Release 2025_047 (2025-12-15)¶
Impact¶
25.05¶
Machines will reboot to activate the changed kernel.
25.11¶
Machines will reboot to activate the changed kernel.
NixOS 25.05 platform¶
nixos/mail: correct dns.zone file with a non-default dkimSelector (PL-134262)
devhost: start VMs only after network setup ran (PL-134208)
installer: ignore failures when setting IPMI usernames
Pull upstream NixOS changes, security fixes, and package updates:
cacert: 3.115 -> 3.117
chromedriver: 142.0.7444.175 -> 143.0.7499.40
chromium: 142.0.7444.175 -> 143.0.7499.40
github-runner: 2.329.0 -> 2.330.0
go: 1.24.9 -> 1.24.10
jdk: 21.0.9+8 -> 21.0.9+10
jre: 21.0.9+8 -> 21.0.9+10
keycloak: 26.4.5 -> 26.4.7
linuxKernelStable: 6.12.59 -> 6.12.60
linuxKernelVerify: 6.12.59 -> 6.12.60
nginxMainline: 1.29.2 -> 1.29.3
nodejs_20: 20.19.5 -> 20.19.6
nspr: 4.37 -> 4.38
openjdk: 21.0.9+8 -> 21.0.9+10
NixOS 25.11 platform¶
s3users: eliminate “–gen-secret” invocation. This further reduces failure potential in our internal S3 user handling (PL-133656)
nixos/mail: correct dns.zone file with a non-default dkimSelector (PL-134262)
devhost: start VMs only after network setup ran (PL-134208)
installer: ignore failures when setting IPMI usernames
KVM hosts: fix a regression in maintenance handling (PL-134247) fc.qemu accidentally scrapped return codes set via sys.exit and replaced them with a 0, rendering maintenance guards ineffective.
Has been released as a hotfix to affected hosts ahead of schedule.mail: fix roundcube with STARTTLS deprecation (PL-134260)
Roundcube instances on 25.11 had problems with connecting to the mail server. This change fixes this.
Pull upstream NixOS changes, security fixes, and package updates:
chromedriver: 142.0.7444.175 -> 143.0.7499.40
chromium: 142.0.7444.175 -> 143.0.7499.40
element-web: 1.12.3 -> 1.12.6
github-runner: 2.329.0 -> 2.330.0
keycloak: 26.4.5 -> 26.4.7
linuxKernelStable: 6.12.59 -> 6.12.60
linuxKernelVerify: 6.12.59 -> 6.12.60
nginxMainline: 1.29.2 -> 1.29.3
nodejs_20: 20.19.5 -> 20.19.6
promtail: 3.5.8 -> 3.6.2
uv: 0.9.13 -> 0.9.15
Detailed Changes¶
NixOS 25.05: platform code, nixpkgs/upstream changes, metadata, channel url
NixOS 25.11: platform code, nixpkgs/upstream changes, metadata, channel url