We will be publishing a full write-up soon, as well as patching our build process to protect future builds from this vulnerability. 2/2
pump.strugee.net/alex/note/r…
Early results indicate that pump.io Docker images have not been compromised due to Alpine Linux remote code execution vulnerabilities (justi.cz/security/2018/09/13…). 1/2
FYI to anyone running from pump.io git master: LOTS of semver-major changes going in recently. I'll have the changelog updated today probably but in the meantime (and tbh in general) please be careful when upgrading
pump.strugee.net/alex/note/G…
We're having a pump.io meeting tomorrow! Pop into #pump.io on Freenode IRC (or our Jabber/XMPP bridge at pump.io@conference.movim.eu, which mirrors IRC) at 20:00 UTC to participate - everyone is welcome!
Agenda (editable) is here: github.com/pump-io/pump.io/w…