Dismissed suggestions Untriaged suggestions Draft issues Published issues Automatically generated suggestions Create Draft to queue a suggestion for refinement. Dismiss to remove a suggestion from the queue. CVE-2024-12088 6.5 MEDIUM CVSS version: 3.1 Attack vector (AV): NETWORK Attack complexity (AC): LOW Privileges required (PR): NONE User interaction (UI): REQUIRED Scope (S): UNCHANGED Confidentiality impact (C): NONE Integrity impact (I): HIGH Availability impact (A): NONE created 2 months, 2 weeks ago Rsync: --safe-links option bypass leads to path traversal A flaw was found in rsync. When using the `--safe-links` option, rsync fails to properly verify if a symbolic link destination contains another symbolic link within it. This results in a path traversal vulnerability, which may lead to arbitrary file write outside the desired directory. rhcos rsync pkgs.rsync Fast incremental file transfer utility nixos-24.05 3.3.0 nixpkgs-24.05-darwin 3.3.0 nixos-24.05-small 3.3.0 nixos-24.11 3.3.0 nixpkgs-24.11-darwin 3.3.0 nixos-24.11-small 3.3.0 nixos-unstable 3.3.0 nixos-unstable-small 3.3.0 nixpkgs-unstable 3.3.0 pkgs.grsync Synchronize folders, files and make backups nixos-24.05 1.3.1 nixpkgs-24.05-darwin 1.3.1 nixos-24.05-small 1.3.1 nixos-24.11 1.3.1 nixpkgs-24.11-darwin 1.3.1 nixos-24.11-small 1.3.1 nixos-unstable 1.3.1 nixos-unstable-small 1.3.1 nixpkgs-unstable 1.3.1 pkgs.rrsync Helper to run rsync-only environments from ssh-logins nixos-24.05 3.3.0 nixpkgs-24.05-darwin 3.3.0 nixos-24.05-small 3.3.0 nixos-24.11 3.3.0 nixpkgs-24.11-darwin 3.3.0 nixos-24.11-small 3.3.0 nixos-unstable 3.3.0 nixos-unstable-small 3.3.0 nixpkgs-unstable 3.3.0 pkgs.librsync Implementation of the rsync remote-delta algorithm nixos-24.05 2.3.4 nixpkgs-24.05-darwin 2.3.4 nixos-24.05-small 2.3.4 nixos-24.11 2.3.4 nixpkgs-24.11-darwin 2.3.4 nixos-24.11-small 2.3.4 nixos-unstable 2.3.4 nixos-unstable-small 2.3.4 nixpkgs-unstable 2.3.4 pkgs.diskrsync Rsync for block devices and disk images nixos-24.05 1.3.0 nixpkgs-24.05-darwin 1.3.0 nixos-24.05-small 1.3.0 nixos-24.11 1.3.0 nixpkgs-24.11-darwin 1.3.0 nixos-24.11-small 1.3.0 nixos-unstable 1.3.0 nixos-unstable-small 1.3.0 nixpkgs-unstable 1.3.0 pkgs.openrsync BSD-licensed implementation of rsync nixos-24.05 2022-05-08 nixpkgs-24.05-darwin 2022-05-08 nixos-24.05-small 2022-05-08 nixos-24.11 2022-05-08 nixpkgs-24.11-darwin 2022-05-08 nixos-24.11-small 2022-05-08 nixos-unstable 2022-05-08 nixos-unstable-small 2022-05-08 nixpkgs-unstable 2022-05-08 pkgs.vdirsyncer Synchronize calendars and contacts nixos-24.05 0.19.2 nixpkgs-24.05-darwin 0.19.2 nixos-24.05-small 0.19.2 nixos-24.11 0.19.3 nixpkgs-24.11-darwin 0.19.3 nixos-24.11-small 0.19.3 nixos-unstable 0.19.3 nixos-unstable-small 0.19.3 nixpkgs-unstable 0.19.3 pkgs.emacsPackages.rsync-mode nixos-24.05 20210911.0 nixpkgs-24.05-darwin 20210911.0 nixos-24.05-small 20210911.0 nixos-24.11 20210911.0 nixpkgs-24.11-darwin 20210911.0 nixos-24.11-small 20210911.0 nixos-unstable 20210911.0 nixos-unstable-small 20210911.0 nixpkgs-unstable 20210911.0 pkgs.emacsPackages.dired-rsync nixos-24.05 20230822.1350 nixpkgs-24.05-darwin 20230822.1350 nixos-24.05-small 20230822.1350 nixos-24.11 20230822.1350 nixpkgs-24.11-darwin 20230822.1350 nixos-24.11-small 20230822.1350 nixos-unstable 20230822.1350 nixos-unstable-small 20230822.1350 nixpkgs-unstable 20230822.1350 pkgs.python311Packages.sysrsync Simple and safe system's rsync wrapper for Python nixos-24.11 1.1.1 nixpkgs-24.11-darwin 1.1.1 nixos-24.11-small 1.1.1 nixos-unstable 1.1.1 nixos-unstable-small 1.1.1 nixpkgs-unstable 1.1.1 pkgs.python312Packages.sysrsync Simple and safe system's rsync wrapper for Python nixos-24.11 1.1.1 nixpkgs-24.11-darwin 1.1.1 nixos-24.11-small 1.1.1 nixos-unstable 1.1.1 nixos-unstable-small 1.1.1 nixpkgs-unstable 1.1.1 pkgs.python311Packages.vdirsyncer Synchronize calendars and contacts nixos-24.05 0.19.2 nixpkgs-24.05-darwin 0.19.2 nixos-24.05-small 0.19.2 nixos-24.11 0.19.3 nixpkgs-24.11-darwin 0.19.3 nixos-24.11-small 0.19.3 nixos-unstable 0.19.3 nixos-unstable-small 0.19.3 nixpkgs-unstable 0.19.3 pkgs.python312Packages.vdirsyncer Synchronize calendars and contacts nixos-24.05 0.19.2 nixpkgs-24.05-darwin 0.19.2 nixos-24.05-small 0.19.2 nixos-24.11 0.19.3 nixpkgs-24.11-darwin 0.19.3 nixos-24.11-small 0.19.3 nixos-unstable 0.19.3 nixos-unstable-small 0.19.3 nixpkgs-unstable 0.19.3 pkgs.emacsPackages.dired-rsync-transient nixos-24.05 20230714.1459 nixpkgs-24.05-darwin 20230714.1459 nixos-24.05-small 20230714.1459 nixos-24.11 20230714.1459 nixpkgs-24.11-darwin 20230714.1459 nixos-24.11-small 20230714.1459 nixos-unstable 20230714.1459 nixos-unstable-small 20230714.1459 nixpkgs-unstable 20230714.1459 Notify package maintainers: 7 @ivan Ivan Kozik <ivan@ludios.org> @ehmry Emery Hemingway <ehmry@posteo.net> @kampfschlaefer Arnold Krille <arnold@arnoldarts.de> @kuznero Roman Kuznetsov <roman@kuznero.com> @jluttine Jaakko Luttinen <jaakko.luttinen@iki.fi> @fgaz Francesco Gazzetta <fgaz@fgaz.me> @veprbl Dmitry Kalinkin <veprbl@gmail.com> CVE-2024-12085 7.5 HIGH CVSS version: 3.1 Attack vector (AV): NETWORK Attack complexity (AC): LOW Privileges required (PR): NONE User interaction (UI): NONE Scope (S): UNCHANGED Confidentiality impact (C): HIGH Integrity impact (I): NONE Availability impact (A): NONE created 2 months, 2 weeks ago Rsync: info leak via uninitialized stack contents A flaw was found in the rsync daemon which could be triggered when rsync compares file checksums. This flaw allows an attacker to manipulate the checksum length (s2length) to cause a comparison between a checksum and uninitialized memory and leak one byte of uninitialized stack data at a time. rhcos rsync pkgs.rsync Fast incremental file transfer utility nixos-24.05 3.3.0 nixpkgs-24.05-darwin 3.3.0 nixos-24.05-small 3.3.0 nixos-24.11 3.3.0 nixpkgs-24.11-darwin 3.3.0 nixos-24.11-small 3.3.0 nixos-unstable 3.3.0 nixos-unstable-small 3.3.0 nixpkgs-unstable 3.3.0 pkgs.grsync Synchronize folders, files and make backups nixos-24.05 1.3.1 nixpkgs-24.05-darwin 1.3.1 nixos-24.05-small 1.3.1 nixos-24.11 1.3.1 nixpkgs-24.11-darwin 1.3.1 nixos-24.11-small 1.3.1 nixos-unstable 1.3.1 nixos-unstable-small 1.3.1 nixpkgs-unstable 1.3.1 pkgs.rrsync Helper to run rsync-only environments from ssh-logins nixos-24.05 3.3.0 nixpkgs-24.05-darwin 3.3.0 nixos-24.05-small 3.3.0 nixos-24.11 3.3.0 nixpkgs-24.11-darwin 3.3.0 nixos-24.11-small 3.3.0 nixos-unstable 3.3.0 nixos-unstable-small 3.3.0 nixpkgs-unstable 3.3.0 pkgs.librsync Implementation of the rsync remote-delta algorithm nixos-24.05 2.3.4 nixpkgs-24.05-darwin 2.3.4 nixos-24.05-small 2.3.4 nixos-24.11 2.3.4 nixpkgs-24.11-darwin 2.3.4 nixos-24.11-small 2.3.4 nixos-unstable 2.3.4 nixos-unstable-small 2.3.4 nixpkgs-unstable 2.3.4 pkgs.diskrsync Rsync for block devices and disk images nixos-24.05 1.3.0 nixpkgs-24.05-darwin 1.3.0 nixos-24.05-small 1.3.0 nixos-24.11 1.3.0 nixpkgs-24.11-darwin 1.3.0 nixos-24.11-small 1.3.0 nixos-unstable 1.3.0 nixos-unstable-small 1.3.0 nixpkgs-unstable 1.3.0 pkgs.openrsync BSD-licensed implementation of rsync nixos-24.05 2022-05-08 nixpkgs-24.05-darwin 2022-05-08 nixos-24.05-small 2022-05-08 nixos-24.11 2022-05-08 nixpkgs-24.11-darwin 2022-05-08 nixos-24.11-small 2022-05-08 nixos-unstable 2022-05-08 nixos-unstable-small 2022-05-08 nixpkgs-unstable 2022-05-08 pkgs.vdirsyncer Synchronize