Skip to content

unzip: vendor CVE-2021-2417.patch#490226

Merged
vcunat merged 1 commit intoNixOS:stagingfrom
veprbl:pr/unzip_vendor_patch
Feb 15, 2026
Merged

unzip: vendor CVE-2021-2417.patch#490226
vcunat merged 1 commit intoNixOS:stagingfrom
veprbl:pr/unzip_vendor_patch

Conversation

@veprbl
Copy link
Member

@veprbl veprbl commented Feb 13, 2026

Patch was obtained from the official Hyra binary cache

nix-store -r /nix/store/f3pxcmnazzmxsmc5b6rbbnkh8nzlx3bl-CVE-2021-4217.patch

Things done

As of now, the patch download is not available:

503 Service Unavailable
No server is available to handle this request.

  • Built on platform:
    • x86_64-linux
    • aarch64-linux
    • x86_64-darwin
    • aarch64-darwin
  • Tested, as applicable:
  • Ran nixpkgs-review on this PR. See nixpkgs-review usage.
  • Tested basic functionality of all binary files, usually in ./result/bin/.
  • Nixpkgs Release Notes
    • Package update: when the change is major or breaking.
  • NixOS Release Notes
    • Module addition: when adding a new NixOS module.
    • Module update: when the change is significant.
  • Fits CONTRIBUTING.md, pkgs/README.md, maintainers/README.md and other READMEs.

github-actions[bot]

This comment was marked as outdated.

@nixpkgs-ci nixpkgs-ci bot added the 2.status: merge-bot eligible This PR can be merged by commenting "@NixOS/nixpkgs-merge-bot merge". label Feb 13, 2026
@veprbl veprbl force-pushed the pr/unzip_vendor_patch branch from 1ed29a3 to 10f2dc8 Compare February 13, 2026 21:33
@veprbl veprbl changed the base branch from master to staging February 13, 2026 21:33
@nixpkgs-ci nixpkgs-ci bot closed this Feb 13, 2026
@nixpkgs-ci nixpkgs-ci bot reopened this Feb 13, 2026
Patch was obtained from the official Hyra binary cache

nix-store -r /nix/store/f3pxcmnazzmxsmc5b6rbbnkh8nzlx3bl-CVE-2021-4217.patch
@veprbl veprbl force-pushed the pr/unzip_vendor_patch branch from 10f2dc8 to 1220da2 Compare February 13, 2026 21:34
@nixpkgs-ci nixpkgs-ci bot requested a review from RossComputerGuy February 13, 2026 21:41
@nixpkgs-ci nixpkgs-ci bot added 10.rebuild-linux: 501+ This PR causes many rebuilds on Linux and should normally target the staging branches. 10.rebuild-darwin: 501+ This PR causes many rebuilds on Darwin and should normally target the staging branches. 10.rebuild-darwin-stdenv This PR causes stdenv to rebuild on Darwin and must target a staging branch. 10.rebuild-darwin: 5001+ This PR causes many rebuilds on Darwin and must target the staging branches. 10.rebuild-linux: 5001+ This PR causes many rebuilds on Linux and must target the staging branches. labels Feb 13, 2026
Copy link
Member

@RossComputerGuy RossComputerGuy left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Diff LGTM, can't build staging myself due to #489675 blocking stdenv from being built on aarch64-linux.

@nixpkgs-ci nixpkgs-ci bot added 12.approvals: 1 This PR was reviewed and approved by one person. 12.approved-by: package-maintainer This PR was reviewed and approved by a maintainer listed in any of the changed packages. labels Feb 14, 2026
@vcunat vcunat added the backport staging-25.11 Backport PR automatically label Feb 14, 2026
@vcunat vcunat added this pull request to the merge queue Feb 15, 2026
Merged via the queue into NixOS:staging with commit ee2b06e Feb 15, 2026
37 of 39 checks passed
@nixpkgs-ci
Copy link
Contributor

nixpkgs-ci bot commented Feb 15, 2026

Successfully created backport PR for staging-25.11:

@github-actions github-actions bot added the 8.has: port to stable This PR already has a backport to the stable release. label Feb 15, 2026
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

2.status: merge-bot eligible This PR can be merged by commenting "@NixOS/nixpkgs-merge-bot merge". 8.has: port to stable This PR already has a backport to the stable release. 10.rebuild-darwin: 501+ This PR causes many rebuilds on Darwin and should normally target the staging branches. 10.rebuild-darwin: 5001+ This PR causes many rebuilds on Darwin and must target the staging branches. 10.rebuild-darwin-stdenv This PR causes stdenv to rebuild on Darwin and must target a staging branch. 10.rebuild-linux: 501+ This PR causes many rebuilds on Linux and should normally target the staging branches. 10.rebuild-linux: 5001+ This PR causes many rebuilds on Linux and must target the staging branches. 12.approvals: 1 This PR was reviewed and approved by one person. 12.approved-by: package-maintainer This PR was reviewed and approved by a maintainer listed in any of the changed packages. backport staging-25.11 Backport PR automatically

Projects

None yet

Development

Successfully merging this pull request may close these issues.

3 participants