Dismissed suggestions Untriaged suggestions Draft issues Published issues Automatically generated suggestions Create Draft to queue a suggestion for refinement. Dismiss to remove a suggestion from the queue. CVE-2024-6501 3.1 LOW CVSS version: 3.1 Attack vector (AV): NETWORK Attack complexity (AC): HIGH Privileges required (PR): NONE User interaction (UI): REQUIRED Scope (S): UNCHANGED Confidentiality impact (C): NONE Integrity impact (I): NONE Availability impact (A): LOW created 3 months ago Networkmanager: denial of service A flaw was found in NetworkManager. When a system running NetworkManager with DEBUG logs enabled and an interface eth1 configured with LLDP enabled, a malicious user could inject a malformed LLDP packet. NetworkManager would crash, leading to a denial of service. NetworkManager <1.48.10-2 * pkgs.networkmanager-l2tp L2TP plugin for NetworkManager nixos-24.05 l2tp-gnome-1.20.16 nixpkgs-24.05-darwin l2tp-gnome-1.20.16 nixos-24.05-small l2tp-gnome-1.20.16 nixos-24.11 l2tp-gnome-1.20.16 nixpkgs-24.11-darwin l2tp-gnome-1.20.16 nixos-24.11-small l2tp-gnome-1.20.16 nixos-unstable l2tp-gnome-1.20.16 nixos-unstable-small l2tp-gnome-1.20.16 nixpkgs-unstable l2tp-gnome-1.20.16 pkgs.networkmanager-sstp NetworkManager's sstp plugin nixos-24.05 1.3.2 nixpkgs-24.05-darwin 1.3.2 nixos-24.05-small 1.3.2 nixos-24.11 1.3.2 nixpkgs-24.11-darwin 1.3.2 nixos-24.11-small 1.3.2 nixos-unstable 1.3.2 nixos-unstable-small 1.3.2 nixpkgs-unstable 1.3.2 pkgs.networkmanager-vpnc NetworkManager's VPNC plugin nixos-24.05 1.2.8 nixpkgs-24.05-darwin 1.2.8 nixos-24.05-small 1.2.8 nixos-24.11 1.2.8 nixpkgs-24.11-darwin 1.2.8 nixos-24.11-small 1.2.8 nixos-unstable 1.2.8 nixos-unstable-small 1.2.8 nixpkgs-unstable 1.2.8 pkgs.networkmanager-iodine NetworkManager's iodine plugin nixos-24.05 2019-11-05 nixpkgs-24.05-darwin 2019-11-05 nixos-24.05-small 2019-11-05 nixos-24.11 1.2.0-unstable-2024-11-02 nixpkgs-24.11-darwin 1.2.0-unstable-2024-11-02 nixos-24.11-small 1.2.0-unstable-2024-11-02 nixos-unstable 1.2.0-unstable-2024-11-02 nixos-unstable-small 1.2.0-unstable-2024-11-02 nixpkgs-unstable 1.2.0-unstable-2024-11-02 pkgs.networkmanager-openvpn NetworkManager's OpenVPN plugin nixos-24.05 1.12.0 nixpkgs-24.05-darwin 1.12.0 nixos-24.05-small 1.12.0 nixos-24.11 1.12.0 nixpkgs-24.11-darwin 1.12.0 nixos-24.11-small 1.12.0 nixos-unstable 1.12.0 nixos-unstable-small 1.12.0 nixpkgs-unstable 1.12.0 pkgs.gnome.networkmanager-l2tp L2TP plugin for NetworkManager nixos-24.05 l2tp-gnome-1.20.16 nixpkgs-24.05-darwin l2tp-gnome-1.20.16 nixos-24.05-small l2tp-gnome-1.20.16 nixos-24.11 l2tp-gnome-1.20.16 nixpkgs-24.11-darwin l2tp-gnome-1.20.16 nixos-24.11-small l2tp-gnome-1.20.16 pkgs.gnome.networkmanager-vpnc NetworkManager's VPNC plugin nixos-24.05 1.2.8 nixpkgs-24.05-darwin 1.2.8 nixos-24.05-small 1.2.8 nixos-24.11 1.2.8 nixpkgs-24.11-darwin 1.2.8 nixos-24.11-small 1.2.8 pkgs.networkmanager_strongswan NetworkManager's strongswan plugin nixos-24.05 1.6.0 nixpkgs-24.05-darwin 1.6.0 nixos-24.05-small 1.6.0 nixos-24.11 1.6.0 nixpkgs-24.11-darwin 1.6.0 nixos-24.11-small 1.6.0 nixos-unstable 1.6.0 nixos-unstable-small 1.6.0 nixpkgs-unstable 1.6.0 pkgs.networkmanager-fortisslvpn NetworkManager’s FortiSSL plugin nixos-24.05 1.4.0 nixpkgs-24.05-darwin 1.4.0 nixos-24.05-small 1.4.0 nixos-24.11 1.4.0 nixpkgs-24.11-darwin 1.4.0 nixos-24.11-small 1.4.0 nixos-unstable 1.4.0 nixos-unstable-small 1.4.0 nixpkgs-unstable 1.4.0 pkgs.networkmanager-openconnect NetworkManager’s OpenConnect plugin nixos-24.05 1.2.10 nixpkgs-24.05-darwin 1.2.10 nixos-24.05-small 1.2.10 nixos-24.11 1.2.10 nixpkgs-24.11-darwin 1.2.10 nixos-24.11-small 1.2.10 nixos-unstable 1.2.10 nixos-unstable-small 1.2.10 nixpkgs-unstable 1.2.10 pkgs.gnome.networkmanager-iodine NetworkManager's iodine plugin nixos-24.05 2019-11-05 nixpkgs-24.05-darwin 2019-11-05 nixos-24.05-small 2019-11-05 nixos-24.11 1.2.0-unstable-2024-11-02 nixpkgs-24.11-darwin 1.2.0-unstable-2024-11-02 nixos-24.11-small 1.2.0-unstable-2024-11-02 pkgs.gnome.networkmanager-openvpn NetworkManager's OpenVPN plugin nixos-24.05 1.12.0 nixpkgs-24.05-darwin 1.12.0 nixos-24.05-small 1.12.0 nixos-24.11 1.12.0 nixpkgs-24.11-darwin 1.12.0 nixos-24.11-small 1.12.0 pkgs.gnome.networkmanager-fortisslvpn NetworkManager’s FortiSSL plugin nixos-24.05 1.4.0 nixpkgs-24.05-darwin 1.4.0 nixos-24.05-small 1.4.0 nixos-24.11 1.4.0 nixpkgs-24.11-darwin 1.4.0 nixos-24.11-small 1.4.0 pkgs.gnome.networkmanager-openconnect NetworkManager’s OpenConnect plugin nixos-24.05 1.2.10 nixpkgs-24.05-darwin 1.2.10 nixos-24.05-small 1.2.10 nixos-24.11 1.2.10 nixpkgs-24.11-darwin 1.2.10 nixos-24.11-small 1.2.10 Notify package maintainers: 4 @obadz obadz <obadz-nixos@obadz.com> @abbradar Nikolay Amiantov <ab@fmap.me> @domenkozar Domen Kozar <domen@dev.si> @jtojnar Jan Tojnar <jtojnar@gmail.com> CVE-2024-56217 4.3 MEDIUM CVSS version: 3.1 Attack vector (AV): NETWORK Attack complexity (AC): LOW Privileges required (PR): LOW User interaction (UI): NONE Scope (S): UNCHANGED Confidentiality impact (C): NONE Integrity impact (I): NONE Availability impact (A): LOW created 3 months ago WordPress Download Manager plugin <= 3.3.03 - Broken Access Control vulnerability Missing Authorization vulnerability in W3 Eden, Inc. Download Manager allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Download Manager: from n/a through 3.3.03. download-manager =<3.3.03 pkgs.lomiri.lomiri-download-manager Performs uploads and downloads from a centralized location nixos-24.05 0.1.3 nixpkgs-24.05-darwin 0.1.3 nixos-24.05-small 0.1.3 nixos-24.11 0.1.3 nixpkgs-24.11-darwin 0.1.3 nixos-24.11-small 0.1.3 nixos-unstable 0.1.3 nixos-unstable-small 0.1.3 nixpkgs-unstable 0.1.3 Notify package maintainers: 1 @OPNA2608 Cosima Neidahl <opna2608@protonmail.com> CVE-2024-7700 6.5 MEDIUM CVSS version: 3.1 Attack vector (AV): LOCAL Attack complexity (AC): LOW Privileges required (PR): HIGH User interaction (UI): REQUIRED Scope (S): UNCHANGED Confidentiality impact (C): HIGH Integrity impact (I): HIGH Availability impact (A): HIGH created 3 months ago Foreman: command injection in "host init config" template via "install packages" field on foreman A command injection flaw was found in the "Host Init Config" template in the Foreman application via the "Install Packages" field on the "Register Host" page. This flaw allows an attacker with the necessary privileges to inject arbitrary commands into the configuration, potentially allowing unauthorized command execution during host registration. Although this issue requires user interaction to execute injected commands, it poses a significant risk if an unsuspecting user runs the generated registration script. foreman pkgs.foreman Process manager for applications with multiple components nixos-24.05 0.87.2 nixpkgs-24.05-darwin 0.87.2 nixos-24.05-small 0.87.2 nixos-24.11 0.87.2 nixpkgs-24.11-darwin 0.87.2 nixos-24.11-small 0.87.2 nixos-unstable 0.87.2 nixos-unstable-small 0.87.2 nixpkgs-unstable 0.87.2 pkgs.emacsPackages.foreman-mode nixos-24.05 20170725.1422 nixpkgs-24.05-darwin 20170725.1422 nixos-24.05-small 20170725.1422 nixos-24.11 20170725.1422 nixpkgs-24.11-darwin 20170725.1422 nixos-24.11-small 20170725.1422 nixos-unstable 20170725.1422 nixos-unstable-small 20170725.1422 nixpkgs-unstable 20170725.1422 Notify package maintainers: 1 @zimbatm zimbatm <zimbatm@zimbatm.com> CVE-2023-3597 5.0 MEDIUM CVSS version: 3.1 Attack vector (AV): NETWORK Attack complexity (AC): HIGH Privileges required (PR): LOW User interaction (UI): NONE Scope (S): UNCHANGED Confidentiality impact (C): LOW Integrity impact (I): LOW Availability impact (A): LOW created 3 months ago Keycloak: