CVE-2025-59378
- EPSS 0.02%
- Published 15.09.2025 00:00:00
- Last modified 15.09.2025 15:21:42
In guix-daemon in GNU Guix before 1618ca7, a content-addressed-mirrors file can be written to create a setuid program that allows a regular user to gain the privileges of the build user that runs it (even after the build has ended).
CVE-2025-46415
- EPSS 0.02%
- Published 27.06.2025 00:00:00
- Last modified 30.06.2025 18:38:48
A race condition in the Nix, Lix, and Guix package managers allows the removal of content from arbitrary folders. This affects Nix before 2.24.15, 2.26.4, 2.28.4, and 2.29.1; Lix before 2.91.2, 2.92.2, and 2.93.1; and Guix before 1.4.0-38.0e79d5b.
CVE-2025-52991
- EPSS 0.02%
- Published 27.06.2025 00:00:00
- Last modified 30.06.2025 18:38:48
The Nix, Lix, and Guix package managers default to using temporary build directories in a world-readable and world-writable location. This allows standard users to deceive the package manager into using directories with pre-existing content, potentia...
CVE-2025-52992
- EPSS 0.01%
- Published 27.06.2025 00:00:00
- Last modified 30.06.2025 18:38:48
The Nix, Lix, and Guix package managers fail to properly set permissions when a derivation build fails. This may allow arbitrary processes to modify the content of a store outside of the build sandbox. This affects Nix before 2.24.15, 2.26.4, 2.28.4,...
CVE-2025-52993
- EPSS 0.02%
- Published 27.06.2025 00:00:00
- Last modified 30.06.2025 18:38:48
A race condition in the Nix, Lix, and Guix package managers enables changing the ownership of arbitrary files to the UID and GID of the build user (e.g., nixbld* or guixbuild*). This affects Nix before 2.24.15, 2.26.4, 2.28.4, and 2.29.1; Lix before ...
CVE-2024-52867
- EPSS 0.02%
- Published 17.11.2024 03:15:04
- Last modified 21.11.2024 09:46:35
guix-daemon in GNU Guix before 5ab3c4c allows privilege escalation because build outputs are accessible by local users before file metadata concerns (e.g., for setuid and setgid programs) are properly addressed. The vulnerability can be remediated wi...
CVE-2021-27851
- EPSS 0.04%
- Published 26.04.2021 16:15:07
- Last modified 21.11.2024 05:58:38
A security vulnerability that can lead to local privilege escalation has been found in ’guix-daemon’. It affects multi-user setups in which ’guix-daemon’ runs locally. The attack consists in having an unprivileged user spawn a build process, for inst...
CVE-2019-18192
- EPSS 0.11%
- Published 17.10.2019 20:15:12
- Last modified 21.11.2024 04:32:47
GNU Guix 1.0.1 allows local users to gain access to an arbitrary user's account because the parent directory of the user-profile directories is world writable, a similar issue to CVE-2019-17365.