8
I Use This!
Very High Activity
Analyzed 1 day ago. based on code collected 3 days ago.
 

Security

Vulnerabilities per Version

Learn more about BDSAs
 
 

Major Versions

1yr
3yr
5yr
10yr
All
click and drag to zoom
 
 
Security Vulnerabilities for Version:
Severities:
Type
Identifier Related Record Severity Date Published Description Versions Affected
BDSA-2025-5790 Low Jul 01, 2025 Nix, Lix, and Guix are vulnerable to unauthorized actions or data manipulation due to the use of temporary build directories in a world-readable and wo more...
BDSA-2025-5789 Low Jul 01, 2025 Nix, Lix, and Guix are vulnerable to improper permission handling due to a failure in setting permissions when a derivation build fails. This could all more...
BDSA-2025-5788 Medium Jul 01, 2025 Nix, Lix, and Guix are vulnerable to a race condition due to improper handling of file ownership changes during package builds. This could allow an att more...
BDSA-2025-5769 Low Jun 30, 2025 The Nix, Lix, and Guix package managers allow a bypass of build isolation in which a user can elevate their privileges to the build user account (e.g., more...
BDSA-2025-5764 Low Jun 30, 2025 A race condition in the Nix, Lix, and Guix package managers allows the removal of content from arbitrary folders. This affects Nix before 2.24.15, 2.26 more...
BDSA-2024-8838 High Dec 06, 2024 GNU Guix is vulnerable to privilege escalation due to improper handling of file metadata in the guix-daemon component. This could allow an attacker to more...