calendars and contacts nixos-24.05 0.19.2 nixpkgs-24.05-darwin 0.19.2 nixos-24.05-small 0.19.2 nixos-24.11 0.19.3 nixpkgs-24.11-darwin 0.19.3 nixos-24.11-small 0.19.3 nixos-unstable 0.19.3 nixos-unstable-small 0.19.3 nixpkgs-unstable 0.19.3 pkgs.emacsPackages.rsync-mode nixos-24.05 20210911.0 nixpkgs-24.05-darwin 20210911.0 nixos-24.05-small 20210911.0 nixos-24.11 20210911.0 nixpkgs-24.11-darwin 20210911.0 nixos-24.11-small 20210911.0 nixos-unstable 20210911.0 nixos-unstable-small 20210911.0 nixpkgs-unstable 20210911.0 pkgs.emacsPackages.dired-rsync nixos-24.05 20230822.1350 nixpkgs-24.05-darwin 20230822.1350 nixos-24.05-small 20230822.1350 nixos-24.11 20230822.1350 nixpkgs-24.11-darwin 20230822.1350 nixos-24.11-small 20230822.1350 nixos-unstable 20230822.1350 nixos-unstable-small 20230822.1350 nixpkgs-unstable 20230822.1350 pkgs.python311Packages.sysrsync Simple and safe system's rsync wrapper for Python nixos-24.11 1.1.1 nixpkgs-24.11-darwin 1.1.1 nixos-24.11-small 1.1.1 nixos-unstable 1.1.1 nixos-unstable-small 1.1.1 nixpkgs-unstable 1.1.1 pkgs.python312Packages.sysrsync Simple and safe system's rsync wrapper for Python nixos-24.11 1.1.1 nixpkgs-24.11-darwin 1.1.1 nixos-24.11-small 1.1.1 nixos-unstable 1.1.1 nixos-unstable-small 1.1.1 nixpkgs-unstable 1.1.1 pkgs.python311Packages.vdirsyncer Synchronize calendars and contacts nixos-24.05 0.19.2 nixpkgs-24.05-darwin 0.19.2 nixos-24.05-small 0.19.2 nixos-24.11 0.19.3 nixpkgs-24.11-darwin 0.19.3 nixos-24.11-small 0.19.3 nixos-unstable 0.19.3 nixos-unstable-small 0.19.3 nixpkgs-unstable 0.19.3 pkgs.python312Packages.vdirsyncer Synchronize calendars and contacts nixos-24.05 0.19.2 nixpkgs-24.05-darwin 0.19.2 nixos-24.05-small 0.19.2 nixos-24.11 0.19.3 nixpkgs-24.11-darwin 0.19.3 nixos-24.11-small 0.19.3 nixos-unstable 0.19.3 nixos-unstable-small 0.19.3 nixpkgs-unstable 0.19.3 pkgs.emacsPackages.dired-rsync-transient nixos-24.05 20230714.1459 nixpkgs-24.05-darwin 20230714.1459 nixos-24.05-small 20230714.1459 nixos-24.11 20230714.1459 nixpkgs-24.11-darwin 20230714.1459 nixos-24.11-small 20230714.1459 nixos-unstable 20230714.1459 nixos-unstable-small 20230714.1459 nixpkgs-unstable 20230714.1459 Notify package maintainers: 7 @ehmry Emery Hemingway <ehmry@posteo.net> @kampfschlaefer Arnold Krille <arnold@arnoldarts.de> @ivan Ivan Kozik <ivan@ludios.org> @kuznero Roman Kuznetsov <roman@kuznero.com> @jluttine Jaakko Luttinen <jaakko.luttinen@iki.fi> @fgaz Francesco Gazzetta <fgaz@fgaz.me> @veprbl Dmitry Kalinkin <veprbl@gmail.com> CVE-2023-25041 7.1 HIGH CVSS version: 3.1 Attack vector (AV): NETWORK Attack complexity (AC): LOW Privileges required (PR): NONE User interaction (UI): REQUIRED Scope (S): CHANGED Confidentiality impact (C): LOW Integrity impact (I): LOW Availability impact (A): LOW created 2 months, 3 weeks ago WordPress Monolit Theme <= 2.0.6 is vulnerable to Cross Site Scripting (XSS) Unauth. Reflected Cross-Site Scripting (XSS) vulnerability in Cththemes Monolit theme <= 2.0.6 versions. monolit =<2.0.6 pkgs.monolith Bundle any web page into a single HTML file nixos-24.05 2.8.1 nixpkgs-24.05-darwin 2.8.1 nixos-24.05-small 2.8.1 nixos-24.11 2.8.1 nixpkgs-24.11-darwin 2.8.1 nixos-24.11-small 2.8.1 nixos-unstable 2.8.3 nixos-unstable-small 2.8.3 nixpkgs-unstable 2.8.3 Notify package maintainers: 1 @Br1ght0ne Oleksii Filonenko <brightone@protonmail.com> CVE-2022-47613 5.9 MEDIUM CVSS version: 3.1 Attack vector (AV): NETWORK Attack complexity (AC): LOW Privileges required (PR): HIGH User interaction (UI): REQUIRED Scope (S): CHANGED Confidentiality impact (C): LOW Integrity impact (I): LOW Availability impact (A): LOW created 2 months, 3 weeks ago WordPress AI ChatBot Plugin <= 4.3.0 is vulnerable to Cross Site Scripting (XSS) Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in QuantumCloud AI ChatBot plugin <= 4.3.0 versions. chatbot =<4.3.0 pkgs.gnomeExtensions.penguin-ai-chatbot A GNOME Shell extension that uses openrouter.ai services - a platform/marketplace that offers APIs to talk to LLMs. Some of these APIs are free to use, including the one used by default in the extension: Llama 3.1 8B. nixos-24.11 11 nixpkgs-24.11-darwin 11 nixos-24.11-small 11 nixos-unstable 11 nixos-unstable-small 11 nixpkgs-unstable 11 Notify package maintainers: 1 @honnip Jung seungwoo <me@honnip.page> CVE-2023-5156 7.5 HIGH CVSS version: 3.1 Attack vector (AV): NETWORK Attack complexity (AC): LOW Privileges required (PR): NONE User interaction (UI): NONE Scope (S): UNCHANGED Confidentiality impact (C): NONE Integrity impact (I): NONE Availability impact (A): HIGH created 2 months, 3 weeks ago Glibc: dos due to memory leak in getaddrinfo.c A flaw was found in the GNU C Library. A recent fix for CVE-2023-4806 introduced the potential for a memory leak, which may result in an application crash. glibc compat-glibc pkgs.glibc GNU C Library nixos-24.05 2.39-52 nixpkgs-24.05-darwin 2.39-52 nixos-24.05-small 2.39-52 nixos-24.11 2.40-36 nixpkgs-24.11-darwin 2.40-36 nixos-24.11-small 2.40-36 nixos-unstable 2.40-36 nixos-unstable-small 2.40-36 nixpkgs-unstable 2.40-36 pkgs.iconv GNU C Library nixos-24.05 2.39-52 nixpkgs-24.05-darwin 2.39-52 nixos-24.05-small 2.39-52 nixos-24.11 2.40-36 nixpkgs-24.11-darwin 2.40-36 nixos-24.11-small 2.40-36 nixos-unstable 2.40-36 nixos-unstable-small 2.40-36 nixpkgs-unstable 2.40-36 pkgs.getent nixos-24.05 2.39-52 nixpkgs-24.05-darwin 2.39-52 nixos-24.05-small 2.39-52 nixos-24.11 2.40-36 nixpkgs-24.11-darwin 2.40-36 nixos-24.11-small 2.40-36 nixos-unstable 2.40-36 nixos-unstable-small 2.40-36 nixpkgs-unstable 2.40-36 pkgs.locale nixos-24.05 2.39-52 nixpkgs-24.05-darwin 2.39-52 nixos-24.05-small 2.39-52 nixos-24.11 2.40-36 nixpkgs-24.11-darwin 2.40-36 nixos-24.11-small 2.40-36 nixos-unstable 2.40-36 nixos-unstable-small 2.40-36 nixpkgs-unstable 2.40-36 pkgs.mtrace Perl script used to interpret and provide human readable output of the trace log contained in the file mtracedata, whose contents were produced by mtrace(3) nixos-24.05 2.39-52 nixpkgs-24.05-darwin 2.39-52 nixos-24.05-small 2.39-52 nixos-24.11 2.40-36 nixpkgs-24.11-darwin 2.40-36 nixos-24.11-small 2.40-36 nixos-unstable 2.40-36 nixos-unstable-small 2.40-36 nixpkgs-unstable 2.40-36 pkgs.getconf nixos-24.05 2.39-52 nixpkgs-24.05-darwin 2.39-52 nixos-24.05-small 2.39-52 nixos-24.11 2.40-36 nixpkgs-24.11-darwin 2.40-36 nixos-24.11-small 2.40-36 nixos-unstable 2.40-36 nixos-unstable-small 2.40-36 nixpkgs-unstable 2.40-36 pkgs.libiconv nixos-24.05 2.39 nixpkgs-24.05-darwin 2.39 nixos-24.05-small 2.39 nixos-24.11 2.40 nixpkgs-24.11-darwin 2.40 nixos-24.11-small 2.40 nixos-unstable 2.40 nixos-unstable-small 2.40 nixpkgs-unstable 2.40 pkgs.glibcInfo GNU Info manual of the GNU C Library nixos-24.05 2.39-52 nixpkgs-24.05-darwin 2.39-52 nixos-24.05-small 2.39-52 nixos-24.11 2.40-36 nixpkgs-24.11-darwin 2.40-36 nixos-24.11-small 2.40-36 nixos-unstable 2.40-36 nixos-unstable-small 2.40-36 nixpkgs-unstable 2.40-36 pkgs.glibc_multi nixos-24.05 2.39-52 nixpkgs-24.05-darwin 2.39-52 nixos-24.05-small 2.39-52 nixos-24.11 2.40-36 nixpkgs-24.11-darwin 2.40-36 nixos-24.11-small 2.40-36 nixos-unstable 2.40-36 nixos-unstable-small 2.40-36 nixpkgs-unstable 2.40-36 pkgs.glibcLocales Locale information for the GNU C Library nixos-24.05 2.39-52 nixpkgs-24.05-darwin 2.39-52 nixos-24.05-small 2.39-52 nixos-24.11 2.40-36 nixpkgs-24.11-darwin 2.40-36 nixos-24.11-small 