about summary refs log tree commit diff
diff options
context:
space:
mode:
authorNick Cao <nickcao@nichi.co>2024-06-08 09:39:36 -0400
committerNick Cao <nickcao@nichi.co>2024-06-08 09:39:36 -0400
commitc07f1e94c675ac2c2b7223e6476e80a085f103a4 (patch)
tree03a42dbff9928c24f2b75d487b3c72d52ee1d1fc
parent2f967ecb035a014ebf6fa4ffc1a4a0376c745e98 (diff)
yandex-browser: mark knownVulnerabilities
-rw-r--r--pkgs/applications/networking/browsers/yandex-browser/default.nix7
1 files changed, 7 insertions, 0 deletions
diff --git a/pkgs/applications/networking/browsers/yandex-browser/default.nix b/pkgs/applications/networking/browsers/yandex-browser/default.nix
index 5550cc55ceaa6..d4fa55f266763 100644
--- a/pkgs/applications/networking/browsers/yandex-browser/default.nix
+++ b/pkgs/applications/networking/browsers/yandex-browser/default.nix
@@ -165,5 +165,12 @@ in stdenv.mkDerivation rec {
     sourceProvenance = with sourceTypes; [ binaryNativeCode ];
     maintainers = with maintainers; [ dan4ik605743 ionutnechita ];
     platforms = [ "x86_64-linux" ];
+
+    knownVulnerabilities = [
+      ''
+      Trusts a Russian government issued CA certificate for some websites.
+      See https://habr.com/en/company/yandex/blog/655185/ (Russian) for details.
+      ''
+    ];
   };
 }