IRC logs for #aegir, 2019-10-28 (GMT)

2019-10-27
2019-10-29
TimeNickMessage
[19:13:33]* Shwele has joined #aegir
[19:35:49]* Shwele has quit (Quit: Leaving)
[23:00:05]* shaneonabike has joined #aegir
[23:01:22]<bgm[m]>https://github.com/neex/phuip-fpizdam - Aegir config does not seem vulnerable to this? but if you're running PHP < 7.2, I would still recommend upgrading PHP. On Debian/Ubuntu, the Ondrej repos do not seem to have received upgrades for PHP < 7.2 (which are unsupported anyway). No idea for debian-oldstable.
[23:41:25]<shaneonabike>bgm[m]: yeah I saw that with nextcloud updates... and was wondering what if anything is an issue
[23:43:05]* bgm has quit (Quit: leaving)
[00:32:24]<memtkmcc[m]>bgm: Nope, we are not affected, none of the first four preconditions apply to our Nginx configuration, which is very strict by design.
[00:32:51]<shaneonabike>horray!
[00:32:58]<shaneonabike>whoos hooray
[00:40:31]<memtkmcc[m]>That said, the exploit author must know Polish too well to put two vulgarisms in the short exploit's name..
[02:38:35]* theMusician has joined #aegir
[04:59:15]* theMusician has quit (Ping timeout: 240 seconds)
[05:06:58]* theMusician has joined #aegir
[05:55:29]* theMusician has quit (Quit: theMusician)
[06:23:19]* shaneonabike has left #aegir ()
[06:49:01]* theMusician has joined #aegir
[06:49:01]* theMusician has quit (Client Quit)
[06:49:23]* theMusician has joined #aegir
[08:39:32]<colan[m]>Somebody just updated the official config, which is great. I've had to do that once or twice. https://github.com/nginxinc/nginx-wiki/commit/f4265ea0fac8987740d9d08e5b...
[10:33:05]* theMusician has quit (Quit: theMusician)