2.40-36 nixos-unstable 2.40-36 nixos-unstable-small 2.40-36 nixpkgs-unstable 2.40-36 pkgs.glibc_memusage GNU C Library nixos-24.05 2.39-52 nixpkgs-24.05-darwin 2.39-52 nixos-24.05-small 2.39-52 nixos-24.11 2.40-36 nixpkgs-24.11-darwin 2.40-36 nixos-24.11-small 2.40-36 nixos-unstable 2.40-36 nixos-unstable-small 2.40-36 nixpkgs-unstable 2.40-36 pkgs.glibcLocalesUtf8 Locale information for the GNU C Library nixos-24.05 2.39-52 nixpkgs-24.05-darwin 2.39-52 nixos-24.05-small 2.39-52 nixos-24.11 2.40-36 nixpkgs-24.11-darwin 2.40-36 nixos-24.11-small 2.40-36 nixos-unstable 2.40-36 nixos-unstable-small 2.40-36 nixpkgs-unstable 2.40-36 pkgs.unixtools.getent nixos-24.05 2.39-52 nixpkgs-24.05-darwin 2.39-52 nixos-24.05-small 2.39-52 nixos-24.11 2.40-36 nixpkgs-24.11-darwin 2.40-36 nixos-24.11-small 2.40-36 nixos-unstable 2.40-36 nixos-unstable-small 2.40-36 nixpkgs-unstable 2.40-36 pkgs.unixtools.locale nixos-24.05 2.39-52 nixpkgs-24.05-darwin 2.39-52 nixos-24.05-small 2.39-52 nixos-24.11 2.40-36 nixpkgs-24.11-darwin 2.40-36 nixos-24.11-small 2.40-36 nixos-unstable 2.40-36 nixos-unstable-small 2.40-36 nixpkgs-unstable 2.40-36 pkgs.unixtools.getconf nixos-24.05 2.39-52 nixpkgs-24.05-darwin 2.39-52 nixos-24.05-small 2.39-52 nixos-24.11 2.40-36 nixpkgs-24.11-darwin 2.40-36 nixos-24.11-small 2.40-36 nixos-unstable 2.40-36 nixos-unstable-small 2.40-36 nixpkgs-unstable 2.40-36 Notify package maintainers: 2 @Ma27 Maximilian Bosch <maximilian@mbosch.me> @connorbaker Connor Baker <connor.baker@tweag.io> CVE-2023-1907 8.0 HIGH CVSS version: 3.1 Attack vector (AV): NETWORK Attack complexity (AC): HIGH Privileges required (PR): LOW User interaction (UI): REQUIRED Scope (S): CHANGED Confidentiality impact (C): HIGH Integrity impact (I): HIGH Availability impact (A): HIGH created 2 months, 3 weeks ago Pgadmin: users authenticated simultaneously via ldap may be attached to the wrong session A vulnerability was found in pgadmin. Users logging into pgAdmin running in server mode using LDAP authentication may be attached to another user's session if multiple connection attempts occur simultaneously. pgadmin <7.0 pkgs.pgadmin4 Administration and development platform for PostgreSQL nixos-24.05 8.6 nixpkgs-24.05-darwin 8.6 nixos-24.05-small 8.6 nixos-24.11 8.12 nixpkgs-24.11-darwin 8.12 nixos-24.11-small 8.12 nixos-unstable 8.12 nixos-unstable-small 8.12 nixpkgs-unstable 8.12 pkgs.pgadmin4-desktopmode Administration and development platform for PostgreSQL. Desktop Mode nixos-24.05 8.6 nixpkgs-24.05-darwin 8.6 nixos-24.05-small 8.6 nixos-24.11 8.12 nixpkgs-24.11-darwin 8.12 nixos-24.11-small 8.12 nixos-unstable 8.12 nixos-unstable-small 8.12 nixpkgs-unstable 8.12 Notify package maintainers: 1 @gador Florian Brandes <florian.brandes@posteo.de> CVE-2024-56826 5.6 MEDIUM CVSS version: 3.1 Attack vector (AV): LOCAL Attack complexity (AC): LOW Privileges required (PR): LOW User interaction (UI): REQUIRED Scope (S): UNCHANGED Confidentiality impact (C): LOW Integrity impact (I): NONE Availability impact (A): HIGH created 2 months, 3 weeks ago Openjpeg: heap buffer overflow in bin/common/color.c A flaw was found in the OpenJPEG project. A heap buffer overflow condition may be triggered when certain options are specified while using the opj_decompress utility. This can lead to an application crash or other undefined behavior. openjpeg openjpeg2 gimp:flatpak/openjpeg2 pkgs.openjpeg Open-source JPEG 2000 codec written in C language nixos-24.05 2.5.2 nixpkgs-24.05-darwin 2.5.2 nixos-24.05-small 2.5.2 nixos-24.11 2.5.2 nixpkgs-24.11-darwin 2.5.2 nixos-24.11-small 2.5.2 nixos-unstable 2.5.2 nixos-unstable-small 2.5.2 nixpkgs-unstable 2.5.2 pkgs.python311Packages.pylibjpeg-openjpeg A J2K and JP2 plugin for pylibjpeg nixos-24.11 2.3.0 nixpkgs-24.11-darwin 2.3.0 nixos-24.11-small 2.3.0 nixos-unstable 2.3.0 nixos-unstable-small 2.3.0 nixpkgs-unstable 2.3.0 pkgs.python312Packages.pylibjpeg-openjpeg A J2K and JP2 plugin for pylibjpeg nixos-24.11 2.3.0 nixpkgs-24.11-darwin 2.3.0 nixos-24.11-small 2.3.0 nixos-unstable 2.3.0 nixos-unstable-small 2.3.0 nixpkgs-unstable 2.3.0 Notify package maintainers: 2 @codyopel Cody Opel <codyopel@gmail.com> @bcdarwin Ben Darwin <bcdarwin@gmail.com> CVE-2022-47183 5.4 MEDIUM CVSS version: 3.1 Attack vector (AV): NETWORK Attack complexity (AC): LOW Privileges required (PR): NONE User interaction (UI): REQUIRED Scope (S): UNCHANGED Confidentiality impact (C): NONE Integrity impact (I): LOW Availability impact (A): LOW created 2 months, 3 weeks ago WordPress Extra Block Design, Style, CSS for ANY Gutenberg Blocks Plugin <= 0.2.6 is vulnerable to Cross Site Request Forgery (CSRF) Cross-Site Request Forgery (CSRF) vulnerability in StylistWP Extra Block Design, Style, CSS for ANY Gutenberg Blocks plugin <= 0.2.6 versions. stylist =<0.2.6 pkgs.haskellPackages.stylist-traits Traits, datatypes, & parsers for Haskell Stylist nixos-24.05 0.1.3.1 nixpkgs-24.05-darwin 0.1.3.1 nixos-24.05-small 0.1.3.1 nixos-24.11 0.1.3.1 nixpkgs-24.11-darwin 0.1.3.1 nixos-24.11-small 0.1.3.1 nixos-unstable 0.1.3.1 nixos-unstable-small 0.1.3.1 nixpkgs-unstable 0.1.3.1 CVE-2023-23668 6.5 MEDIUM CVSS version: 3.1 Attack vector (AV): NETWORK Attack complexity (AC): LOW Privileges required (PR): LOW User interaction (UI): REQUIRED Scope (S): CHANGED Confidentiality impact (C): LOW Integrity impact (I): LOW Availability impact (A): LOW created 2 months, 3 weeks ago WordPress GiveWP Plugin <= 2.25.1 is vulnerable to Cross Site Scripting (XSS) Auth. (contributor+) Stored Cross-Site Scripting (XSS) vulnerability in GiveWP plugin <= 2.25.1 versions. give =<2.25.1 pkgs.filegive Easy p2p file sending program nixos-24.05 2022-05-29 nixpkgs-24.05-darwin 2022-05-29 nixos-24.05-small 2022-05-29 nixos-24.11 2022-05-29 nixpkgs-24.11-darwin 2022-05-29 nixos-24.11-small 2022-05-29 nixos-unstable 2022-05-29 nixos-unstable-small 2022-05-29 nixpkgs-unstable 2022-05-29 Notify package maintainers: 1 @viric Lluís Batlle i Rossell <viric@viric.name> CVE-2024-56827 5.6 MEDIUM CVSS version: 3.1 Attack vector (AV): LOCAL Attack complexity (AC): LOW Privileges required (PR): LOW User interaction (UI): REQUIRED Scope (S): UNCHANGED Confidentiality impact (C): LOW Integrity impact (I): NONE Availability impact (A): HIGH created 2 months, 3 weeks ago Openjpeg: heap buffer overflow in lib/openjp2/j2k.c A flaw was found in the OpenJPEG project. A heap buffer overflow condition may be triggered when certain options are specified while using the opj_decompress utility. This can lead to an application crash or other undefined behavior. openjpeg openjpeg2 gimp:flatpak/openjpeg2 pkgs.openjpeg Open-source JPEG 2000 codec written in C language nixos-24.05 2.5.2 nixpkgs-24.05-darwin 2.5.2 nixos-24.05-small 2.5.2 nixos-24.11 2.5.2 nixpkgs-24.11-darwin 2.5.2 nixos-24.11-small 2.5.2 nixos-unstable 2.5.2 nixos-unstable-small 2.5.2 nixpkgs-unstable 2.5.2 pkgs.python311Packages.pylibjpeg-openjpeg A J2K and JP2 plugin for pylibjpeg nixos-24.11 2.3.0 nixpkgs-24.11-darwin 2.3.0 nixos-24.11-small 2.3.0 nixos-unstable 2.3.0 nixos-unstable-small 2.3.0 nixpkgs-unstable 2.3.0 pkgs.python312Packages.pylibjpeg-openjpeg A J2K and JP2 plugin for pylibjpeg nixos-24.11 2.3.0 nixpkgs-24.11-darwin 2.3.0 nixos-24.11-small 2.3.0 nixos-unstable 2.3.0 nixos-unstable-small 2.3.0 nixpkgs-unstable 2.3.0 Notify package maintainers: 2 @codyopel Cody Opel <codyopel@gmail.com> @bcdarwin Ben Darwin <bcdarwin@gmail.com>