secondary factor bypass in step-up authentication A flaw was found in Keycloak, where it does not correctly validate its client step-up authentication in org.keycloak.authentication. This flaw allows a remote user authenticated with a password to register a false second authentication factor along with an existing one and bypass authentication. keycloak <22.0.10 <24.0.3 rhbk/keycloak-rhel9 * rhbk/keycloak-rhel9-operator * rhbk/keycloak-operator-bundle * pkgs.keycloak Identity and access management for modern applications and services nixos-24.05 25.0.6 nixpkgs-24.05-darwin 25.0.6 nixos-24.05-small 25.0.6 nixos-24.11 26.0.6 nixpkgs-24.11-darwin 26.0.7 nixos-24.11-small 26.0.7 nixos-unstable 26.0.6 nixos-unstable-small 26.0.7 nixpkgs-unstable 26.0.6 pkgs.terraform-providers.keycloak nixos-24.05 4.4.0 nixpkgs-24.05-darwin 4.4.0 nixos-24.05-small 4.4.0 nixos-24.11 4.4.0 nixpkgs-24.11-darwin 4.4.0 nixos-24.11-small 4.4.0 nixos-unstable 4.4.0 nixos-unstable-small 4.4.0 nixpkgs-unstable 4.4.0 pkgs.python311Packages.python-keycloak Provides access to the Keycloak API nixos-24.05 4.0.0 nixpkgs-24.05-darwin 4.0.0 nixos-24.05-small 4.0.0 nixos-24.11 4.0.0 nixpkgs-24.11-darwin 4.0.0 nixos-24.11-small 4.0.0 nixos-unstable 4.0.0 nixos-unstable-small 4.0.0 nixpkgs-unstable 4.0.0 pkgs.python312Packages.python-keycloak Provides access to the Keycloak API nixos-24.05 4.0.0 nixpkgs-24.05-darwin 4.0.0 nixos-24.05-small 4.0.0 nixos-24.11 4.0.0 nixpkgs-24.11-darwin 4.0.0 nixos-24.11-small 4.0.0 nixos-unstable 4.0.0 nixos-unstable-small 4.0.0 nixpkgs-unstable 4.0.0 Notify package maintainers: 3 @talyz Kim Lindberger <kim.lindberger@gmail.com> @NickCao Nick Cao <nickcao@nichi.co> @ngerstle Nicholas Gerstle <ngerstle@gmail.com> CVE-2024-9774 created 3 months ago Python-sql: python-sql unary operators does not escape non-expression A vulnerability was found in python-sql where unary operators do not escape non-Expression. python-sql <1.5.2 pkgs.python311Packages.python-sql Library to write SQL queries in a pythonic way nixos-24.05 1.4.3 nixpkgs-24.05-darwin 1.4.3 nixos-24.05-small 1.4.3 nixos-24.11 1.5.1 nixpkgs-24.11-darwin 1.5.1 nixos-24.11-small 1.5.1 nixos-unstable 1.5.1 nixos-unstable-small 1.5.1 nixpkgs-unstable 1.5.1 pkgs.python312Packages.python-sql Library to write SQL queries in a pythonic way nixos-24.05 1.4.3 nixpkgs-24.05-darwin 1.4.3 nixos-24.05-small 1.4.3 nixos-24.11 1.5.1 nixpkgs-24.11-darwin 1.5.1 nixos-24.11-small 1.5.1 nixos-unstable 1.5.1 nixos-unstable-small 1.5.1 nixpkgs-unstable 1.5.1 pkgs.python311Packages.ipython-sql Introduces a %sql (or %%sql) magic nixos-24.05 0.5.0 nixpkgs-24.05-darwin 0.5.0 nixos-24.05-small 0.5.0 nixos-24.11 0.5.0 nixpkgs-24.11-darwin 0.5.0 nixos-24.11-small 0.5.0 nixos-unstable 0.5.0 nixos-unstable-small 0.5.0 nixpkgs-unstable 0.5.0 pkgs.python312Packages.ipython-sql Introduces a %sql (or %%sql) magic nixos-24.11 0.5.0 nixpkgs-24.11-darwin 0.5.0 nixos-24.11-small 0.5.0 nixos-unstable 0.5.0 nixos-unstable-small 0.5.0 nixpkgs-unstable 0.5.0 Notify package maintainers: 2 @johbo Johannes Bornhold <johannes@bornhold.name> @cpcloud Phillip Cloud CVE-2024-45620 3.9 LOW CVSS version: 3.1 Attack vector (AV): PHYSICAL Attack complexity (AC): HIGH Privileges required (PR): NONE User interaction (UI): NONE Scope (S): UNCHANGED Confidentiality impact (C): LOW Integrity impact (I): LOW Availability impact (A): LOW created 3 months, 1 week ago Libopensc: incorrect handling of the length of buffers or files in pkcs15init A vulnerability was found in the pkcs15-init tool in OpenSC. An attacker could use a crafted USB Device or Smart Card, which would present the system with a specially crafted response to APDUs. When buffers are partially filled with data, initialized parts of the buffer can be incorrectly accessed. opensc libopensc pkgs.opensc Set of libraries and utilities to access smart cards nixos-24.05 0.26.0 nixpkgs-24.05-darwin 0.26.0 nixos-24.05-small 0.26.0 nixos-24.11 0.26.0 nixpkgs-24.11-darwin 0.26.0 nixos-24.11-small 0.26.0 nixos-unstable 0.26.0 nixos-unstable-small 0.26.0 nixpkgs-unstable 0.26.0 pkgs.openscad 3D parametric model compiler nixos-24.05 2021.01 nixpkgs-24.05-darwin 2021.01 nixos-24.05-small 2021.01 nixos-24.11 2021.01 nixpkgs-24.11-darwin 2021.01 nixos-24.11-small 2021.01 nixos-unstable 2021.01 nixos-unstable-small 2021.01 nixpkgs-unstable 2021.01 pkgs.openscap NIST Certified SCAP 1.2 toolkit nixos-24.11 1.3.10 nixpkgs-24.11-darwin 1.3.10 nixos-24.11-small 1.3.10 nixos-unstable 1.3.10 nixos-unstable-small 1.3.10 nixpkgs-unstable 1.3.10 pkgs.openscad-lsp LSP (Language Server Protocol) server for OpenSCAD nixos-24.05 1.2.5 nixpkgs-24.05-darwin 1.2.5 nixos-24.05-small 1.2.5 nixos-24.11 1.2.5 nixpkgs-24.11-darwin 1.2.5 nixos-24.11-small 1.2.5 nixos-unstable 1.2.5 nixos-unstable-small 1.2.5 nixpkgs-unstable 1.2.5 pkgs.openscenegraph 3D graphics toolkit nixos-24.05 3.6.5 nixpkgs-24.05-darwin 3.6.5 nixos-24.05-small 3.6.5 nixos-24.11 3.6.5 nixpkgs-24.11-darwin 3.6.5 nixos-24.11-small 3.6.5 nixos-unstable 3.6.5 nixos-unstable-small 3.6.5 nixpkgs-unstable 3.6.5 pkgs.openscad-unstable 3D parametric model compiler (unstable) nixos-24.05 2024-03-10 nixpkgs-24.05-darwin 2024-03-10 nixos-24.05-small 2024-03-10 nixos-24.11 2024-11-10 nixpkgs-24.11-darwin 2024-11-10 nixos-24.11-small 2024-11-10 nixos-unstable 2024-12-06 nixos-unstable-small 2024-12-06 nixpkgs-unstable 2024-12-06 pkgs.vimPlugins.vim-openscad nixos-24.05 2022-07-26 nixpkgs-24.05-darwin 2022-07-26 nixos-24.05-small 2022-07-26 nixos-24.11 2022-07-26 nixpkgs-24.11-darwin 2022-07-26 nixos-24.11-small 2022-07-26 nixos-unstable 2022-07-26 nixos-unstable-small 2022-07-26 nixpkgs-unstable 2022-07-26 pkgs.vimPlugins.openscad-nvim nixos-24.05 2024-04-13 nixpkgs-24.05-darwin 2024-04-13 nixos-24.05-small 2024-04-13 nixos-24.11 2024-04-13 nixpkgs-24.11-darwin 2024-04-13 nixos-24.11-small 2024-04-13 nixos-unstable 2024-04-13 nixos-unstable-small 2024-04-13 nixpkgs-unstable 2024-04-13 pkgs.kakounePlugins.openscad-kak nixos-24.05 2020-12-10 nixpkgs-24.05-darwin 2020-12-10 nixos-24.05-small 2020-12-10 nixos-24.11 2020-12-10 nixpkgs-24.11-darwin 2020-12-10 nixos-24.11-small 2020-12-10 nixos-unstable 2020-12-10 nixos-unstable-small 2020-12-10 nixpkgs-unstable 2020-12-10 pkgs.vscode-extensions.antyos.openscad OpenSCAD highlighting, snippets, and more for VSCode nixos-24.05 1.1.1 nixpkgs-24.05-darwin 1.1.1 nixos-24.05-small 1.1.1 nixos-24.11 1.3.1 nixpkgs-24.11-darwin 1.3.1 nixos-24.11-small 1.3.1 nixos-unstable 1.3.1 nixos-unstable-small 1.3.1 nixpkgs-unstable 1.3.1 Notify package maintainers: 8 @michaeladler Michael Adler <therisen06@gmail.com> @bjornfor Bjørn Forsman <bjorn.forsman@gmail.com> @7c6f434c Michael Raskin <7c6f434c@mail.ru> @gebner Gabriel Ebner <gebner@gebner.org> @Tochiaha Tochukwu Ahanonu <tochiahan@proton.me> @c-h-johnson Charles Johnson <charles@charlesjohnson.name> @aanderse Aaron Andersen <aaron@fosslib.net> @pca006132 pca006132 <john.lck40@gmail.com> CVE-2024-45619 4.3 MEDIUM CVSS version: 3.1 Attack vector (AV): PHYSICAL Attack complexity (AC): LOW Privileges required (PR): NONE User interaction (UI): NONE Scope (S): UNCHANGED Confidentiality impact (C): LOW Integrity impact (I): LOW Availability impact (A): LOW created 3 months, 1 week ago Libopensc: incorrect handling length of buffers or files in libopensc A vulnerability was found in OpenSC, OpenSC tools, PKCS#11 module, minidriver, and CTK. An attacker could use a crafted USB Device or Smart Card, which would present the system with a specially crafted response to APDUs. When buffers are partially filled with data, initialized parts of the buffer can be incorrectly