| Type | URI |
|---|---|
| cve@mitre.org | https://discourse.nixos.org/t/security-advisory-privilege-escalations-in-nix-lix-and-guix/66017 |
| cve@mitre.org | https://guix.gnu.org/en/blog/2025/privilege-escalation-vulnerabilities-2025/ |
| cve@mitre.org | https://labs.snyk.io |
| cve@mitre.org | https://lix.systems/blog/2025-06-24-lix-cves/ |
| cve@mitre.org | https://security-tracker.debian.org/tracker/CVE-2025-52991 |
| cve@mitre.org | https://security.snyk.io/vuln/?search=CVE-2025-52991 |
| CPE URI | Source package | Min version | Max version |
|---|---|---|---|
|
nix | >= 0 | < 2.24.15 |
|
nix | >= 2.25.0 | < 2.26.4 |
|
nix | >= 2.27.0 | < 2.28.4 |
|
nix | >= 2.29.0 | < 2.29.1 |
| Source package | Branch | Version | Maintainer | Status |
|---|---|---|---|---|
| nix | edge-community | 2.23.3-r2 | Hoang Nguyen <folliekazetani@protonmail.com> | possibly vulnerable |
| nix | edge-community | 2.24.12-r0 | Hoang Nguyen <folliekazetani@protonmail.com> | possibly vulnerable |
| nix | edge-community | 2.24.12-r1 | Hoang Nguyen <folliekazetani@protonmail.com> | possibly vulnerable |
| nix | edge-community | 2.26.3-r0 | Hoang Nguyen <folliekazetani@protonmail.com> | possibly vulnerable |
| nix | edge-community | 2.28.2-r0 | Hoang Nguyen <folliekazetani@protonmail.com> | possibly vulnerable |
| nix | edge-community | 2.28.3-r0 | Hoang Nguyen <folliekazetani@protonmail.com> | possibly vulnerable |
| nix | edge-community | 2.28.3-r1 | Hoang Nguyen <folliekazetani@protonmail.com> | possibly vulnerable |
| nix | edge-community | 2.28.3-r2 | Hoang Nguyen <folliekazetani@protonmail.com> | possibly vulnerable |
| nix | edge-community | 2.28.3-r3 | Hoang Nguyen <folliekazetani@protonmail.com> | possibly vulnerable |
| nix | 3.22-community | 2.23.3-r2 | Hoang Nguyen <folliekazetani@protonmail.com> | possibly vulnerable |
| nix | 3.22-community | 2.28.3-r1 | Hoang Nguyen <folliekazetani@protonmail.com> | possibly vulnerable |