CVE-2024-12088 6.5 MEDIUM CVSS version: 3.1 Attack vector (AV): NETWORK Attack complexity (AC): LOW Privileges required (PR): NONE User interaction (UI): REQUIRED Scope (S): UNCHANGED Confidentiality impact (C): NONE Integrity impact (I): HIGH Availability impact (A): NONE created 2 months, 2 weeks ago Rsync: --safe-links option bypass leads to path traversal A flaw was found in rsync. When using the `--safe-links` option, rsync fails to properly verify if a symbolic link destination contains another symbolic link within it. This results in a path traversal vulnerability, which may lead to arbitrary file write outside the desired directory. rhcos rsync pkgs.rsync Fast incremental file transfer utility nixos-24.05 3.3.0 nixpkgs-24.05-darwin 3.3.0 nixos-24.05-small 3.3.0 nixos-24.11 3.3.0 nixpkgs-24.11-darwin 3.3.0 nixos-24.11-small 3.3.0 nixos-unstable 3.3.0 nixos-unstable-small 3.3.0 nixpkgs-unstable 3.3.0 pkgs.grsync Synchronize folders, files and make backups nixos-24.05 1.3.1 nixpkgs-24.05-darwin 1.3.1 nixos-24.05-small 1.3.1 nixos-24.11 1.3.1 nixpkgs-24.11-darwin 1.3.1 nixos-24.11-small 1.3.1 nixos-unstable 1.3.1 nixos-unstable-small 1.3.1 nixpkgs-unstable 1.3.1 pkgs.rrsync Helper to run rsync-only environments from ssh-logins nixos-24.05 3.3.0 nixpkgs-24.05-darwin 3.3.0 nixos-24.05-small 3.3.0 nixos-24.11 3.3.0 nixpkgs-24.11-darwin 3.3.0 nixos-24.11-small 3.3.0 nixos-unstable 3.3.0 nixos-unstable-small 3.3.0 nixpkgs-unstable 3.3.0 pkgs.librsync Implementation of the rsync remote-delta algorithm nixos-24.05 2.3.4 nixpkgs-24.05-darwin 2.3.4 nixos-24.05-small 2.3.4 nixos-24.11 2.3.4 nixpkgs-24.11-darwin 2.3.4 nixos-24.11-small 2.3.4 nixos-unstable 2.3.4 nixos-unstable-small 2.3.4 nixpkgs-unstable 2.3.4 pkgs.diskrsync Rsync for block devices and disk images nixos-24.05 1.3.0 nixpkgs-24.05-darwin 1.3.0 nixos-24.05-small 1.3.0 nixos-24.11 1.3.0 nixpkgs-24.11-darwin 1.3.0 nixos-24.11-small 1.3.0 nixos-unstable 1.3.0 nixos-unstable-small 1.3.0 nixpkgs-unstable 1.3.0 pkgs.openrsync BSD-licensed implementation of rsync nixos-24.05 2022-05-08 nixpkgs-24.05-darwin 2022-05-08 nixos-24.05-small 2022-05-08 nixos-24.11 2022-05-08 nixpkgs-24.11-darwin 2022-05-08 nixos-24.11-small 2022-05-08 nixos-unstable 2022-05-08 nixos-unstable-small 2022-05-08 nixpkgs-unstable 2022-05-08 pkgs.vdirsyncer Synchronize calendars and contacts nixos-24.05 0.19.2 nixpkgs-24.05-darwin 0.19.2 nixos-24.05-small 0.19.2 nixos-24.11 0.19.3 nixpkgs-24.11-darwin 0.19.3 nixos-24.11-small 0.19.3 nixos-unstable 0.19.3 nixos-unstable-small 0.19.3 nixpkgs-unstable 0.19.3 pkgs.emacsPackages.rsync-mode nixos-24.05 20210911.0 nixpkgs-24.05-darwin 20210911.0 nixos-24.05-small 20210911.0 nixos-24.11 20210911.0 nixpkgs-24.11-darwin 20210911.0 nixos-24.11-small 20210911.0 nixos-unstable 20210911.0 nixos-unstable-small 20210911.0 nixpkgs-unstable 20210911.0 pkgs.emacsPackages.dired-rsync nixos-24.05 20230822.1350 nixpkgs-24.05-darwin 20230822.1350 nixos-24.05-small 20230822.1350 nixos-24.11 20230822.1350 nixpkgs-24.11-darwin 20230822.1350 nixos-24.11-small 20230822.1350 nixos-unstable 20230822.1350 nixos-unstable-small 20230822.1350 nixpkgs-unstable 20230822.1350 pkgs.python311Packages.sysrsync Simple and safe system's rsync wrapper for Python nixos-24.11 1.1.1 nixpkgs-24.11-darwin 1.1.1 nixos-24.11-small 1.1.1 nixos-unstable 1.1.1 nixos-unstable-small 1.1.1 nixpkgs-unstable 1.1.1 pkgs.python312Packages.sysrsync Simple and safe system's rsync wrapper for Python nixos-24.11 1.1.1 nixpkgs-24.11-darwin 1.1.1 nixos-24.11-small 1.1.1 nixos-unstable 1.1.1 nixos-unstable-small 1.1.1 nixpkgs-unstable 1.1.1 pkgs.python311Packages.vdirsyncer Synchronize calendars and contacts nixos-24.05 0.19.2 nixpkgs-24.05-darwin 0.19.2 nixos-24.05-small 0.19.2 nixos-24.11 0.19.3 nixpkgs-24.11-darwin 0.19.3 nixos-24.11-small 0.19.3 nixos-unstable 0.19.3 nixos-unstable-small 0.19.3 nixpkgs-unstable 0.19.3 pkgs.python312Packages.vdirsyncer Synchronize calendars and contacts nixos-24.05 0.19.2 nixpkgs-24.05-darwin 0.19.2 nixos-24.05-small 0.19.2 nixos-24.11 0.19.3 nixpkgs-24.11-darwin 0.19.3 nixos-24.11-small 0.19.3 nixos-unstable 0.19.3 nixos-unstable-small 0.19.3 nixpkgs-unstable 0.19.3 pkgs.emacsPackages.dired-rsync-transient nixos-24.05 20230714.1459 nixpkgs-24.05-darwin 20230714.1459 nixos-24.05-small 20230714.1459 nixos-24.11 20230714.1459 nixpkgs-24.11-darwin 20230714.1459 nixos-24.11-small 20230714.1459 nixos-unstable 20230714.1459 nixos-unstable-small 20230714.1459 nixpkgs-unstable 20230714.1459 Notify package maintainers: 7 @ivan Ivan Kozik <ivan@ludios.org> @ehmry Emery Hemingway <ehmry@posteo.net> @kampfschlaefer Arnold Krille <arnold@arnoldarts.de> @kuznero Roman Kuznetsov <roman@kuznero.com> @jluttine Jaakko Luttinen <jaakko.luttinen@iki.fi> @fgaz Francesco Gazzetta <fgaz@fgaz.me> @veprbl Dmitry Kalinkin <veprbl@gmail.com>
pkgs.rsync Fast incremental file transfer utility nixos-24.05 3.3.0 nixpkgs-24.05-darwin 3.3.0 nixos-24.05-small 3.3.0 nixos-24.11 3.3.0 nixpkgs-24.11-darwin 3.3.0 nixos-24.11-small 3.3.0 nixos-unstable 3.3.0 nixos-unstable-small 3.3.0 nixpkgs-unstable 3.3.0
pkgs.grsync Synchronize folders, files and make backups nixos-24.05 1.3.1 nixpkgs-24.05-darwin 1.3.1 nixos-24.05-small 1.3.1 nixos-24.11 1.3.1 nixpkgs-24.11-darwin 1.3.1 nixos-24.11-small 1.3.1 nixos-unstable 1.3.1 nixos-unstable-small 1.3.1 nixpkgs-unstable 1.3.1
pkgs.rrsync Helper to run rsync-only environments from ssh-logins nixos-24.05 3.3.0 nixpkgs-24.05-darwin 3.3.0 nixos-24.05-small 3.3.0 nixos-24.11 3.3.0 nixpkgs-24.11-darwin 3.3.0 nixos-24.11-small 3.3.0 nixos-unstable 3.3.0 nixos-unstable-small 3.3.0 nixpkgs-unstable 3.3.0
pkgs.librsync Implementation of the rsync remote-delta algorithm nixos-24.05 2.3.4 nixpkgs-24.05-darwin 2.3.4 nixos-24.05-small 2.3.4 nixos-24.11 2.3.4 nixpkgs-24.11-darwin 2.3.4 nixos-24.11-small 2.3.4 nixos-unstable 2.3.4 nixos-unstable-small 2.3.4 nixpkgs-unstable 2.3.4
pkgs.diskrsync Rsync for block devices and disk images nixos-24.05 1.3.0 nixpkgs-24.05-darwin 1.3.0 nixos-24.05-small 1.3.0 nixos-24.11 1.3.0 nixpkgs-24.11-darwin 1.3.0 nixos-24.11-small 1.3.0 nixos-unstable 1.3.0 nixos-unstable-small 1.3.0 nixpkgs-unstable 1.3.0
pkgs.openrsync BSD-licensed implementation of rsync nixos-24.05 2022-05-08 nixpkgs-24.05-darwin 2022-05-08 nixos-24.05-small 2022-05-08 nixos-24.11 2022-05-08 nixpkgs-24.11-darwin 2022-05-08 nixos-24.11-small 2022-05-08 nixos-unstable 2022-05-08 nixos-unstable-small 2022-05-08 nixpkgs-unstable 2022-05-08
pkgs.vdirsyncer Synchronize calendars and contacts nixos-24.05 0.19.2 nixpkgs-24.05-darwin 0.19.2 nixos-24.05-small 0.19.2 nixos-24.11 0.19.3 nixpkgs-24.11-darwin 0.19.3 nixos-24.11-small 0.19.3 nixos-unstable 0.19.3 nixos-unstable-small 0.19.3 nixpkgs-unstable 0.19.3
pkgs.emacsPackages.rsync-mode nixos-24.05 20210911.0 nixpkgs-24.05-darwin 20210911.0 nixos-24.05-small 20210911.0 nixos-24.11 20210911.0 nixpkgs-24.11-darwin 20210911.0 nixos-24.11-small 20210911.0 nixos-unstable 20210911.0 nixos-unstable-small 20210911.0 nixpkgs-unstable 20210911.0
pkgs.emacsPackages.dired-rsync nixos-24.05 20230822.1350 nixpkgs-24.05-darwin 20230822.1350 nixos-24.05-small 20230822.1350 nixos-24.11 20230822.1350 nixpkgs-24.11-darwin 20230822.1350 nixos-24.11-small 20230822.1350 nixos-unstable 20230822.1350 nixos-unstable-small 20230822.1350 nixpkgs-unstable 20230822.1350
