
I just found this article on polkit having a CVE: https://github.blog/2021-06-10-privilege-escalation-polkit-root-on-linux-with-bug/ (https://github.blog/2021-06-10-privilege-escalation-polkit-root-on-linux-with-bug/) It looks pretty nasty... " The vulnerability enables an unprivileged local

Re: [PATCH RFC 0/4] Getting rid of input labels?

2021-06-10 Thread Ludovic Courtès
Hello! Ludovic Courtès skribis: > Here’s a proposal for a soft revolution: getting rid of input labels > in package definitions. Instead of writing: > > (native-inputs > `(("autoconf" ,autoconf) >("automake" ,automake) >("pkg-config" ,pkg-config) >("guile"

Re: "guix pull" expiry channels

2021-06-10 Thread zimoun
Hi Pierre, On Wed, 09 Jun 2021 at 21:26, Pierre Neidhardt wrote: > Same here, I've experienced this bug multiple times for a few months > already. Thanks for confirming. What is your frequency for pulling? More or less? Cheers, simon

Re: RISCV porting effort

2021-06-10 Thread Efraim Flashner
On Wed, Jun 09, 2021 at 12:28:22AM +0200, Gabriel Wicki wrote: > Hello everyone! > > > Efraim Flashner skribis: > > > Porting Guix comes with two parts: building the bootstrap-tarballs and > > > adding support for the new architecture in (gnu packages bootstrap). > > > Support for riscv was

Re: RISCV porting effort

2021-06-10 Thread Efraim Flashner
On Tue, Jun 08, 2021 at 03:43:44PM +0200, Ludovic Courtès wrote: > Hello! > > Efraim Flashner skribis: > > > Porting Guix comes with two parts: building the bootstrap-tarballs and > > adding support for the new architecture in (gnu packages bootstrap). > > Support for riscv was added to GCC

Re: "guix pull" expiry channels

2021-06-10 Thread Pierre Neidhardt
Once every second week maybe? Depends, if I need an urgent upgrade then it might be more. -- Pierre Neidhardt https://ambrevar.xyz/ signature.asc Description: PGP signature