accessed. opensc libopensc pkgs.opensc Set of libraries and utilities to access smart cards nixos-24.05 0.26.0 nixpkgs-24.05-darwin 0.26.0 nixos-24.05-small 0.26.0 nixos-24.11 0.26.0 nixpkgs-24.11-darwin 0.26.0 nixos-24.11-small 0.26.0 nixos-unstable 0.26.0 nixos-unstable-small 0.26.0 nixpkgs-unstable 0.26.0 pkgs.openscad 3D parametric model compiler nixos-24.05 2021.01 nixpkgs-24.05-darwin 2021.01 nixos-24.05-small 2021.01 nixos-24.11 2021.01 nixpkgs-24.11-darwin 2021.01 nixos-24.11-small 2021.01 nixos-unstable 2021.01 nixos-unstable-small 2021.01 nixpkgs-unstable 2021.01 pkgs.openscap NIST Certified SCAP 1.2 toolkit nixos-24.11 1.3.10 nixpkgs-24.11-darwin 1.3.10 nixos-24.11-small 1.3.10 nixos-unstable 1.3.10 nixos-unstable-small 1.3.10 nixpkgs-unstable 1.3.10 pkgs.openscad-lsp LSP (Language Server Protocol) server for OpenSCAD nixos-24.05 1.2.5 nixpkgs-24.05-darwin 1.2.5 nixos-24.05-small 1.2.5 nixos-24.11 1.2.5 nixpkgs-24.11-darwin 1.2.5 nixos-24.11-small 1.2.5 nixos-unstable 1.2.5 nixos-unstable-small 1.2.5 nixpkgs-unstable 1.2.5 pkgs.openscenegraph 3D graphics toolkit nixos-24.05 3.6.5 nixpkgs-24.05-darwin 3.6.5 nixos-24.05-small 3.6.5 nixos-24.11 3.6.5 nixpkgs-24.11-darwin 3.6.5 nixos-24.11-small 3.6.5 nixos-unstable 3.6.5 nixos-unstable-small 3.6.5 nixpkgs-unstable 3.6.5 pkgs.openscad-unstable 3D parametric model compiler (unstable) nixos-24.05 2024-03-10 nixpkgs-24.05-darwin 2024-03-10 nixos-24.05-small 2024-03-10 nixos-24.11 2024-11-10 nixpkgs-24.11-darwin 2024-11-10 nixos-24.11-small 2024-11-10 nixos-unstable 2024-12-06 nixos-unstable-small 2024-12-06 nixpkgs-unstable 2024-12-06 pkgs.vimPlugins.vim-openscad nixos-24.05 2022-07-26 nixpkgs-24.05-darwin 2022-07-26 nixos-24.05-small 2022-07-26 nixos-24.11 2022-07-26 nixpkgs-24.11-darwin 2022-07-26 nixos-24.11-small 2022-07-26 nixos-unstable 2022-07-26 nixos-unstable-small 2022-07-26 nixpkgs-unstable 2022-07-26 pkgs.vimPlugins.openscad-nvim nixos-24.05 2024-04-13 nixpkgs-24.05-darwin 2024-04-13 nixos-24.05-small 2024-04-13 nixos-24.11 2024-04-13 nixpkgs-24.11-darwin 2024-04-13 nixos-24.11-small 2024-04-13 nixos-unstable 2024-04-13 nixos-unstable-small 2024-04-13 nixpkgs-unstable 2024-04-13 pkgs.kakounePlugins.openscad-kak nixos-24.05 2020-12-10 nixpkgs-24.05-darwin 2020-12-10 nixos-24.05-small 2020-12-10 nixos-24.11 2020-12-10 nixpkgs-24.11-darwin 2020-12-10 nixos-24.11-small 2020-12-10 nixos-unstable 2020-12-10 nixos-unstable-small 2020-12-10 nixpkgs-unstable 2020-12-10 pkgs.vscode-extensions.antyos.openscad OpenSCAD highlighting, snippets, and more for VSCode nixos-24.05 1.1.1 nixpkgs-24.05-darwin 1.1.1 nixos-24.05-small 1.1.1 nixos-24.11 1.3.1 nixpkgs-24.11-darwin 1.3.1 nixos-24.11-small 1.3.1 nixos-unstable 1.3.1 nixos-unstable-small 1.3.1 nixpkgs-unstable 1.3.1 Notify package maintainers: 8 @michaeladler Michael Adler <therisen06@gmail.com> @bjornfor Bjørn Forsman <bjorn.forsman@gmail.com> @7c6f434c Michael Raskin <7c6f434c@mail.ru> @gebner Gabriel Ebner <gebner@gebner.org> @Tochiaha Tochukwu Ahanonu <tochiahan@proton.me> @c-h-johnson Charles Johnson <charles@charlesjohnson.name> @aanderse Aaron Andersen <aaron@fosslib.net> @pca006132 pca006132 <john.lck40@gmail.com> CVE-2024-45618 3.9 LOW CVSS version: 3.1 Attack vector (AV): PHYSICAL Attack complexity (AC): HIGH Privileges required (PR): NONE User interaction (UI): NONE Scope (S): UNCHANGED Confidentiality impact (C): LOW Integrity impact (I): LOW Availability impact (A): LOW created 3 months, 1 week ago Libopensc: uninitialized values after incorrect or missing checking return values of functions in pkcs15init A vulnerability was found in pkcs15-init in OpenSC. An attacker could use a crafted USB Device or Smart Card, which would present the system with a specially crafted response to APDUs. Insufficient or missing checking of return values of functions leads to unexpected work with variables that have not been initialized. opensc libopensc pkgs.opensc Set of libraries and utilities to access smart cards nixos-24.05 0.26.0 nixpkgs-24.05-darwin 0.26.0 nixos-24.05-small 0.26.0 nixos-24.11 0.26.0 nixpkgs-24.11-darwin 0.26.0 nixos-24.11-small 0.26.0 nixos-unstable 0.26.0 nixos-unstable-small 0.26.0 nixpkgs-unstable 0.26.0 pkgs.openscad 3D parametric model compiler nixos-24.05 2021.01 nixpkgs-24.05-darwin 2021.01 nixos-24.05-small 2021.01 nixos-24.11 2021.01 nixpkgs-24.11-darwin 2021.01 nixos-24.11-small 2021.01 nixos-unstable 2021.01 nixos-unstable-small 2021.01 nixpkgs-unstable 2021.01 pkgs.openscap NIST Certified SCAP 1.2 toolkit nixos-24.11 1.3.10 nixpkgs-24.11-darwin 1.3.10 nixos-24.11-small 1.3.10 nixos-unstable 1.3.10 nixos-unstable-small 1.3.10 nixpkgs-unstable 1.3.10 pkgs.openscad-lsp LSP (Language Server Protocol) server for OpenSCAD nixos-24.05 1.2.5 nixpkgs-24.05-darwin 1.2.5 nixos-24.05-small 1.2.5 nixos-24.11 1.2.5 nixpkgs-24.11-darwin 1.2.5 nixos-24.11-small 1.2.5 nixos-unstable 1.2.5 nixos-unstable-small 1.2.5 nixpkgs-unstable 1.2.5 pkgs.openscenegraph 3D graphics toolkit nixos-24.05 3.6.5 nixpkgs-24.05-darwin 3.6.5 nixos-24.05-small 3.6.5 nixos-24.11 3.6.5 nixpkgs-24.11-darwin 3.6.5 nixos-24.11-small 3.6.5 nixos-unstable 3.6.5 nixos-unstable-small 3.6.5 nixpkgs-unstable 3.6.5 pkgs.openscad-unstable 3D parametric model compiler (unstable) nixos-24.05 2024-03-10 nixpkgs-24.05-darwin 2024-03-10 nixos-24.05-small 2024-03-10 nixos-24.11 2024-11-10 nixpkgs-24.11-darwin 2024-11-10 nixos-24.11-small 2024-11-10 nixos-unstable 2024-12-06 nixos-unstable-small 2024-12-06 nixpkgs-unstable 2024-12-06 pkgs.vimPlugins.vim-openscad nixos-24.05 2022-07-26 nixpkgs-24.05-darwin 2022-07-26 nixos-24.05-small 2022-07-26 nixos-24.11 2022-07-26 nixpkgs-24.11-darwin 2022-07-26 nixos-24.11-small 2022-07-26 nixos-unstable 2022-07-26 nixos-unstable-small 2022-07-26 nixpkgs-unstable 2022-07-26 pkgs.vimPlugins.openscad-nvim nixos-24.05 2024-04-13 nixpkgs-24.05-darwin 2024-04-13 nixos-24.05-small 2024-04-13 nixos-24.11 2024-04-13 nixpkgs-24.11-darwin 2024-04-13 nixos-24.11-small 2024-04-13 nixos-unstable 2024-04-13 nixos-unstable-small 2024-04-13 nixpkgs-unstable 2024-04-13 pkgs.kakounePlugins.openscad-kak nixos-24.05 2020-12-10 nixpkgs-24.05-darwin 2020-12-10 nixos-24.05-small 2020-12-10 nixos-24.11 2020-12-10 nixpkgs-24.11-darwin 2020-12-10 nixos-24.11-small 2020-12-10 nixos-unstable 2020-12-10 nixos-unstable-small 2020-12-10 nixpkgs-unstable 2020-12-10 pkgs.vscode-extensions.antyos.openscad OpenSCAD highlighting, snippets, and more for VSCode nixos-24.05 1.1.1 nixpkgs-24.05-darwin 1.1.1 nixos-24.05-small 1.1.1 nixos-24.11 1.3.1 nixpkgs-24.11-darwin 1.3.1 nixos-24.11-small 1.3.1 nixos-unstable 1.3.1 nixos-unstable-small 1.3.1 nixpkgs-unstable 1.3.1 Notify package maintainers: 8 @michaeladler Michael Adler <therisen06@gmail.com> @bjornfor Bjørn Forsman <bjorn.forsman@gmail.com> @7c6f434c Michael Raskin <7c6f434c@mail.ru> @gebner Gabriel Ebner <gebner@gebner.org> @Tochiaha Tochukwu Ahanonu <tochiahan@proton.me> @c-h-johnson Charles Johnson <charles@charlesjohnson.name> @aanderse Aaron Andersen <aaron@fosslib.net> @pca006132 pca006132 <john.lck40@gmail.com> CVE-2024-2905 6.2 MEDIUM CVSS version: 3.1 Attack vector (AV): LOCAL Attack complexity (AC): LOW Privileges required (PR): NONE User interaction (UI): NONE Scope (S): UNCHANGED Confidentiality impact (C): HIGH Integrity impact (I): NONE Availability impact (A): NONE created 3 months, 1 week ago Rpm-ostree: world-readable /etc/shadow file A security vulnerability has been discovered within rpm-ostree, pertaining to the /etc/shadow file in default builds having the world-readable bit enabled. This issue arises from the default permissions being set at a higher level than