pkgs.python311Packages.sysrsync Simple and safe system's rsync wrapper for Python nixos-24.11 1.1.1 nixpkgs-24.11-darwin 1.1.1 nixos-24.11-small 1.1.1 nixos-unstable 1.1.1 nixos-unstable-small 1.1.1 nixpkgs-unstable 1.1.1
pkgs.python312Packages.sysrsync Simple and safe system's rsync wrapper for Python nixos-24.11 1.1.1 nixpkgs-24.11-darwin 1.1.1 nixos-24.11-small 1.1.1 nixos-unstable 1.1.1 nixos-unstable-small 1.1.1 nixpkgs-unstable 1.1.1
pkgs.python311Packages.vdirsyncer Synchronize calendars and contacts nixos-24.05 0.19.2 nixpkgs-24.05-darwin 0.19.2 nixos-24.05-small 0.19.2 nixos-24.11 0.19.3 nixpkgs-24.11-darwin 0.19.3 nixos-24.11-small 0.19.3 nixos-unstable 0.19.3 nixos-unstable-small 0.19.3 nixpkgs-unstable 0.19.3
pkgs.python312Packages.vdirsyncer Synchronize calendars and contacts nixos-24.05 0.19.2 nixpkgs-24.05-darwin 0.19.2 nixos-24.05-small 0.19.2 nixos-24.11 0.19.3 nixpkgs-24.11-darwin 0.19.3 nixos-24.11-small 0.19.3 nixos-unstable 0.19.3 nixos-unstable-small 0.19.3 nixpkgs-unstable 0.19.3
pkgs.emacsPackages.dired-rsync-transient nixos-24.05 20230714.1459 nixpkgs-24.05-darwin 20230714.1459 nixos-24.05-small 20230714.1459 nixos-24.11 20230714.1459 nixpkgs-24.11-darwin 20230714.1459 nixos-24.11-small 20230714.1459 nixos-unstable 20230714.1459 nixos-unstable-small 20230714.1459 nixpkgs-unstable 20230714.1459
CVE-2024-12085 7.5 HIGH CVSS version: 3.1 Attack vector (AV): NETWORK Attack complexity (AC): LOW Privileges required (PR): NONE User interaction (UI): NONE Scope (S): UNCHANGED Confidentiality impact (C): HIGH Integrity impact (I): NONE Availability impact (A): NONE created 2 months, 2 weeks ago Rsync: info leak via uninitialized stack contents A flaw was found in the rsync daemon which could be triggered when rsync compares file checksums. This flaw allows an attacker to manipulate the checksum length (s2length) to cause a comparison between a checksum and uninitialized memory and leak one byte of uninitialized stack data at a time. rhcos rsync pkgs.rsync Fast incremental file transfer utility nixos-24.05 3.3.0 nixpkgs-24.05-darwin 3.3.0 nixos-24.05-small 3.3.0 nixos-24.11 3.3.0 nixpkgs-24.11-darwin 3.3.0 nixos-24.11-small 3.3.0 nixos-unstable 3.3.0 nixos-unstable-small 3.3.0 nixpkgs-unstable 3.3.0 pkgs.grsync Synchronize folders, files and make backups nixos-24.05 1.3.1 nixpkgs-24.05-darwin 1.3.1 nixos-24.05-small 1.3.1 nixos-24.11 1.3.1 nixpkgs-24.11-darwin 1.3.1 nixos-24.11-small 1.3.1 nixos-unstable 1.3.1 nixos-unstable-small 1.3.1 nixpkgs-unstable 1.3.1 pkgs.rrsync Helper to run rsync-only environments from ssh-logins nixos-24.05 3.3.0 nixpkgs-24.05-darwin 3.3.0 nixos-24.05-small 3.3.0 nixos-24.11 3.3.0 nixpkgs-24.11-darwin 3.3.0 nixos-24.11-small 3.3.0 nixos-unstable 3.3.0 nixos-unstable-small 3.3.0 nixpkgs-unstable 3.3.0 pkgs.librsync Implementation of the rsync remote-delta algorithm nixos-24.05 2.3.4 nixpkgs-24.05-darwin 2.3.4 nixos-24.05-small 2.3.4 nixos-24.11 2.3.4 nixpkgs-24.11-darwin 2.3.4 nixos-24.11-small 2.3.4 nixos-unstable 2.3.4 nixos-unstable-small 2.3.4 nixpkgs-unstable 2.3.4 pkgs.diskrsync Rsync for block devices and disk images nixos-24.05 1.3.0 nixpkgs-24.05-darwin 1.3.0 nixos-24.05-small 1.3.0 nixos-24.11 1.3.0 nixpkgs-24.11-darwin 1.3.0 nixos-24.11-small 1.3.0 nixos-unstable 1.3.0 nixos-unstable-small 1.3.0 nixpkgs-unstable 1.3.0 pkgs.openrsync BSD-licensed implementation of rsync nixos-24.05 2022-05-08 nixpkgs-24.05-darwin 2022-05-08 nixos-24.05-small 2022-05-08 nixos-24.11 2022-05-08 nixpkgs-24.11-darwin 2022-05-08 nixos-24.11-small 2022-05-08 nixos-unstable 2022-05-08 nixos-unstable-small 2022-05-08 nixpkgs-unstable 2022-05-08 pkgs.vdirsyncer Synchronize calendars and contacts nixos-24.05 0.19.2 nixpkgs-24.05-darwin 0.19.2 nixos-24.05-small 0.19.2 nixos-24.11 0.19.3 nixpkgs-24.11-darwin 0.19.3 nixos-24.11-small 0.19.3 nixos-unstable 0.19.3 nixos-unstable-small 0.19.3 nixpkgs-unstable 0.19.3 pkgs.emacsPackages.rsync-mode nixos-24.05 20210911.0 nixpkgs-24.05-darwin 20210911.0 nixos-24.05-small 20210911.0 nixos-24.11 20210911.0 nixpkgs-24.11-darwin 20210911.0 nixos-24.11-small 20210911.0 nixos-unstable 20210911.0 nixos-unstable-small 20210911.0 nixpkgs-unstable 20210911.0 pkgs.emacsPackages.dired-rsync nixos-24.05 20230822.1350 nixpkgs-24.05-darwin 20230822.1350 nixos-24.05-small 20230822.1350 nixos-24.11 20230822.1350 nixpkgs-24.11-darwin 20230822.1350 nixos-24.11-small 20230822.1350 nixos-unstable 20230822.1350 nixos-unstable-small 20230822.1350 nixpkgs-unstable 20230822.1350 pkgs.python311Packages.sysrsync Simple and safe system's rsync wrapper for Python nixos-24.11 1.1.1 nixpkgs-24.11-darwin 1.1.1 nixos-24.11-small 1.1.1 nixos-unstable 1.1.1 nixos-unstable-small 1.1.1 nixpkgs-unstable 1.1.1 pkgs.python312Packages.sysrsync Simple and safe system's rsync wrapper for Python nixos-24.11 1.1.1 nixpkgs-24.11-darwin 1.1.1 nixos-24.11-small 1.1.1 nixos-unstable 1.1.1 nixos-unstable-small 1.1.1 nixpkgs-unstable 1.1.1 pkgs.python311Packages.vdirsyncer Synchronize calendars and contacts nixos-24.05 0.19.2 nixpkgs-24.05-darwin 0.19.2 nixos-24.05-small 0.19.2 nixos-24.11 0.19.3 nixpkgs-24.11-darwin 0.19.3 nixos-24.11-small 0.19.3 nixos-unstable 0.19.3 nixos-unstable-small 0.19.3 nixpkgs-unstable 0.19.3 pkgs.python312Packages.vdirsyncer Synchronize calendars and contacts nixos-24.05 0.19.2 nixpkgs-24.05-darwin 0.19.2 nixos-24.05-small 0.19.2 nixos-24.11 0.19.3 nixpkgs-24.11-darwin 0.19.3 nixos-24.11-small 0.19.3 nixos-unstable 0.19.3 nixos-unstable-small 0.19.3 nixpkgs-unstable 0.19.3 pkgs.emacsPackages.dired-rsync-transient nixos-24.05 20230714.1459 nixpkgs-24.05-darwin 20230714.1459 nixos-24.05-small 20230714.1459 nixos-24.11 20230714.1459 nixpkgs-24.11-darwin 20230714.1459 nixos-24.11-small 20230714.1459 nixos-unstable 20230714.1459 nixos-unstable-small 20230714.1459 nixpkgs-unstable 20230714.1459 Notify package maintainers: 7 @ehmry Emery Hemingway <ehmry@posteo.net> @kampfschlaefer Arnold Krille <arnold@arnoldarts.de> @ivan Ivan Kozik <ivan@ludios.org> @kuznero Roman Kuznetsov <roman@kuznero.com> @jluttine Jaakko Luttinen <jaakko.luttinen@iki.fi> @fgaz Francesco Gazzetta <fgaz@fgaz.me> @veprbl Dmitry Kalinkin <veprbl@gmail.com>
pkgs.rsync Fast incremental file transfer utility nixos-24.05 3.3.0 nixpkgs-24.05-darwin 3.3.0 nixos-24.05-small 3.3.0 nixos-24.11 3.3.0 nixpkgs-24.11-darwin 3.3.0 nixos-24.11-small 3.3.0 nixos-unstable 3.3.0 nixos-unstable-small 3.3.0 nixpkgs-unstable 3.3.0
pkgs.grsync Synchronize folders, files and make backups nixos-24.05 1.3.1 nixpkgs-24.05-darwin 1.3.1 nixos-24.05-small 1.3.1 nixos-24.11 1.3.1 nixpkgs-24.11-darwin 1.3.1 nixos-24.11-small 1.3.1 nixos-unstable 1.3.1 nixos-unstable-small 1.3.1 nixpkgs-unstable 1.3.1
pkgs.rrsync Helper to run rsync-only environments from ssh-logins nixos-24.05 3.3.0 nixpkgs-24.05-darwin 3.3.0 nixos-24.05-small 3.3.0 nixos-24.11 3.3.0 nixpkgs-24.11-darwin 3.3.0 nixos-24.11-small 3.3.0 nixos-unstable 3.3.0 nixos-unstable-small 3.3.0 nixpkgs-unstable 3.3.0
pkgs.librsync Implementation of the rsync remote-delta algorithm nixos-24.05 2.3.4 nixpkgs-24.05-darwin 2.3.4 nixos-24.05-small 2.3.4 nixos-24.11 2.3.4 nixpkgs-24.11-darwin 2.3.4 nixos-24.11-small 2.3.4 nixos-unstable 2.3.4 nixos-unstable-small 2.3.4 nixpkgs-unstable 2.3.4
