nixpkgs security changes
nixpkgssecuritychanges.gerbet.me
nixpkgs security changes
@nixpkgssecuritychanges.gerbet.me
Bot publishing merged #nixpkgs pull-request with a security label

Managed by @thomas.gerbet.me / 🦣 https://social.gerbet.me/@Le_suisse

Also on 🦣 https://social.gerbet.me/@nixpkgssecuritychanges
November 14, 2025 at 5:35 AM
November 14, 2025 at 5:35 AM
November 14, 2025 at 5:35 AM
grub2: apply patch for CVE-2025-4382

https://github.com/NixOS/nixpkgs/pull/459793

#security
November 14, 2025 at 5:35 AM
teleport_18: 18.3.1 -> 18.3.2; teleport_17: 17.7.8 -> 17.7.9

https://github.com/NixOS/nixpkgs/pull/460377

#security
November 14, 2025 at 5:35 AM
Revert "nixos/postfix: fix in secure systemd-nspawn containers"

https://github.com/NixOS/nixpkgs/pull/460841

#security
November 14, 2025 at 1:31 AM
[Backport release-25.05] brave: 1.84.135 -> 1.84.139

https://github.com/NixOS/nixpkgs/pull/461213

#security
November 13, 2025 at 2:35 PM
November 13, 2025 at 12:06 PM
[Backport release-25.05] gitlab: 18.5.1 -> 18.5.2

https://github.com/NixOS/nixpkgs/pull/461189

#security
November 13, 2025 at 10:38 AM
November 13, 2025 at 9:36 AM
November 13, 2025 at 5:03 AM
[Backport release-25.05] ungoogled-chromium: 142.0.7444.134-1 -> 142.0.7444.162-1

https://github.com/NixOS/nixpkgs/pull/461069

#security
November 13, 2025 at 12:14 AM
ungoogled-chromium: 142.0.7444.134-1 -> 142.0.7444.162-1

https://github.com/NixOS/nixpkgs/pull/461065

#security
November 12, 2025 at 11:03 PM
November 12, 2025 at 9:34 PM
November 12, 2025 at 6:39 PM
[Backport release-25.05] chromium,chromedriver: 142.0.7444.134 -> 142.0.7444.162

https://github.com/NixOS/nixpkgs/pull/460968

#security
November 12, 2025 at 4:40 PM
chromium,chromedriver: 142.0.7444.134 -> 142.0.7444.162

https://github.com/NixOS/nixpkgs/pull/460958

#security
November 12, 2025 at 4:04 PM
workflows: run build & check in the merge queue; never push to cachix in PRs

https://github.com/NixOS/nixpkgs/pull/460726

#security
November 12, 2025 at 2:37 PM
[Backport release-25.05] workflows: run build & check in the merge queue; never push to cachix in PRs

https://github.com/NixOS/nixpkgs/pull/460943

#security
November 12, 2025 at 2:37 PM
[release-25.05] tor-browser: 15.0 -> 15.0.1

https://github.com/NixOS/nixpkgs/pull/460901

#security
November 12, 2025 at 12:06 PM
November 12, 2025 at 11:33 AM
[Backport release-25.05] sudo-rs: 0.2.8 -> 0.2.10

https://github.com/NixOS/nixpkgs/pull/460775

#security
November 11, 2025 at 10:35 PM
python3Packages.brotli: 1.1.0 -> 1.2.0

https://github.com/NixOS/nixpkgs/pull/459351

#security
November 11, 2025 at 10:03 PM
November 11, 2025 at 8:35 PM
Firefox: 144.0.2 -> 145.0; 140.4.0esr -> 1405.0esr

https://github.com/NixOS/nixpkgs/pull/460551

#security
November 11, 2025 at 4:39 PM