recommended, potentially exposing sensitive authentication data to unauthorized access. rpm-ostree ==1.2024.4 * pkgs.rpm-ostree Hybrid image/package system. It uses OSTree as an image format, and uses RPM as a component model nixos-24.05 2024.6 nixpkgs-24.05-darwin 2024.6 nixos-24.05-small 2024.6 nixos-24.11 2024.8 nixpkgs-24.11-darwin 2024.8 nixos-24.11-small 2024.8 nixos-unstable 2024.8 nixos-unstable-small 2024.8 nixpkgs-unstable 2024.8 Notify package maintainers: 1 @copumpkin Dan Peebles <pumpkingod@gmail.com> CVE-2024-3049 5.9 MEDIUM CVSS version: 3.1 Attack vector (AV): NETWORK Attack complexity (AC): HIGH Privileges required (PR): NONE User interaction (UI): NONE Scope (S): UNCHANGED Confidentiality impact (C): NONE Integrity impact (I): HIGH Availability impact (A): NONE created 3 months, 1 week ago Booth: specially crafted hash can lead to invalid hmac being accepted by booth server A flaw was found in Booth, a cluster ticket manager. If a specially-crafted hash is passed to gcry_md_get_algo_dlen(), it may allow an invalid HMAC to be accepted by the Booth server. booth * ==1.0-283.1 pkgs.libsForQt5.booth Camera application nixos-24.05 1.1.3 nixpkgs-24.05-darwin 1.1.3 nixos-24.05-small 1.1.3 nixos-24.11 1.1.3 nixpkgs-24.11-darwin 1.1.3 nixos-24.11-small 1.1.3 nixos-unstable 1.1.3 nixos-unstable-small 1.1.3 nixpkgs-unstable 1.1.3 pkgs.plasma5Packages.booth Camera application nixos-24.05 1.1.3 nixpkgs-24.05-darwin 1.1.3 nixos-24.05-small 1.1.3 nixos-24.11 1.1.3 nixpkgs-24.11-darwin 1.1.3 nixos-24.11-small 1.1.3 nixos-unstable 1.1.3 nixos-unstable-small 1.1.3 nixpkgs-unstable 1.1.3 Notify package maintainers: 1 @milahu Milan Hauth <milahu@gmail.com>
CVE-2024-6501 3.1 LOW CVSS version: 3.1 Attack vector (AV): NETWORK Attack complexity (AC): HIGH Privileges required (PR): NONE User interaction (UI): REQUIRED Scope (S): UNCHANGED Confidentiality impact (C): NONE Integrity impact (I): NONE Availability impact (A): LOW created 3 months ago Networkmanager: denial of service A flaw was found in NetworkManager. When a system running NetworkManager with DEBUG logs enabled and an interface eth1 configured with LLDP enabled, a malicious user could inject a malformed LLDP packet. NetworkManager would crash, leading to a denial of service. NetworkManager <1.48.10-2 * pkgs.networkmanager-l2tp L2TP plugin for NetworkManager nixos-24.05 l2tp-gnome-1.20.16 nixpkgs-24.05-darwin l2tp-gnome-1.20.16 nixos-24.05-small l2tp-gnome-1.20.16 nixos-24.11 l2tp-gnome-1.20.16 nixpkgs-24.11-darwin l2tp-gnome-1.20.16 nixos-24.11-small l2tp-gnome-1.20.16 nixos-unstable l2tp-gnome-1.20.16 nixos-unstable-small l2tp-gnome-1.20.16 nixpkgs-unstable l2tp-gnome-1.20.16 pkgs.networkmanager-sstp NetworkManager's sstp plugin nixos-24.05 1.3.2 nixpkgs-24.05-darwin 1.3.2 nixos-24.05-small 1.3.2 nixos-24.11 1.3.2 nixpkgs-24.11-darwin 1.3.2 nixos-24.11-small 1.3.2 nixos-unstable 1.3.2 nixos-unstable-small 1.3.2 nixpkgs-unstable 1.3.2 pkgs.networkmanager-vpnc NetworkManager's VPNC plugin nixos-24.05 1.2.8 nixpkgs-24.05-darwin 1.2.8 nixos-24.05-small 1.2.8 nixos-24.11 1.2.8 nixpkgs-24.11-darwin 1.2.8 nixos-24.11-small 1.2.8 nixos-unstable 1.2.8 nixos-unstable-small 1.2.8 nixpkgs-unstable 1.2.8 pkgs.networkmanager-iodine NetworkManager's iodine plugin nixos-24.05 2019-11-05 nixpkgs-24.05-darwin 2019-11-05 nixos-24.05-small 2019-11-05 nixos-24.11 1.2.0-unstable-2024-11-02 nixpkgs-24.11-darwin 1.2.0-unstable-2024-11-02 nixos-24.11-small 1.2.0-unstable-2024-11-02 nixos-unstable 1.2.0-unstable-2024-11-02 nixos-unstable-small 1.2.0-unstable-2024-11-02 nixpkgs-unstable 1.2.0-unstable-2024-11-02 pkgs.networkmanager-openvpn NetworkManager's OpenVPN plugin nixos-24.05 1.12.0 nixpkgs-24.05-darwin 1.12.0 nixos-24.05-small 1.12.0 nixos-24.11 1.12.0 nixpkgs-24.11-darwin 1.12.0 nixos-24.11-small 1.12.0 nixos-unstable 1.12.0 nixos-unstable-small 1.12.0 nixpkgs-unstable 1.12.0 pkgs.gnome.networkmanager-l2tp L2TP plugin for NetworkManager nixos-24.05 l2tp-gnome-1.20.16 nixpkgs-24.05-darwin l2tp-gnome-1.20.16 nixos-24.05-small l2tp-gnome-1.20.16 nixos-24.11 l2tp-gnome-1.20.16 nixpkgs-24.11-darwin l2tp-gnome-1.20.16 nixos-24.11-small l2tp-gnome-1.20.16 pkgs.gnome.networkmanager-vpnc NetworkManager's VPNC plugin nixos-24.05 1.2.8 nixpkgs-24.05-darwin 1.2.8 nixos-24.05-small 1.2.8 nixos-24.11 1.2.8 nixpkgs-24.11-darwin 1.2.8 nixos-24.11-small 1.2.8 pkgs.networkmanager_strongswan NetworkManager's strongswan plugin nixos-24.05 1.6.0 nixpkgs-24.05-darwin 1.6.0 nixos-24.05-small 1.6.0 nixos-24.11 1.6.0 nixpkgs-24.11-darwin 1.6.0 nixos-24.11-small 1.6.0 nixos-unstable 1.6.0 nixos-unstable-small 1.6.0 nixpkgs-unstable 1.6.0 pkgs.networkmanager-fortisslvpn NetworkManager’s FortiSSL plugin nixos-24.05 1.4.0 nixpkgs-24.05-darwin 1.4.0 nixos-24.05-small 1.4.0 nixos-24.11 1.4.0 nixpkgs-24.11-darwin 1.4.0 nixos-24.11-small 1.4.0 nixos-unstable 1.4.0 nixos-unstable-small 1.4.0 nixpkgs-unstable 1.4.0 pkgs.networkmanager-openconnect NetworkManager’s OpenConnect plugin nixos-24.05 1.2.10 nixpkgs-24.05-darwin 1.2.10 nixos-24.05-small 1.2.10 nixos-24.11 1.2.10 nixpkgs-24.11-darwin 1.2.10 nixos-24.11-small 1.2.10 nixos-unstable 1.2.10 nixos-unstable-small 1.2.10 nixpkgs-unstable 1.2.10 pkgs.gnome.networkmanager-iodine NetworkManager's iodine plugin nixos-24.05 2019-11-05 nixpkgs-24.05-darwin 2019-11-05 nixos-24.05-small 2019-11-05 nixos-24.11 1.2.0-unstable-2024-11-02 nixpkgs-24.11-darwin 1.2.0-unstable-2024-11-02 nixos-24.11-small 1.2.0-unstable-2024-11-02 pkgs.gnome.networkmanager-openvpn NetworkManager's OpenVPN plugin nixos-24.05 1.12.0 nixpkgs-24.05-darwin 1.12.0 nixos-24.05-small 1.12.0 nixos-24.11 1.12.0 nixpkgs-24.11-darwin 1.12.0 nixos-24.11-small 1.12.0 pkgs.gnome.networkmanager-fortisslvpn NetworkManager’s FortiSSL plugin nixos-24.05 1.4.0 nixpkgs-24.05-darwin 1.4.0 nixos-24.05-small 1.4.0 nixos-24.11 1.4.0 nixpkgs-24.11-darwin 1.4.0 nixos-24.11-small 1.4.0 pkgs.gnome.networkmanager-openconnect NetworkManager’s OpenConnect plugin nixos-24.05 1.2.10 nixpkgs-24.05-darwin 1.2.10 nixos-24.05-small 1.2.10 nixos-24.11 1.2.10 nixpkgs-24.11-darwin 1.2.10 nixos-24.11-small 1.2.10 Notify package maintainers: 4 @obadz obadz <obadz-nixos@obadz.com> @abbradar Nikolay Amiantov <ab@fmap.me> @domenkozar Domen Kozar <domen@dev.si> @jtojnar Jan Tojnar <jtojnar@gmail.com>
pkgs.networkmanager-l2tp L2TP plugin for NetworkManager nixos-24.05 l2tp-gnome-1.20.16 nixpkgs-24.05-darwin l2tp-gnome-1.20.16 nixos-24.05-small l2tp-gnome-1.20.16 nixos-24.11 l2tp-gnome-1.20.16 nixpkgs-24.11-darwin l2tp-gnome-1.20.16 nixos-24.11-small l2tp-gnome-1.20.16 nixos-unstable l2tp-gnome-1.20.16 nixos-unstable-small l2tp-gnome-1.20.16 nixpkgs-unstable l2tp-gnome-1.20.16
pkgs.networkmanager-sstp NetworkManager's sstp plugin nixos-24.05 1.3.2 nixpkgs-24.05-darwin 1.3.2 nixos-24.05-small 1.3.2 nixos-24.11 1.3.2 nixpkgs-24.11-darwin 1.3.2 nixos-24.11-small 1.3.2 nixos-unstable 1.3.2 nixos-unstable-small 1.3.2 nixpkgs-unstable 1.3.2
pkgs.networkmanager-vpnc NetworkManager's VPNC plugin nixos-24.05 1.2.8 nixpkgs-24.05-darwin 1.2.8 nixos-24.05-small 1.2.8 nixos-24.11 1.2.8 nixpkgs-24.11-darwin 1.2.8 nixos-24.11-small 1.2.8 nixos-unstable 1.2.8 nixos-unstable-small 1.2.8 nixpkgs-unstable 1.2.8
pkgs.networkmanager-iodine NetworkManager's iodine plugin nixos-24.05 2019-11-05 nixpkgs-24.05-darwin 2019-11-05 nixos-24.05-small 2019-11-05 nixos-24.11 1.2.0-unstable-2024-11-02 nixpkgs-24.11-darwin 1.2.0-unstable-2024-11-02 nixos-24.11-small 1.2.0-unstable-2024-11-02 nixos-unstable 1.2.0-unstable-2024-11-02 nixos-unstable-small 1.2.0-unstable-2024-11-02 nixpkgs-unstable 1.2.0-unstable-2024-11-02
