New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
imagemagick: 6.9.9-34 -> 6.9.10-68, fixing numerous CVEs #71099
Conversation
fixing numerous CVEs
@risicle Thanks for the PR! Bumping from 6.9.9 to 6.9.10 shouldn't be a problem, also when backporting to 19.09. Did you check how hard it'll be to upgrade nixpkgs master to imagemagick 7.x (in a followup PR)? |
backported to 19.09 in 29d40ef. |
I didn't get on to that - my machine spent most of Sunday building less than a quarter of the 6.x reverse deps. |
Can you publish the commit somewhere without running nix-review? I could trigger that on some more powerful machines.
|
I mean I didn't even look at 7.x, I'm already spinning ~6 open CVE PRs as it is. |
All good :-) Thanks a lot 👍 |
imagemagick: 6.9.9-34 -> 6.9.10-68, fixing numerous CVEs (cherry picked from commit 2a25463)
This update broke the tests of the Would it be possible to have a new update and a backport for 19.09? |
Submit the PR :) |
Motivation for this change
To get an idea of how numerous see #70099
I haven't done a full
nix-review
yet as I don't have the resources, but everything I've rebuilt so far has been ok...Things done
sandbox
innix.conf
on non-NixOS)nix-shell -p nix-review --run "nix-review wip"
./result/bin/
)nix path-info -S
before and after)Notify maintainers
cc @