pkgs.diskrsync Rsync for block devices and disk images nixos-24.05 1.3.0 nixpkgs-24.05-darwin 1.3.0 nixos-24.05-small 1.3.0 nixos-24.11 1.3.0 nixpkgs-24.11-darwin 1.3.0 nixos-24.11-small 1.3.0 nixos-unstable 1.3.0 nixos-unstable-small 1.3.0 nixpkgs-unstable 1.3.0
pkgs.openrsync BSD-licensed implementation of rsync nixos-24.05 2022-05-08 nixpkgs-24.05-darwin 2022-05-08 nixos-24.05-small 2022-05-08 nixos-24.11 2022-05-08 nixpkgs-24.11-darwin 2022-05-08 nixos-24.11-small 2022-05-08 nixos-unstable 2022-05-08 nixos-unstable-small 2022-05-08 nixpkgs-unstable 2022-05-08
pkgs.vdirsyncer Synchronize calendars and contacts nixos-24.05 0.19.2 nixpkgs-24.05-darwin 0.19.2 nixos-24.05-small 0.19.2 nixos-24.11 0.19.3 nixpkgs-24.11-darwin 0.19.3 nixos-24.11-small 0.19.3 nixos-unstable 0.19.3 nixos-unstable-small 0.19.3 nixpkgs-unstable 0.19.3
pkgs.emacsPackages.rsync-mode nixos-24.05 20210911.0 nixpkgs-24.05-darwin 20210911.0 nixos-24.05-small 20210911.0 nixos-24.11 20210911.0 nixpkgs-24.11-darwin 20210911.0 nixos-24.11-small 20210911.0 nixos-unstable 20210911.0 nixos-unstable-small 20210911.0 nixpkgs-unstable 20210911.0
pkgs.emacsPackages.dired-rsync nixos-24.05 20230822.1350 nixpkgs-24.05-darwin 20230822.1350 nixos-24.05-small 20230822.1350 nixos-24.11 20230822.1350 nixpkgs-24.11-darwin 20230822.1350 nixos-24.11-small 20230822.1350 nixos-unstable 20230822.1350 nixos-unstable-small 20230822.1350 nixpkgs-unstable 20230822.1350
pkgs.python311Packages.sysrsync Simple and safe system's rsync wrapper for Python nixos-24.11 1.1.1 nixpkgs-24.11-darwin 1.1.1 nixos-24.11-small 1.1.1 nixos-unstable 1.1.1 nixos-unstable-small 1.1.1 nixpkgs-unstable 1.1.1
pkgs.python312Packages.sysrsync Simple and safe system's rsync wrapper for Python nixos-24.11 1.1.1 nixpkgs-24.11-darwin 1.1.1 nixos-24.11-small 1.1.1 nixos-unstable 1.1.1 nixos-unstable-small 1.1.1 nixpkgs-unstable 1.1.1
pkgs.python311Packages.vdirsyncer Synchronize calendars and contacts nixos-24.05 0.19.2 nixpkgs-24.05-darwin 0.19.2 nixos-24.05-small 0.19.2 nixos-24.11 0.19.3 nixpkgs-24.11-darwin 0.19.3 nixos-24.11-small 0.19.3 nixos-unstable 0.19.3 nixos-unstable-small 0.19.3 nixpkgs-unstable 0.19.3
pkgs.python312Packages.vdirsyncer Synchronize calendars and contacts nixos-24.05 0.19.2 nixpkgs-24.05-darwin 0.19.2 nixos-24.05-small 0.19.2 nixos-24.11 0.19.3 nixpkgs-24.11-darwin 0.19.3 nixos-24.11-small 0.19.3 nixos-unstable 0.19.3 nixos-unstable-small 0.19.3 nixpkgs-unstable 0.19.3
pkgs.emacsPackages.dired-rsync-transient nixos-24.05 20230714.1459 nixpkgs-24.05-darwin 20230714.1459 nixos-24.05-small 20230714.1459 nixos-24.11 20230714.1459 nixpkgs-24.11-darwin 20230714.1459 nixos-24.11-small 20230714.1459 nixos-unstable 20230714.1459 nixos-unstable-small 20230714.1459 nixpkgs-unstable 20230714.1459
CVE-2023-25041 7.1 HIGH CVSS version: 3.1 Attack vector (AV): NETWORK Attack complexity (AC): LOW Privileges required (PR): NONE User interaction (UI): REQUIRED Scope (S): CHANGED Confidentiality impact (C): LOW Integrity impact (I): LOW Availability impact (A): LOW created 2 months, 3 weeks ago WordPress Monolit Theme <= 2.0.6 is vulnerable to Cross Site Scripting (XSS) Unauth. Reflected Cross-Site Scripting (XSS) vulnerability in Cththemes Monolit theme <= 2.0.6 versions. monolit =<2.0.6 pkgs.monolith Bundle any web page into a single HTML file nixos-24.05 2.8.1 nixpkgs-24.05-darwin 2.8.1 nixos-24.05-small 2.8.1 nixos-24.11 2.8.1 nixpkgs-24.11-darwin 2.8.1 nixos-24.11-small 2.8.1 nixos-unstable 2.8.3 nixos-unstable-small 2.8.3 nixpkgs-unstable 2.8.3 Notify package maintainers: 1 @Br1ght0ne Oleksii Filonenko <brightone@protonmail.com>
pkgs.monolith Bundle any web page into a single HTML file nixos-24.05 2.8.1 nixpkgs-24.05-darwin 2.8.1 nixos-24.05-small 2.8.1 nixos-24.11 2.8.1 nixpkgs-24.11-darwin 2.8.1 nixos-24.11-small 2.8.1 nixos-unstable 2.8.3 nixos-unstable-small 2.8.3 nixpkgs-unstable 2.8.3
CVE-2022-47613 5.9 MEDIUM CVSS version: 3.1 Attack vector (AV): NETWORK Attack complexity (AC): LOW Privileges required (PR): HIGH User interaction (UI): REQUIRED Scope (S): CHANGED Confidentiality impact (C): LOW Integrity impact (I): LOW Availability impact (A): LOW created 2 months, 3 weeks ago WordPress AI ChatBot Plugin <= 4.3.0 is vulnerable to Cross Site Scripting (XSS) Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in QuantumCloud AI ChatBot plugin <= 4.3.0 versions. chatbot =<4.3.0 pkgs.gnomeExtensions.penguin-ai-chatbot A GNOME Shell extension that uses openrouter.ai services - a platform/marketplace that offers APIs to talk to LLMs. Some of these APIs are free to use, including the one used by default in the extension: Llama 3.1 8B. nixos-24.11 11 nixpkgs-24.11-darwin 11 nixos-24.11-small 11 nixos-unstable 11 nixos-unstable-small 11 nixpkgs-unstable 11 Notify package maintainers: 1 @honnip Jung seungwoo <me@honnip.page>
pkgs.gnomeExtensions.penguin-ai-chatbot A GNOME Shell extension that uses openrouter.ai services - a platform/marketplace that offers APIs to talk to LLMs. Some of these APIs are free to use, including the one used by default in the extension: Llama 3.1 8B. nixos-24.11 11 nixpkgs-24.11-darwin 11 nixos-24.11-small 11 nixos-unstable 11 nixos-unstable-small 11 nixpkgs-unstable 11
CVE-2023-5156 7.5 HIGH CVSS version: 3.1 Attack vector (AV): NETWORK Attack complexity (AC): LOW Privileges required (PR): NONE User interaction (UI): NONE Scope (S): UNCHANGED Confidentiality impact (C): NONE Integrity impact (I): NONE Availability impact (A): HIGH created 2 months, 3 weeks ago Glibc: dos due to memory leak in getaddrinfo.c A flaw was found in the GNU C Library. A recent fix for CVE-2023-4806 introduced the potential for a memory leak, which may result in an application crash. glibc compat-glibc pkgs.glibc GNU C Library nixos-24.05 2.39-52 nixpkgs-24.05-darwin 2.39-52 nixos-24.05-small 2.39-52 nixos-24.11 2.40-36 nixpkgs-24.11-darwin 2.40-36 nixos-24.11-small 2.40-36 nixos-unstable 2.40-36 nixos-unstable-small 2.40-36 nixpkgs-unstable 2.40-36 pkgs.iconv GNU C Library nixos-24.05 2.39-52 nixpkgs-24.05-darwin 2.39-52 nixos-24.05-small 2.39-52 nixos-24.11 2.40-36 nixpkgs-24.11-darwin 2.40-36 nixos-24.11-small 2.40-36 nixos-unstable 2.40-36 nixos-unstable-small 2.40-36 nixpkgs-unstable 2.40-36 pkgs.getent nixos-24.05 2.39-52 nixpkgs-24.05-darwin 2.39-52 nixos-24.05-small 2.39-52 nixos-24.11 2.40-36 nixpkgs-24.11-darwin 2.40-36 nixos-24.11-small 2.40-36 nixos-unstable 2.40-36 nixos-unstable-small 2.40-36 nixpkgs-unstable 2.40-36 pkgs.locale nixos-24.05 2.39-52 nixpkgs-24.05-darwin 2.39-52 nixos-24.05-small 2.39-52 nixos-24.11 2.40-36 nixpkgs-24.11-darwin 2.40-36 nixos-24.11-small 2.40-36 nixos-unstable 2.40-36 nixos-unstable-small 2.40-36 nixpkgs-unstable 2.40-36 pkgs.mtrace Perl script used to interpret and provide human readable output of the trace log contained in the file mtracedata, whose contents were produced by mtrace(3) nixos-24.05 2.39-52 nixpkgs-24.05-darwin 2.39-52 nixos-24.05-small 2.39-52 nixos-24.11 2.40-36 nixpkgs-24.11-darwin 2.40-36 nixos-24.11-small 2.40-36 nixos-unstable 2.40-36 nixos-unstable-small 2.40-36 nixpkgs-unstable 2.40-36 pkgs.getconf nixos-24.05 2.39-52 nixpkgs-24.05-darwin 2.39-52 nixos-24.05-small 2.39-52 nixos-24.11 2.40-36 nixpkgs-24.11-darwin 2.40-36 nixos-24.11-small 2.40-36 nixos-unstable 2.40-36 nixos-unstable-small 2.40-36 nixpkgs-unstable 2.40-36 pkgs.libiconv nixos-24.05 2.39 nixpkgs-24.05-darwin 2.39 nixos-24.05-small 2.39 nixos-24.11 2.40 nixpkgs-24.11-darwin 2.40 