pkgs.networkmanager-openvpn NetworkManager's OpenVPN plugin nixos-24.05 1.12.0 nixpkgs-24.05-darwin 1.12.0 nixos-24.05-small 1.12.0 nixos-24.11 1.12.0 nixpkgs-24.11-darwin 1.12.0 nixos-24.11-small 1.12.0 nixos-unstable 1.12.0 nixos-unstable-small 1.12.0 nixpkgs-unstable 1.12.0
pkgs.gnome.networkmanager-l2tp L2TP plugin for NetworkManager nixos-24.05 l2tp-gnome-1.20.16 nixpkgs-24.05-darwin l2tp-gnome-1.20.16 nixos-24.05-small l2tp-gnome-1.20.16 nixos-24.11 l2tp-gnome-1.20.16 nixpkgs-24.11-darwin l2tp-gnome-1.20.16 nixos-24.11-small l2tp-gnome-1.20.16
pkgs.gnome.networkmanager-vpnc NetworkManager's VPNC plugin nixos-24.05 1.2.8 nixpkgs-24.05-darwin 1.2.8 nixos-24.05-small 1.2.8 nixos-24.11 1.2.8 nixpkgs-24.11-darwin 1.2.8 nixos-24.11-small 1.2.8
pkgs.networkmanager_strongswan NetworkManager's strongswan plugin nixos-24.05 1.6.0 nixpkgs-24.05-darwin 1.6.0 nixos-24.05-small 1.6.0 nixos-24.11 1.6.0 nixpkgs-24.11-darwin 1.6.0 nixos-24.11-small 1.6.0 nixos-unstable 1.6.0 nixos-unstable-small 1.6.0 nixpkgs-unstable 1.6.0
pkgs.networkmanager-fortisslvpn NetworkManager’s FortiSSL plugin nixos-24.05 1.4.0 nixpkgs-24.05-darwin 1.4.0 nixos-24.05-small 1.4.0 nixos-24.11 1.4.0 nixpkgs-24.11-darwin 1.4.0 nixos-24.11-small 1.4.0 nixos-unstable 1.4.0 nixos-unstable-small 1.4.0 nixpkgs-unstable 1.4.0
pkgs.networkmanager-openconnect NetworkManager’s OpenConnect plugin nixos-24.05 1.2.10 nixpkgs-24.05-darwin 1.2.10 nixos-24.05-small 1.2.10 nixos-24.11 1.2.10 nixpkgs-24.11-darwin 1.2.10 nixos-24.11-small 1.2.10 nixos-unstable 1.2.10 nixos-unstable-small 1.2.10 nixpkgs-unstable 1.2.10
pkgs.gnome.networkmanager-iodine NetworkManager's iodine plugin nixos-24.05 2019-11-05 nixpkgs-24.05-darwin 2019-11-05 nixos-24.05-small 2019-11-05 nixos-24.11 1.2.0-unstable-2024-11-02 nixpkgs-24.11-darwin 1.2.0-unstable-2024-11-02 nixos-24.11-small 1.2.0-unstable-2024-11-02
pkgs.gnome.networkmanager-openvpn NetworkManager's OpenVPN plugin nixos-24.05 1.12.0 nixpkgs-24.05-darwin 1.12.0 nixos-24.05-small 1.12.0 nixos-24.11 1.12.0 nixpkgs-24.11-darwin 1.12.0 nixos-24.11-small 1.12.0
pkgs.gnome.networkmanager-fortisslvpn NetworkManager’s FortiSSL plugin nixos-24.05 1.4.0 nixpkgs-24.05-darwin 1.4.0 nixos-24.05-small 1.4.0 nixos-24.11 1.4.0 nixpkgs-24.11-darwin 1.4.0 nixos-24.11-small 1.4.0
pkgs.gnome.networkmanager-openconnect NetworkManager’s OpenConnect plugin nixos-24.05 1.2.10 nixpkgs-24.05-darwin 1.2.10 nixos-24.05-small 1.2.10 nixos-24.11 1.2.10 nixpkgs-24.11-darwin 1.2.10 nixos-24.11-small 1.2.10
CVE-2024-56217 4.3 MEDIUM CVSS version: 3.1 Attack vector (AV): NETWORK Attack complexity (AC): LOW Privileges required (PR): LOW User interaction (UI): NONE Scope (S): UNCHANGED Confidentiality impact (C): NONE Integrity impact (I): NONE Availability impact (A): LOW created 3 months ago WordPress Download Manager plugin <= 3.3.03 - Broken Access Control vulnerability Missing Authorization vulnerability in W3 Eden, Inc. Download Manager allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Download Manager: from n/a through 3.3.03. download-manager =<3.3.03 pkgs.lomiri.lomiri-download-manager Performs uploads and downloads from a centralized location nixos-24.05 0.1.3 nixpkgs-24.05-darwin 0.1.3 nixos-24.05-small 0.1.3 nixos-24.11 0.1.3 nixpkgs-24.11-darwin 0.1.3 nixos-24.11-small 0.1.3 nixos-unstable 0.1.3 nixos-unstable-small 0.1.3 nixpkgs-unstable 0.1.3 Notify package maintainers: 1 @OPNA2608 Cosima Neidahl <opna2608@protonmail.com>
pkgs.lomiri.lomiri-download-manager Performs uploads and downloads from a centralized location nixos-24.05 0.1.3 nixpkgs-24.05-darwin 0.1.3 nixos-24.05-small 0.1.3 nixos-24.11 0.1.3 nixpkgs-24.11-darwin 0.1.3 nixos-24.11-small 0.1.3 nixos-unstable 0.1.3 nixos-unstable-small 0.1.3 nixpkgs-unstable 0.1.3
CVE-2024-7700 6.5 MEDIUM CVSS version: 3.1 Attack vector (AV): LOCAL Attack complexity (AC): LOW Privileges required (PR): HIGH User interaction (UI): REQUIRED Scope (S): UNCHANGED Confidentiality impact (C): HIGH Integrity impact (I): HIGH Availability impact (A): HIGH created 3 months ago Foreman: command injection in "host init config" template via "install packages" field on foreman A command injection flaw was found in the "Host Init Config" template in the Foreman application via the "Install Packages" field on the "Register Host" page. This flaw allows an attacker with the necessary privileges to inject arbitrary commands into the configuration, potentially allowing unauthorized command execution during host registration. Although this issue requires user interaction to execute injected commands, it poses a significant risk if an unsuspecting user runs the generated registration script. foreman pkgs.foreman Process manager for applications with multiple components nixos-24.05 0.87.2 nixpkgs-24.05-darwin 0.87.2 nixos-24.05-small 0.87.2 nixos-24.11 0.87.2 nixpkgs-24.11-darwin 0.87.2 nixos-24.11-small 0.87.2 nixos-unstable 0.87.2 nixos-unstable-small 0.87.2 nixpkgs-unstable 0.87.2 pkgs.emacsPackages.foreman-mode nixos-24.05 20170725.1422 nixpkgs-24.05-darwin 20170725.1422 nixos-24.05-small 20170725.1422 nixos-24.11 20170725.1422 nixpkgs-24.11-darwin 20170725.1422 nixos-24.11-small 20170725.1422 nixos-unstable 20170725.1422 nixos-unstable-small 20170725.1422 nixpkgs-unstable 20170725.1422 Notify package maintainers: 1 @zimbatm zimbatm <zimbatm@zimbatm.com>
pkgs.foreman Process manager for applications with multiple components nixos-24.05 0.87.2 nixpkgs-24.05-darwin 0.87.2 nixos-24.05-small 0.87.2 nixos-24.11 0.87.2 nixpkgs-24.11-darwin 0.87.2 nixos-24.11-small 0.87.2 nixos-unstable 0.87.2 nixos-unstable-small 0.87.2 nixpkgs-unstable 0.87.2
pkgs.emacsPackages.foreman-mode nixos-24.05 20170725.1422 nixpkgs-24.05-darwin 20170725.1422 nixos-24.05-small 20170725.1422 nixos-24.11 20170725.1422 nixpkgs-24.11-darwin 20170725.1422 nixos-24.11-small 20170725.1422 nixos-unstable 20170725.1422 nixos-unstable-small 20170725.1422 nixpkgs-unstable 20170725.1422
CVE-2023-3597 5.0 MEDIUM CVSS version: 3.1 Attack vector (AV): NETWORK Attack complexity (AC): HIGH Privileges required (PR): LOW User interaction (UI): NONE Scope (S): UNCHANGED Confidentiality impact (C): LOW Integrity impact (I): LOW Availability impact (A): LOW created 3 months ago Keycloak: secondary factor bypass in step-up authentication A flaw was found in Keycloak, where it does not correctly validate its client step-up authentication in org.keycloak.authentication. This flaw allows a remote user authenticated with a password to register a false second authentication factor along with an existing one and bypass authentication. keycloak <22.0.10 <24.0.3 rhbk/keycloak-rhel9 * rhbk/keycloak-rhel9-operator * rhbk/keycloak-operator-bundle * pkgs.keycloak Identity and access management for modern applications and services nixos-24.05 25.0.6 nixpkgs-24.05-darwin 25.0.6 nixos-24.05-small 25.0.6 nixos-24.11 26.0.6 nixpkgs-24.11-darwin 26.0.7 nixos-24.11-small 26.0.7 nixos-unstable 26.0.6 nixos-unstable-small 26.0.7 nixpkgs-unstable 26.0.6 pkgs.terraform-providers.keycloak nixos-24.05 4.4.0 nixpkgs-24.05-darwin 4.4.0 nixos-24.05-small 4.4.0 nixos-24.11 4.4.0 nixpkgs-24.11-darwin 4.4.0 nixos-24.11-small 4.4.0 nixos-unstable 4.4.0 nixos-unstable-small 4.4.0 nixpkgs-unstable 4.4.0 pkgs.python311Packages.python-keycloak Provides access to the Keycloak API nixos-24.05 4.0.0 nixpkgs-24.05-darwin 4.0.0 nixos-24.05-small 4.0.0 nixos-24.11 4.0.0 nixpkgs-24.11-darwin 4.0.0 nixos-24.11-small 4.0.0 nixos-unstable 4.0.0 nixos-unstable-small 4.0.0 nixpkgs-unstable 4.0.0 pkgs.python312Packages.python-keycloak Provides access to the Keycloak API nixos-24.05 4.0.0 nixpkgs-24.05-darwin 4.0.0 nixos-24.05-small 4.0.0 nixos-24.11 4.0.0 nixpkgs-24.11-darwin 4.0.0 nixos-24.11-small 4.0.0 nixos-unstable 4.0.0 nixos-unstable-small 4.0.0 nixpkgs-unstable 4.0.0 Notify package maintainers: 3 @talyz Kim Lindberger <kim.lindberger@gmail.com> @NickCao Nick Cao <nickcao@nichi.co> @ngerstle Nicholas Gerstle <ngerstle@gmail.com>
pkgs.keycloak Identity and access management for modern applications and services nixos-24.05 25.0.6 nixpkgs-24.05-darwin 25.0.6 nixos-24.05-small 25.0.6 nixos-24.11 26.0.6 nixpkgs-24.11-darwin 26.0.7 nixos-24.11-small 26.0.7 nixos-unstable 26.0.6 nixos-unstable-small 26.0.7 nixpkgs-unstable 26.0.6
pkgs.terraform-providers.keycloak nixos-24.05 4.4.0 nixpkgs-24.05-darwin 4.4.0 nixos-24.05-small 4.4.0 nixos-24.11 4.4.0 nixpkgs-24.11-darwin 4.4.0 nixos-24.11-small 4.4.0 nixos-unstable 4.4.0 nixos-unstable-small 4.4.0 nixpkgs-unstable 4.4.0
pkgs.python311Packages.python-keycloak Provides access to the Keycloak API nixos-24.05 4.0.0 nixpkgs-24.05-darwin 4.0.0 nixos-24.05-small 4.0.0 nixos-24.11 4.0.0 nixpkgs-24.11-darwin 4.0.0 nixos-24.11-small 4.0.0 nixos-unstable 4.0.0 nixos-unstable-small 4.0.0 nixpkgs-unstable 4.0.0
pkgs.python312Packages.python-keycloak Provides access to the Keycloak API nixos-24.05 4.0.0 nixpkgs-24.05-darwin 4.0.0 nixos-24.05-small 4.0.0 nixos-24.11 4.0.0 nixpkgs-24.11-darwin 4.0.0 nixos-24.11-small 4.0.0 nixos-unstable 4.0.0 nixos-unstable-small 4.0.0 nixpkgs-unstable 4.0.0
CVE-2024-9774 created 3 months ago Python-sql: python-sql unary operators does not escape non-expression A vulnerability was found in python-sql where unary operators do not escape non-Expression. python-sql <1.5.2 pkgs.python311Packages.python-sql Library to write SQL queries in a pythonic way nixos-24.05 1.4.3 nixpkgs-24.05-darwin 1.4.3 nixos-24.05-small 1.4.3 nixos-24.11 1.5.1 nixpkgs-24.11-darwin 1.5.1 nixos-24.11-small 1.5.1 nixos-unstable 1.5.1 nixos-unstable-small 1.5.1 nixpkgs-unstable 1.5.1 pkgs.python312Packages.python-sql Library to write SQL queries in a pythonic way nixos-24.05 1.4.3 nixpkgs-24.05-darwin 1.4.3 nixos-24.05-small 1.4.3 nixos-24.11 1.5.1 nixpkgs-24.11-darwin 1.5.1 nixos-24.11-small 1.5.1 nixos-unstable 1.5.1 nixos-unstable-small 1.5.1 nixpkgs-unstable 1.5.1 pkgs.python311Packages.ipython-sql Introduces a %sql (or %%sql) magic nixos-24.05 0.5.0 nixpkgs-24.05-darwin 0.5.0 nixos-24.05-small 0.5.0 nixos-24.11 0.5.0 nixpkgs-24.11-darwin 0.5.0 nixos-24.11-small 0.5.0 nixos-unstable 0.5.0 nixos-unstable-small 0.5.0 nixpkgs-unstable 0.5.0 pkgs.python312Packages.ipython-sql Introduces a %sql (or %%sql) magic nixos-24.11 0.5.0 nixpkgs-24.11-darwin 0.5.0 nixos-24.11-small 0.5.0 nixos-unstable 0.5.0 nixos-unstable-small 0.5.0 nixpkgs-unstable 0.5.0 Notify package maintainers: 2 @johbo Johannes Bornhold <johannes@bornhold.name> @cpcloud Phillip Cloud
pkgs.python311Packages.python-sql Library to write SQL queries in a pythonic way nixos-24.05 1.4.3 nixpkgs-24.05-darwin 1.4.3 nixos-24.05-small 1.4.3 nixos-24.11 1.5.1 nixpkgs-24.11-darwin 1.5.1 nixos-24.11-small 1.5.1 nixos-unstable 1.5.1 nixos-unstable-small 1.5.1 nixpkgs-unstable 1.5.1
pkgs.python312Packages.python-sql Library to write SQL queries in a pythonic way nixos-24.05 1.4.3 nixpkgs-24.05-darwin 1.4.3 nixos-24.05-small 1.4.3 nixos-24.11 1.5.1 nixpkgs-24.11-darwin 1.5.1 nixos-24.11-small 1.5.1 nixos-unstable 1.5.1 nixos-unstable-small 1.5.1 nixpkgs-unstable 1.5.1
pkgs.python311Packages.ipython-sql Introduces a %sql (or %%sql) magic nixos-24.05 0.5.0 nixpkgs-24.05-darwin 0.5.0 nixos-24.05-small 0.5.0 nixos-24.11 0.5.0 nixpkgs-24.11-darwin 0.5.0 nixos-24.11-small 0.5.0 nixos-unstable 0.5.0 nixos-unstable-small 0.5.0 nixpkgs-unstable 0.5.0
pkgs.python312Packages.ipython-sql Introduces a %sql (or %%sql) magic nixos-24.11 0.5.0 nixpkgs-24.11-darwin 0.5.0 nixos-24.11-small 0.5.0 nixos-unstable 0.5.0 nixos-unstable-small 0.5.0 nixpkgs-unstable 0.5.0
CVE-2024-45620 3.9 LOW CVSS version: 3.1 Attack vector (AV): PHYSICAL Attack complexity (AC): HIGH Privileges required (PR): NONE User interaction (UI): NONE Scope (S): UNCHANGED Confidentiality impact (C): LOW Integrity impact (I): LOW Availability impact (A): LOW created 3 months, 1 week ago Libopensc: incorrect handling of the length of buffers or files in pkcs15init A vulnerability was found in the pkcs15-init tool in OpenSC. An attacker could use a crafted USB Device or Smart Card, which would present the system with a specially crafted response to APDUs. When buffers are partially filled with data, initialized parts of the buffer can be incorrectly accessed. opensc libopensc pkgs.opensc Set of libraries and utilities to access smart cards nixos-24.05 0.26.0 nixpkgs-24.05-darwin 0.26.0 nixos-24.05-small 0.26.0 nixos-24.11 0.26.0 nixpkgs-24.11-darwin 0.26.0 nixos-24.11-small 0.26.0 nixos-unstable 0.26.0 nixos-unstable-small 0.26.0 nixpkgs-unstable 0.26.0 pkgs.openscad 3D parametric model compiler nixos-24.05 2021.01 nixpkgs-24.05-darwin 2021.01 nixos-24.05-small 2021.01 nixos-24.11 2021.01 nixpkgs-24.11-darwin 2021.01 nixos-24.11-small 2021.01 nixos-unstable 2021.01 nixos-unstable-small 2021.01 nixpkgs-unstable 2021.01 pkgs.openscap NIST Certified SCAP 1.2 toolkit nixos-24.11 1.3.10 nixpkgs-24.11-darwin 1.3.10 nixos-24.11-small 1.3.10 nixos-unstable 1.3.10 nixos-unstable-small 1.3.10 nixpkgs-unstable 1.3.10 pkgs.openscad-lsp LSP (Language Server Protocol) server for OpenSCAD nixos-24.05 1.2.5 nixpkgs-24.05-darwin 1.2.5 nixos-24.05-small 1.2.5 nixos-24.11 1.2.5 nixpkgs-24.11-darwin 1.2.5 nixos-24.11-small 1.2.5 nixos-unstable 1.2.5 nixos-unstable-small 1.2.5 nixpkgs-unstable 1.2.5 pkgs.openscenegraph 3D graphics toolkit nixos-24.05 3.6.5 nixpkgs-24.05-darwin 3.6.5 nixos-24.05-small 3.6.5 nixos-24.11 3.6.5 nixpkgs-24.11-darwin 3.6.5 nixos-24.11-small 3.6.5 nixos-unstable 3.6.5 nixos-unstable-small 3.6.5 nixpkgs-unstable 3.6.5 pkgs.openscad-unstable 3D parametric model compiler (unstable) nixos-24.05 2024-03-10 nixpkgs-24.05-darwin 2024-03-10 nixos-24.05-small 2024-03-10 nixos-24.11 2024-11-10 nixpkgs-24.11-darwin 2024-11-10 nixos-24.11-small 2024-11-10 nixos-unstable 2024-12-06 nixos-unstable-small 2024-12-06 nixpkgs-unstable 2024-12-06 pkgs.vimPlugins.vim-openscad nixos-24.05 2022-07-26 nixpkgs-24.05-darwin 2022-07-26 nixos-24.05-small 2022-07-26 nixos-24.11 2022-07-26 nixpkgs-24.11-darwin 2022-07-26 nixos-24.11-small 2022-07-26 nixos-unstable 2022-07-26 nixos-unstable-small 2022-07-26 nixpkgs-unstable 2022-07-26 pkgs.vimPlugins.openscad-nvim nixos-24.05 2024-04-13 nixpkgs-24.05-darwin 2024-04-13 nixos-24.05-small 2024-04-13 nixos-24.11 2024-04-13 nixpkgs-24.11-darwin 2024-04-13 nixos-24.11-small 2024-04-13 nixos-unstable 2024-04-13 nixos-unstable-small 2024-04-13 nixpkgs-unstable 2024-04-13 pkgs.kakounePlugins.openscad-kak nixos-24.05 2020-12-10 nixpkgs-24.05-darwin 2020-12-10 nixos-24.05-small 2020-12-10 nixos-24.11 2020-12-10 nixpkgs-24.11-darwin 2020-12-10 nixos-24.11-small 2020-12-10 nixos-unstable 2020-12-10 nixos-unstable-small 2020-12-10 nixpkgs-unstable 2020-12-10 pkgs.vscode-extensions.antyos.openscad OpenSCAD highlighting, snippets, and more for VSCode nixos-24.05 1.1.1 nixpkgs-24.05-darwin 1.1.1 nixos-24.05-small 1.1.1 nixos-24.11 1.3.1 nixpkgs-24.11-darwin 1.3.1 nixos-24.11-small 1.3.1 nixos-unstable 1.3.1 nixos-unstable-small 1.3.1 nixpkgs-unstable 1.3.1 Notify package maintainers: 8 @michaeladler Michael Adler <therisen06@gmail.com> @bjornfor Bjørn Forsman <bjorn.forsman@gmail.com> @7c6f434c Michael Raskin <7c6f434c@mail.ru> @gebner Gabriel Ebner <gebner@gebner.org> @Tochiaha Tochukwu Ahanonu <tochiahan@proton.me> @c-h-johnson Charles Johnson <charles@charlesjohnson.name> @aanderse Aaron Andersen <aaron@fosslib.net> @pca006132 pca006132 <john.lck40@gmail.com>