nixos-24.11-small 2.40 nixos-unstable 2.40 nixos-unstable-small 2.40 nixpkgs-unstable 2.40 pkgs.glibcInfo GNU Info manual of the GNU C Library nixos-24.05 2.39-52 nixpkgs-24.05-darwin 2.39-52 nixos-24.05-small 2.39-52 nixos-24.11 2.40-36 nixpkgs-24.11-darwin 2.40-36 nixos-24.11-small 2.40-36 nixos-unstable 2.40-36 nixos-unstable-small 2.40-36 nixpkgs-unstable 2.40-36 pkgs.glibc_multi nixos-24.05 2.39-52 nixpkgs-24.05-darwin 2.39-52 nixos-24.05-small 2.39-52 nixos-24.11 2.40-36 nixpkgs-24.11-darwin 2.40-36 nixos-24.11-small 2.40-36 nixos-unstable 2.40-36 nixos-unstable-small 2.40-36 nixpkgs-unstable 2.40-36 pkgs.glibcLocales Locale information for the GNU C Library nixos-24.05 2.39-52 nixpkgs-24.05-darwin 2.39-52 nixos-24.05-small 2.39-52 nixos-24.11 2.40-36 nixpkgs-24.11-darwin 2.40-36 nixos-24.11-small 2.40-36 nixos-unstable 2.40-36 nixos-unstable-small 2.40-36 nixpkgs-unstable 2.40-36 pkgs.glibc_memusage GNU C Library nixos-24.05 2.39-52 nixpkgs-24.05-darwin 2.39-52 nixos-24.05-small 2.39-52 nixos-24.11 2.40-36 nixpkgs-24.11-darwin 2.40-36 nixos-24.11-small 2.40-36 nixos-unstable 2.40-36 nixos-unstable-small 2.40-36 nixpkgs-unstable 2.40-36 pkgs.glibcLocalesUtf8 Locale information for the GNU C Library nixos-24.05 2.39-52 nixpkgs-24.05-darwin 2.39-52 nixos-24.05-small 2.39-52 nixos-24.11 2.40-36 nixpkgs-24.11-darwin 2.40-36 nixos-24.11-small 2.40-36 nixos-unstable 2.40-36 nixos-unstable-small 2.40-36 nixpkgs-unstable 2.40-36 pkgs.unixtools.getent nixos-24.05 2.39-52 nixpkgs-24.05-darwin 2.39-52 nixos-24.05-small 2.39-52 nixos-24.11 2.40-36 nixpkgs-24.11-darwin 2.40-36 nixos-24.11-small 2.40-36 nixos-unstable 2.40-36 nixos-unstable-small 2.40-36 nixpkgs-unstable 2.40-36 pkgs.unixtools.locale nixos-24.05 2.39-52 nixpkgs-24.05-darwin 2.39-52 nixos-24.05-small 2.39-52 nixos-24.11 2.40-36 nixpkgs-24.11-darwin 2.40-36 nixos-24.11-small 2.40-36 nixos-unstable 2.40-36 nixos-unstable-small 2.40-36 nixpkgs-unstable 2.40-36 pkgs.unixtools.getconf nixos-24.05 2.39-52 nixpkgs-24.05-darwin 2.39-52 nixos-24.05-small 2.39-52 nixos-24.11 2.40-36 nixpkgs-24.11-darwin 2.40-36 nixos-24.11-small 2.40-36 nixos-unstable 2.40-36 nixos-unstable-small 2.40-36 nixpkgs-unstable 2.40-36 Notify package maintainers: 2 @Ma27 Maximilian Bosch <maximilian@mbosch.me> @connorbaker Connor Baker <connor.baker@tweag.io>
pkgs.glibc GNU C Library nixos-24.05 2.39-52 nixpkgs-24.05-darwin 2.39-52 nixos-24.05-small 2.39-52 nixos-24.11 2.40-36 nixpkgs-24.11-darwin 2.40-36 nixos-24.11-small 2.40-36 nixos-unstable 2.40-36 nixos-unstable-small 2.40-36 nixpkgs-unstable 2.40-36
pkgs.iconv GNU C Library nixos-24.05 2.39-52 nixpkgs-24.05-darwin 2.39-52 nixos-24.05-small 2.39-52 nixos-24.11 2.40-36 nixpkgs-24.11-darwin 2.40-36 nixos-24.11-small 2.40-36 nixos-unstable 2.40-36 nixos-unstable-small 2.40-36 nixpkgs-unstable 2.40-36
pkgs.getent nixos-24.05 2.39-52 nixpkgs-24.05-darwin 2.39-52 nixos-24.05-small 2.39-52 nixos-24.11 2.40-36 nixpkgs-24.11-darwin 2.40-36 nixos-24.11-small 2.40-36 nixos-unstable 2.40-36 nixos-unstable-small 2.40-36 nixpkgs-unstable 2.40-36
pkgs.locale nixos-24.05 2.39-52 nixpkgs-24.05-darwin 2.39-52 nixos-24.05-small 2.39-52 nixos-24.11 2.40-36 nixpkgs-24.11-darwin 2.40-36 nixos-24.11-small 2.40-36 nixos-unstable 2.40-36 nixos-unstable-small 2.40-36 nixpkgs-unstable 2.40-36
pkgs.mtrace Perl script used to interpret and provide human readable output of the trace log contained in the file mtracedata, whose contents were produced by mtrace(3) nixos-24.05 2.39-52 nixpkgs-24.05-darwin 2.39-52 nixos-24.05-small 2.39-52 nixos-24.11 2.40-36 nixpkgs-24.11-darwin 2.40-36 nixos-24.11-small 2.40-36 nixos-unstable 2.40-36 nixos-unstable-small 2.40-36 nixpkgs-unstable 2.40-36
pkgs.getconf nixos-24.05 2.39-52 nixpkgs-24.05-darwin 2.39-52 nixos-24.05-small 2.39-52 nixos-24.11 2.40-36 nixpkgs-24.11-darwin 2.40-36 nixos-24.11-small 2.40-36 nixos-unstable 2.40-36 nixos-unstable-small 2.40-36 nixpkgs-unstable 2.40-36
pkgs.libiconv nixos-24.05 2.39 nixpkgs-24.05-darwin 2.39 nixos-24.05-small 2.39 nixos-24.11 2.40 nixpkgs-24.11-darwin 2.40 nixos-24.11-small 2.40 nixos-unstable 2.40 nixos-unstable-small 2.40 nixpkgs-unstable 2.40
pkgs.glibcInfo GNU Info manual of the GNU C Library nixos-24.05 2.39-52 nixpkgs-24.05-darwin 2.39-52 nixos-24.05-small 2.39-52 nixos-24.11 2.40-36 nixpkgs-24.11-darwin 2.40-36 nixos-24.11-small 2.40-36 nixos-unstable 2.40-36 nixos-unstable-small 2.40-36 nixpkgs-unstable 2.40-36
pkgs.glibc_multi nixos-24.05 2.39-52 nixpkgs-24.05-darwin 2.39-52 nixos-24.05-small 2.39-52 nixos-24.11 2.40-36 nixpkgs-24.11-darwin 2.40-36 nixos-24.11-small 2.40-36 nixos-unstable 2.40-36 nixos-unstable-small 2.40-36 nixpkgs-unstable 2.40-36
pkgs.glibcLocales Locale information for the GNU C Library nixos-24.05 2.39-52 nixpkgs-24.05-darwin 2.39-52 nixos-24.05-small 2.39-52 nixos-24.11 2.40-36 nixpkgs-24.11-darwin 2.40-36 nixos-24.11-small 2.40-36 nixos-unstable 2.40-36 nixos-unstable-small 2.40-36 nixpkgs-unstable 2.40-36
pkgs.glibc_memusage GNU C Library nixos-24.05 2.39-52 nixpkgs-24.05-darwin 2.39-52 nixos-24.05-small 2.39-52 nixos-24.11 2.40-36 nixpkgs-24.11-darwin 2.40-36 nixos-24.11-small 2.40-36 nixos-unstable 2.40-36 nixos-unstable-small 2.40-36 nixpkgs-unstable 2.40-36
pkgs.glibcLocalesUtf8 Locale information for the GNU C Library nixos-24.05 2.39-52 nixpkgs-24.05-darwin 2.39-52 nixos-24.05-small 2.39-52 nixos-24.11 2.40-36 nixpkgs-24.11-darwin 2.40-36 nixos-24.11-small 2.40-36 nixos-unstable 2.40-36 nixos-unstable-small 2.40-36 nixpkgs-unstable 2.40-36
pkgs.unixtools.getent nixos-24.05 2.39-52 nixpkgs-24.05-darwin 2.39-52 nixos-24.05-small 2.39-52 nixos-24.11 2.40-36 nixpkgs-24.11-darwin 2.40-36 nixos-24.11-small 2.40-36 nixos-unstable 2.40-36 nixos-unstable-small 2.40-36 nixpkgs-unstable 2.40-36
pkgs.unixtools.locale nixos-24.05 2.39-52 nixpkgs-24.05-darwin 2.39-52 nixos-24.05-small 2.39-52 nixos-24.11 2.40-36 nixpkgs-24.11-darwin 2.40-36 nixos-24.11-small 2.40-36 nixos-unstable 2.40-36 nixos-unstable-small 2.40-36 nixpkgs-unstable 2.40-36
pkgs.unixtools.getconf nixos-24.05 2.39-52 nixpkgs-24.05-darwin 2.39-52 nixos-24.05-small 2.39-52 nixos-24.11 2.40-36 nixpkgs-24.11-darwin 2.40-36 nixos-24.11-small 2.40-36 nixos-unstable 2.40-36 nixos-unstable-small 2.40-36 nixpkgs-unstable 2.40-36
CVE-2023-1907 8.0 HIGH CVSS version: 3.1 Attack vector (AV): NETWORK Attack complexity (AC): HIGH Privileges required (PR): LOW User interaction (UI): REQUIRED Scope (S): CHANGED Confidentiality impact (C): HIGH Integrity impact (I): HIGH Availability impact (A): HIGH created 2 months, 3 weeks ago Pgadmin: users authenticated simultaneously via ldap may be attached to the wrong session A vulnerability was found in pgadmin. Users logging into pgAdmin running in server mode using LDAP authentication may be attached to another user's session if multiple connection attempts occur simultaneously. pgadmin <7.0 pkgs.pgadmin4 Administration and development platform for PostgreSQL nixos-24.05 8.6 nixpkgs-24.05-darwin 8.6 nixos-24.05-small 8.6 nixos-24.11 8.12 nixpkgs-24.11-darwin 8.12 nixos-24.11-small 8.12 nixos-unstable 8.12 nixos-unstable-small 8.12 nixpkgs-unstable 8.12 pkgs.pgadmin4-desktopmode Administration and development platform for PostgreSQL. Desktop Mode nixos-24.05 8.6 nixpkgs-24.05-darwin 8.6 nixos-24.05-small 8.6 nixos-24.11 8.12 nixpkgs-24.11-darwin 8.12 nixos-24.11-small 8.12 nixos-unstable 8.12 nixos-unstable-small 8.12 nixpkgs-unstable 8.12 Notify package maintainers: 1 @gador Florian Brandes <florian.brandes@posteo.de>