pkgs.opensc Set of libraries and utilities to access smart cards nixos-24.05 0.26.0 nixpkgs-24.05-darwin 0.26.0 nixos-24.05-small 0.26.0 nixos-24.11 0.26.0 nixpkgs-24.11-darwin 0.26.0 nixos-24.11-small 0.26.0 nixos-unstable 0.26.0 nixos-unstable-small 0.26.0 nixpkgs-unstable 0.26.0
pkgs.openscad 3D parametric model compiler nixos-24.05 2021.01 nixpkgs-24.05-darwin 2021.01 nixos-24.05-small 2021.01 nixos-24.11 2021.01 nixpkgs-24.11-darwin 2021.01 nixos-24.11-small 2021.01 nixos-unstable 2021.01 nixos-unstable-small 2021.01 nixpkgs-unstable 2021.01
pkgs.openscap NIST Certified SCAP 1.2 toolkit nixos-24.11 1.3.10 nixpkgs-24.11-darwin 1.3.10 nixos-24.11-small 1.3.10 nixos-unstable 1.3.10 nixos-unstable-small 1.3.10 nixpkgs-unstable 1.3.10
pkgs.openscad-lsp LSP (Language Server Protocol) server for OpenSCAD nixos-24.05 1.2.5 nixpkgs-24.05-darwin 1.2.5 nixos-24.05-small 1.2.5 nixos-24.11 1.2.5 nixpkgs-24.11-darwin 1.2.5 nixos-24.11-small 1.2.5 nixos-unstable 1.2.5 nixos-unstable-small 1.2.5 nixpkgs-unstable 1.2.5
pkgs.openscenegraph 3D graphics toolkit nixos-24.05 3.6.5 nixpkgs-24.05-darwin 3.6.5 nixos-24.05-small 3.6.5 nixos-24.11 3.6.5 nixpkgs-24.11-darwin 3.6.5 nixos-24.11-small 3.6.5 nixos-unstable 3.6.5 nixos-unstable-small 3.6.5 nixpkgs-unstable 3.6.5
pkgs.openscad-unstable 3D parametric model compiler (unstable) nixos-24.05 2024-03-10 nixpkgs-24.05-darwin 2024-03-10 nixos-24.05-small 2024-03-10 nixos-24.11 2024-11-10 nixpkgs-24.11-darwin 2024-11-10 nixos-24.11-small 2024-11-10 nixos-unstable 2024-12-06 nixos-unstable-small 2024-12-06 nixpkgs-unstable 2024-12-06
pkgs.vimPlugins.vim-openscad nixos-24.05 2022-07-26 nixpkgs-24.05-darwin 2022-07-26 nixos-24.05-small 2022-07-26 nixos-24.11 2022-07-26 nixpkgs-24.11-darwin 2022-07-26 nixos-24.11-small 2022-07-26 nixos-unstable 2022-07-26 nixos-unstable-small 2022-07-26 nixpkgs-unstable 2022-07-26
pkgs.vimPlugins.openscad-nvim nixos-24.05 2024-04-13 nixpkgs-24.05-darwin 2024-04-13 nixos-24.05-small 2024-04-13 nixos-24.11 2024-04-13 nixpkgs-24.11-darwin 2024-04-13 nixos-24.11-small 2024-04-13 nixos-unstable 2024-04-13 nixos-unstable-small 2024-04-13 nixpkgs-unstable 2024-04-13
pkgs.kakounePlugins.openscad-kak nixos-24.05 2020-12-10 nixpkgs-24.05-darwin 2020-12-10 nixos-24.05-small 2020-12-10 nixos-24.11 2020-12-10 nixpkgs-24.11-darwin 2020-12-10 nixos-24.11-small 2020-12-10 nixos-unstable 2020-12-10 nixos-unstable-small 2020-12-10 nixpkgs-unstable 2020-12-10
pkgs.vscode-extensions.antyos.openscad OpenSCAD highlighting, snippets, and more for VSCode nixos-24.05 1.1.1 nixpkgs-24.05-darwin 1.1.1 nixos-24.05-small 1.1.1 nixos-24.11 1.3.1 nixpkgs-24.11-darwin 1.3.1 nixos-24.11-small 1.3.1 nixos-unstable 1.3.1 nixos-unstable-small 1.3.1 nixpkgs-unstable 1.3.1
CVE-2024-45619 4.3 MEDIUM CVSS version: 3.1 Attack vector (AV): PHYSICAL Attack complexity (AC): LOW Privileges required (PR): NONE User interaction (UI): NONE Scope (S): UNCHANGED Confidentiality impact (C): LOW Integrity impact (I): LOW Availability impact (A): LOW created 3 months, 1 week ago Libopensc: incorrect handling length of buffers or files in libopensc A vulnerability was found in OpenSC, OpenSC tools, PKCS#11 module, minidriver, and CTK. An attacker could use a crafted USB Device or Smart Card, which would present the system with a specially crafted response to APDUs. When buffers are partially filled with data, initialized parts of the buffer can be incorrectly accessed. opensc libopensc pkgs.opensc Set of libraries and utilities to access smart cards nixos-24.05 0.26.0 nixpkgs-24.05-darwin 0.26.0 nixos-24.05-small 0.26.0 nixos-24.11 0.26.0 nixpkgs-24.11-darwin 0.26.0 nixos-24.11-small 0.26.0 nixos-unstable 0.26.0 nixos-unstable-small 0.26.0 nixpkgs-unstable 0.26.0 pkgs.openscad 3D parametric model compiler nixos-24.05 2021.01 nixpkgs-24.05-darwin 2021.01 nixos-24.05-small 2021.01 nixos-24.11 2021.01 nixpkgs-24.11-darwin 2021.01 nixos-24.11-small 2021.01 nixos-unstable 2021.01 nixos-unstable-small 2021.01 nixpkgs-unstable 2021.01 pkgs.openscap NIST Certified SCAP 1.2 toolkit nixos-24.11 1.3.10 nixpkgs-24.11-darwin 1.3.10 nixos-24.11-small 1.3.10 nixos-unstable 1.3.10 nixos-unstable-small 1.3.10 nixpkgs-unstable 1.3.10 pkgs.openscad-lsp LSP (Language Server Protocol) server for OpenSCAD nixos-24.05 1.2.5 nixpkgs-24.05-darwin 1.2.5 nixos-24.05-small 1.2.5 nixos-24.11 1.2.5 nixpkgs-24.11-darwin 1.2.5 nixos-24.11-small 1.2.5 nixos-unstable 1.2.5 nixos-unstable-small 1.2.5 nixpkgs-unstable 1.2.5 pkgs.openscenegraph 3D graphics toolkit nixos-24.05 3.6.5 nixpkgs-24.05-darwin 3.6.5 nixos-24.05-small 3.6.5 nixos-24.11 3.6.5 nixpkgs-24.11-darwin 3.6.5 nixos-24.11-small 3.6.5 nixos-unstable 3.6.5 nixos-unstable-small 3.6.5 nixpkgs-unstable 3.6.5 pkgs.openscad-unstable 3D parametric model compiler (unstable) nixos-24.05 2024-03-10 nixpkgs-24.05-darwin 2024-03-10 nixos-24.05-small 2024-03-10 nixos-24.11 2024-11-10 nixpkgs-24.11-darwin 2024-11-10 nixos-24.11-small 2024-11-10 nixos-unstable 2024-12-06 nixos-unstable-small 2024-12-06 nixpkgs-unstable 2024-12-06 pkgs.vimPlugins.vim-openscad nixos-24.05 2022-07-26 nixpkgs-24.05-darwin 2022-07-26 nixos-24.05-small 2022-07-26 nixos-24.11 2022-07-26 nixpkgs-24.11-darwin 2022-07-26 nixos-24.11-small 2022-07-26 nixos-unstable 2022-07-26 nixos-unstable-small 2022-07-26 nixpkgs-unstable 2022-07-26 pkgs.vimPlugins.openscad-nvim nixos-24.05 2024-04-13 nixpkgs-24.05-darwin 2024-04-13 nixos-24.05-small 2024-04-13 nixos-24.11 2024-04-13 nixpkgs-24.11-darwin 2024-04-13 nixos-24.11-small 2024-04-13 nixos-unstable 2024-04-13 nixos-unstable-small 2024-04-13 nixpkgs-unstable 2024-04-13 pkgs.kakounePlugins.openscad-kak nixos-24.05 2020-12-10 nixpkgs-24.05-darwin 2020-12-10 nixos-24.05-small 2020-12-10 nixos-24.11 2020-12-10 nixpkgs-24.11-darwin 2020-12-10 nixos-24.11-small 2020-12-10 nixos-unstable 2020-12-10 nixos-unstable-small 2020-12-10 nixpkgs-unstable 2020-12-10 pkgs.vscode-extensions.antyos.openscad OpenSCAD highlighting, snippets, and more for VSCode nixos-24.05 1.1.1 nixpkgs-24.05-darwin 1.1.1 nixos-24.05-small 1.1.1 nixos-24.11 1.3.1 nixpkgs-24.11-darwin 1.3.1 nixos-24.11-small 1.3.1 nixos-unstable 1.3.1 nixos-unstable-small 1.3.1 nixpkgs-unstable 1.3.1 Notify package maintainers: 8 @michaeladler Michael Adler <therisen06@gmail.com> @bjornfor Bjørn Forsman <bjorn.forsman@gmail.com> @7c6f434c Michael Raskin <7c6f434c@mail.ru> @gebner Gabriel Ebner <gebner@gebner.org> @Tochiaha Tochukwu Ahanonu <tochiahan@proton.me> @c-h-johnson Charles Johnson <charles@charlesjohnson.name> @aanderse Aaron Andersen <aaron@fosslib.net> @pca006132 pca006132 <john.lck40@gmail.com>
pkgs.opensc Set of libraries and utilities to access smart cards nixos-24.05 0.26.0 nixpkgs-24.05-darwin 0.26.0 nixos-24.05-small 0.26.0 nixos-24.11 0.26.0 nixpkgs-24.11-darwin 0.26.0 nixos-24.11-small 0.26.0 nixos-unstable 0.26.0 nixos-unstable-small 0.26.0 nixpkgs-unstable 0.26.0
pkgs.openscad 3D parametric model compiler nixos-24.05 2021.01 nixpkgs-24.05-darwin 2021.01 nixos-24.05-small 2021.01 nixos-24.11 2021.01 nixpkgs-24.11-darwin 2021.01 nixos-24.11-small 2021.01 nixos-unstable 2021.01 nixos-unstable-small 2021.01 nixpkgs-unstable 2021.01
pkgs.openscap NIST Certified SCAP 1.2 toolkit nixos-24.11 1.3.10 nixpkgs-24.11-darwin 1.3.10 nixos-24.11-small 1.3.10 nixos-unstable 1.3.10 nixos-unstable-small 1.3.10 nixpkgs-unstable 1.3.10
pkgs.openscad-lsp LSP (Language Server Protocol) server for OpenSCAD nixos-24.05 1.2.5 nixpkgs-24.05-darwin 1.2.5 nixos-24.05-small 1.2.5 nixos-24.11 1.2.5 nixpkgs-24.11-darwin 1.2.5 nixos-24.11-small 1.2.5 nixos-unstable 1.2.5 nixos-unstable-small 1.2.5 nixpkgs-unstable 1.2.5