pkgs.pgadmin4 Administration and development platform for PostgreSQL nixos-24.05 8.6 nixpkgs-24.05-darwin 8.6 nixos-24.05-small 8.6 nixos-24.11 8.12 nixpkgs-24.11-darwin 8.12 nixos-24.11-small 8.12 nixos-unstable 8.12 nixos-unstable-small 8.12 nixpkgs-unstable 8.12
pkgs.pgadmin4-desktopmode Administration and development platform for PostgreSQL. Desktop Mode nixos-24.05 8.6 nixpkgs-24.05-darwin 8.6 nixos-24.05-small 8.6 nixos-24.11 8.12 nixpkgs-24.11-darwin 8.12 nixos-24.11-small 8.12 nixos-unstable 8.12 nixos-unstable-small 8.12 nixpkgs-unstable 8.12
CVE-2024-56826 5.6 MEDIUM CVSS version: 3.1 Attack vector (AV): LOCAL Attack complexity (AC): LOW Privileges required (PR): LOW User interaction (UI): REQUIRED Scope (S): UNCHANGED Confidentiality impact (C): LOW Integrity impact (I): NONE Availability impact (A): HIGH created 2 months, 3 weeks ago Openjpeg: heap buffer overflow in bin/common/color.c A flaw was found in the OpenJPEG project. A heap buffer overflow condition may be triggered when certain options are specified while using the opj_decompress utility. This can lead to an application crash or other undefined behavior. openjpeg openjpeg2 gimp:flatpak/openjpeg2 pkgs.openjpeg Open-source JPEG 2000 codec written in C language nixos-24.05 2.5.2 nixpkgs-24.05-darwin 2.5.2 nixos-24.05-small 2.5.2 nixos-24.11 2.5.2 nixpkgs-24.11-darwin 2.5.2 nixos-24.11-small 2.5.2 nixos-unstable 2.5.2 nixos-unstable-small 2.5.2 nixpkgs-unstable 2.5.2 pkgs.python311Packages.pylibjpeg-openjpeg A J2K and JP2 plugin for pylibjpeg nixos-24.11 2.3.0 nixpkgs-24.11-darwin 2.3.0 nixos-24.11-small 2.3.0 nixos-unstable 2.3.0 nixos-unstable-small 2.3.0 nixpkgs-unstable 2.3.0 pkgs.python312Packages.pylibjpeg-openjpeg A J2K and JP2 plugin for pylibjpeg nixos-24.11 2.3.0 nixpkgs-24.11-darwin 2.3.0 nixos-24.11-small 2.3.0 nixos-unstable 2.3.0 nixos-unstable-small 2.3.0 nixpkgs-unstable 2.3.0 Notify package maintainers: 2 @codyopel Cody Opel <codyopel@gmail.com> @bcdarwin Ben Darwin <bcdarwin@gmail.com>
pkgs.openjpeg Open-source JPEG 2000 codec written in C language nixos-24.05 2.5.2 nixpkgs-24.05-darwin 2.5.2 nixos-24.05-small 2.5.2 nixos-24.11 2.5.2 nixpkgs-24.11-darwin 2.5.2 nixos-24.11-small 2.5.2 nixos-unstable 2.5.2 nixos-unstable-small 2.5.2 nixpkgs-unstable 2.5.2
pkgs.python311Packages.pylibjpeg-openjpeg A J2K and JP2 plugin for pylibjpeg nixos-24.11 2.3.0 nixpkgs-24.11-darwin 2.3.0 nixos-24.11-small 2.3.0 nixos-unstable 2.3.0 nixos-unstable-small 2.3.0 nixpkgs-unstable 2.3.0
pkgs.python312Packages.pylibjpeg-openjpeg A J2K and JP2 plugin for pylibjpeg nixos-24.11 2.3.0 nixpkgs-24.11-darwin 2.3.0 nixos-24.11-small 2.3.0 nixos-unstable 2.3.0 nixos-unstable-small 2.3.0 nixpkgs-unstable 2.3.0
CVE-2022-47183 5.4 MEDIUM CVSS version: 3.1 Attack vector (AV): NETWORK Attack complexity (AC): LOW Privileges required (PR): NONE User interaction (UI): REQUIRED Scope (S): UNCHANGED Confidentiality impact (C): NONE Integrity impact (I): LOW Availability impact (A): LOW created 2 months, 3 weeks ago WordPress Extra Block Design, Style, CSS for ANY Gutenberg Blocks Plugin <= 0.2.6 is vulnerable to Cross Site Request Forgery (CSRF) Cross-Site Request Forgery (CSRF) vulnerability in StylistWP Extra Block Design, Style, CSS for ANY Gutenberg Blocks plugin <= 0.2.6 versions. stylist =<0.2.6 pkgs.haskellPackages.stylist-traits Traits, datatypes, & parsers for Haskell Stylist nixos-24.05 0.1.3.1 nixpkgs-24.05-darwin 0.1.3.1 nixos-24.05-small 0.1.3.1 nixos-24.11 0.1.3.1 nixpkgs-24.11-darwin 0.1.3.1 nixos-24.11-small 0.1.3.1 nixos-unstable 0.1.3.1 nixos-unstable-small 0.1.3.1 nixpkgs-unstable 0.1.3.1
pkgs.haskellPackages.stylist-traits Traits, datatypes, & parsers for Haskell Stylist nixos-24.05 0.1.3.1 nixpkgs-24.05-darwin 0.1.3.1 nixos-24.05-small 0.1.3.1 nixos-24.11 0.1.3.1 nixpkgs-24.11-darwin 0.1.3.1 nixos-24.11-small 0.1.3.1 nixos-unstable 0.1.3.1 nixos-unstable-small 0.1.3.1 nixpkgs-unstable 0.1.3.1
CVE-2023-23668 6.5 MEDIUM CVSS version: 3.1 Attack vector (AV): NETWORK Attack complexity (AC): LOW Privileges required (PR): LOW User interaction (UI): REQUIRED Scope (S): CHANGED Confidentiality impact (C): LOW Integrity impact (I): LOW Availability impact (A): LOW created 2 months, 3 weeks ago WordPress GiveWP Plugin <= 2.25.1 is vulnerable to Cross Site Scripting (XSS) Auth. (contributor+) Stored Cross-Site Scripting (XSS) vulnerability in GiveWP plugin <= 2.25.1 versions. give =<2.25.1 pkgs.filegive Easy p2p file sending program nixos-24.05 2022-05-29 nixpkgs-24.05-darwin 2022-05-29 nixos-24.05-small 2022-05-29 nixos-24.11 2022-05-29 nixpkgs-24.11-darwin 2022-05-29 nixos-24.11-small 2022-05-29 nixos-unstable 2022-05-29 nixos-unstable-small 2022-05-29 nixpkgs-unstable 2022-05-29 Notify package maintainers: 1 @viric Lluís Batlle i Rossell <viric@viric.name>
pkgs.filegive Easy p2p file sending program nixos-24.05 2022-05-29 nixpkgs-24.05-darwin 2022-05-29 nixos-24.05-small 2022-05-29 nixos-24.11 2022-05-29 nixpkgs-24.11-darwin 2022-05-29 nixos-24.11-small 2022-05-29 nixos-unstable 2022-05-29 nixos-unstable-small 2022-05-29 nixpkgs-unstable 2022-05-29
CVE-2024-56827 5.6 MEDIUM CVSS version: 3.1 Attack vector (AV): LOCAL Attack complexity (AC): LOW Privileges required (PR): LOW User interaction (UI): REQUIRED Scope (S): UNCHANGED Confidentiality impact (C): LOW Integrity impact (I): NONE Availability impact (A): HIGH created 2 months, 3 weeks ago Openjpeg: heap buffer overflow in lib/openjp2/j2k.c A flaw was found in the OpenJPEG project. A heap buffer overflow condition may be triggered when certain options are specified while using the opj_decompress utility. This can lead to an application crash or other undefined behavior. openjpeg openjpeg2 gimp:flatpak/openjpeg2 pkgs.openjpeg Open-source JPEG 2000 codec written in C language nixos-24.05 2.5.2 nixpkgs-24.05-darwin 2.5.2 nixos-24.05-small 2.5.2 nixos-24.11 2.5.2 nixpkgs-24.11-darwin 2.5.2 nixos-24.11-small 2.5.2 nixos-unstable 2.5.2 nixos-unstable-small 2.5.2 nixpkgs-unstable 2.5.2 pkgs.python311Packages.pylibjpeg-openjpeg A J2K and JP2 plugin for pylibjpeg nixos-24.11 2.3.0 nixpkgs-24.11-darwin 2.3.0 nixos-24.11-small 2.3.0 nixos-unstable 2.3.0 nixos-unstable-small 2.3.0 nixpkgs-unstable 2.3.0 pkgs.python312Packages.pylibjpeg-openjpeg A J2K and JP2 plugin for pylibjpeg nixos-24.11 2.3.0 nixpkgs-24.11-darwin 2.3.0 nixos-24.11-small 2.3.0 nixos-unstable 2.3.0 nixos-unstable-small 2.3.0 nixpkgs-unstable 2.3.0 Notify package maintainers: 2 @codyopel Cody Opel <codyopel@gmail.com> @bcdarwin Ben Darwin <bcdarwin@gmail.com>
pkgs.openjpeg Open-source JPEG 2000 codec written in C language nixos-24.05 2.5.2 nixpkgs-24.05-darwin 2.5.2 nixos-24.05-small 2.5.2 nixos-24.11 2.5.2 nixpkgs-24.11-darwin 2.5.2 nixos-24.11-small 2.5.2 nixos-unstable 2.5.2 nixos-unstable-small 2.5.2 nixpkgs-unstable 2.5.2
pkgs.python311Packages.pylibjpeg-openjpeg A J2K and JP2 plugin for pylibjpeg nixos-24.11 2.3.0 nixpkgs-24.11-darwin 2.3.0 nixos-24.11-small 2.3.0 nixos-unstable 2.3.0 nixos-unstable-small 2.3.0 nixpkgs-unstable 2.3.0
pkgs.python312Packages.pylibjpeg-openjpeg A J2K and JP2 plugin for pylibjpeg nixos-24.11 2.3.0 nixpkgs-24.11-darwin 2.3.0 nixos-24.11-small 2.3.0 nixos-unstable 2.3.0 nixos-unstable-small 2.3.0 nixpkgs-unstable 2.3.0