pkgs.openscenegraph 3D graphics toolkit nixos-24.05 3.6.5 nixpkgs-24.05-darwin 3.6.5 nixos-24.05-small 3.6.5 nixos-24.11 3.6.5 nixpkgs-24.11-darwin 3.6.5 nixos-24.11-small 3.6.5 nixos-unstable 3.6.5 nixos-unstable-small 3.6.5 nixpkgs-unstable 3.6.5
pkgs.openscad-unstable 3D parametric model compiler (unstable) nixos-24.05 2024-03-10 nixpkgs-24.05-darwin 2024-03-10 nixos-24.05-small 2024-03-10 nixos-24.11 2024-11-10 nixpkgs-24.11-darwin 2024-11-10 nixos-24.11-small 2024-11-10 nixos-unstable 2024-12-06 nixos-unstable-small 2024-12-06 nixpkgs-unstable 2024-12-06
pkgs.vimPlugins.vim-openscad nixos-24.05 2022-07-26 nixpkgs-24.05-darwin 2022-07-26 nixos-24.05-small 2022-07-26 nixos-24.11 2022-07-26 nixpkgs-24.11-darwin 2022-07-26 nixos-24.11-small 2022-07-26 nixos-unstable 2022-07-26 nixos-unstable-small 2022-07-26 nixpkgs-unstable 2022-07-26
pkgs.vimPlugins.openscad-nvim nixos-24.05 2024-04-13 nixpkgs-24.05-darwin 2024-04-13 nixos-24.05-small 2024-04-13 nixos-24.11 2024-04-13 nixpkgs-24.11-darwin 2024-04-13 nixos-24.11-small 2024-04-13 nixos-unstable 2024-04-13 nixos-unstable-small 2024-04-13 nixpkgs-unstable 2024-04-13
pkgs.kakounePlugins.openscad-kak nixos-24.05 2020-12-10 nixpkgs-24.05-darwin 2020-12-10 nixos-24.05-small 2020-12-10 nixos-24.11 2020-12-10 nixpkgs-24.11-darwin 2020-12-10 nixos-24.11-small 2020-12-10 nixos-unstable 2020-12-10 nixos-unstable-small 2020-12-10 nixpkgs-unstable 2020-12-10
pkgs.vscode-extensions.antyos.openscad OpenSCAD highlighting, snippets, and more for VSCode nixos-24.05 1.1.1 nixpkgs-24.05-darwin 1.1.1 nixos-24.05-small 1.1.1 nixos-24.11 1.3.1 nixpkgs-24.11-darwin 1.3.1 nixos-24.11-small 1.3.1 nixos-unstable 1.3.1 nixos-unstable-small 1.3.1 nixpkgs-unstable 1.3.1
CVE-2024-45618 3.9 LOW CVSS version: 3.1 Attack vector (AV): PHYSICAL Attack complexity (AC): HIGH Privileges required (PR): NONE User interaction (UI): NONE Scope (S): UNCHANGED Confidentiality impact (C): LOW Integrity impact (I): LOW Availability impact (A): LOW created 3 months, 1 week ago Libopensc: uninitialized values after incorrect or missing checking return values of functions in pkcs15init A vulnerability was found in pkcs15-init in OpenSC. An attacker could use a crafted USB Device or Smart Card, which would present the system with a specially crafted response to APDUs. Insufficient or missing checking of return values of functions leads to unexpected work with variables that have not been initialized. opensc libopensc pkgs.opensc Set of libraries and utilities to access smart cards nixos-24.05 0.26.0 nixpkgs-24.05-darwin 0.26.0 nixos-24.05-small 0.26.0 nixos-24.11 0.26.0 nixpkgs-24.11-darwin 0.26.0 nixos-24.11-small 0.26.0 nixos-unstable 0.26.0 nixos-unstable-small 0.26.0 nixpkgs-unstable 0.26.0 pkgs.openscad 3D parametric model compiler nixos-24.05 2021.01 nixpkgs-24.05-darwin 2021.01 nixos-24.05-small 2021.01 nixos-24.11 2021.01 nixpkgs-24.11-darwin 2021.01 nixos-24.11-small 2021.01 nixos-unstable 2021.01 nixos-unstable-small 2021.01 nixpkgs-unstable 2021.01 pkgs.openscap NIST Certified SCAP 1.2 toolkit nixos-24.11 1.3.10 nixpkgs-24.11-darwin 1.3.10 nixos-24.11-small 1.3.10 nixos-unstable 1.3.10 nixos-unstable-small 1.3.10 nixpkgs-unstable 1.3.10 pkgs.openscad-lsp LSP (Language Server Protocol) server for OpenSCAD nixos-24.05 1.2.5 nixpkgs-24.05-darwin 1.2.5 nixos-24.05-small 1.2.5 nixos-24.11 1.2.5 nixpkgs-24.11-darwin 1.2.5 nixos-24.11-small 1.2.5 nixos-unstable 1.2.5 nixos-unstable-small 1.2.5 nixpkgs-unstable 1.2.5 pkgs.openscenegraph 3D graphics toolkit nixos-24.05 3.6.5 nixpkgs-24.05-darwin 3.6.5 nixos-24.05-small 3.6.5 nixos-24.11 3.6.5 nixpkgs-24.11-darwin 3.6.5 nixos-24.11-small 3.6.5 nixos-unstable 3.6.5 nixos-unstable-small 3.6.5 nixpkgs-unstable 3.6.5 pkgs.openscad-unstable 3D parametric model compiler (unstable) nixos-24.05 2024-03-10 nixpkgs-24.05-darwin 2024-03-10 nixos-24.05-small 2024-03-10 nixos-24.11 2024-11-10 nixpkgs-24.11-darwin 2024-11-10 nixos-24.11-small 2024-11-10 nixos-unstable 2024-12-06 nixos-unstable-small 2024-12-06 nixpkgs-unstable 2024-12-06 pkgs.vimPlugins.vim-openscad nixos-24.05 2022-07-26 nixpkgs-24.05-darwin 2022-07-26 nixos-24.05-small 2022-07-26 nixos-24.11 2022-07-26 nixpkgs-24.11-darwin 2022-07-26 nixos-24.11-small 2022-07-26 nixos-unstable 2022-07-26 nixos-unstable-small 2022-07-26 nixpkgs-unstable 2022-07-26 pkgs.vimPlugins.openscad-nvim nixos-24.05 2024-04-13 nixpkgs-24.05-darwin 2024-04-13 nixos-24.05-small 2024-04-13 nixos-24.11 2024-04-13 nixpkgs-24.11-darwin 2024-04-13 nixos-24.11-small 2024-04-13 nixos-unstable 2024-04-13 nixos-unstable-small 2024-04-13 nixpkgs-unstable 2024-04-13 pkgs.kakounePlugins.openscad-kak nixos-24.05 2020-12-10 nixpkgs-24.05-darwin 2020-12-10 nixos-24.05-small 2020-12-10 nixos-24.11 2020-12-10 nixpkgs-24.11-darwin 2020-12-10 nixos-24.11-small 2020-12-10 nixos-unstable 2020-12-10 nixos-unstable-small 2020-12-10 nixpkgs-unstable 2020-12-10 pkgs.vscode-extensions.antyos.openscad OpenSCAD highlighting, snippets, and more for VSCode nixos-24.05 1.1.1 nixpkgs-24.05-darwin 1.1.1 nixos-24.05-small 1.1.1 nixos-24.11 1.3.1 nixpkgs-24.11-darwin 1.3.1 nixos-24.11-small 1.3.1 nixos-unstable 1.3.1 nixos-unstable-small 1.3.1 nixpkgs-unstable 1.3.1 Notify package maintainers: 8 @michaeladler Michael Adler <therisen06@gmail.com> @bjornfor Bjørn Forsman <bjorn.forsman@gmail.com> @7c6f434c Michael Raskin <7c6f434c@mail.ru> @gebner Gabriel Ebner <gebner@gebner.org> @Tochiaha Tochukwu Ahanonu <tochiahan@proton.me> @c-h-johnson Charles Johnson <charles@charlesjohnson.name> @aanderse Aaron Andersen <aaron@fosslib.net> @pca006132 pca006132 <john.lck40@gmail.com>
pkgs.opensc Set of libraries and utilities to access smart cards nixos-24.05 0.26.0 nixpkgs-24.05-darwin 0.26.0 nixos-24.05-small 0.26.0 nixos-24.11 0.26.0 nixpkgs-24.11-darwin 0.26.0 nixos-24.11-small 0.26.0 nixos-unstable 0.26.0 nixos-unstable-small 0.26.0 nixpkgs-unstable 0.26.0
pkgs.openscad 3D parametric model compiler nixos-24.05 2021.01 nixpkgs-24.05-darwin 2021.01 nixos-24.05-small 2021.01 nixos-24.11 2021.01 nixpkgs-24.11-darwin 2021.01 nixos-24.11-small 2021.01 nixos-unstable 2021.01 nixos-unstable-small 2021.01 nixpkgs-unstable 2021.01
pkgs.openscap NIST Certified SCAP 1.2 toolkit nixos-24.11 1.3.10 nixpkgs-24.11-darwin 1.3.10 nixos-24.11-small 1.3.10 nixos-unstable 1.3.10 nixos-unstable-small 1.3.10 nixpkgs-unstable 1.3.10
pkgs.openscad-lsp LSP (Language Server Protocol) server for OpenSCAD nixos-24.05 1.2.5 nixpkgs-24.05-darwin 1.2.5 nixos-24.05-small 1.2.5 nixos-24.11 1.2.5 nixpkgs-24.11-darwin 1.2.5 nixos-24.11-small 1.2.5 nixos-unstable 1.2.5 nixos-unstable-small 1.2.5 nixpkgs-unstable 1.2.5
pkgs.openscenegraph 3D graphics toolkit nixos-24.05 3.6.5 nixpkgs-24.05-darwin 3.6.5 nixos-24.05-small 3.6.5 nixos-24.11 3.6.5 nixpkgs-24.11-darwin 3.6.5 nixos-24.11-small 3.6.5 nixos-unstable 3.6.5 nixos-unstable-small 3.6.5 nixpkgs-unstable 3.6.5
pkgs.openscad-unstable 3D parametric model compiler (unstable) nixos-24.05 2024-03-10 nixpkgs-24.05-darwin 2024-03-10 nixos-24.05-small 2024-03-10 nixos-24.11 2024-11-10 nixpkgs-24.11-darwin 2024-11-10 nixos-24.11-small 2024-11-10 nixos-unstable 2024-12-06 nixos-unstable-small 2024-12-06 nixpkgs-unstable 2024-12-06
pkgs.vimPlugins.vim-openscad nixos-24.05 2022-07-26 nixpkgs-24.05-darwin 2022-07-26 nixos-24.05-small 2022-07-26 nixos-24.11 2022-07-26 nixpkgs-24.11-darwin 2022-07-26 nixos-24.11-small 2022-07-26 nixos-unstable 2022-07-26 nixos-unstable-small 2022-07-26 nixpkgs-unstable 2022-07-26
pkgs.vimPlugins.openscad-nvim nixos-24.05 2024-04-13 nixpkgs-24.05-darwin 2024-04-13 nixos-24.05-small 2024-04-13 nixos-24.11 2024-04-13 nixpkgs-24.11-darwin 2024-04-13 nixos-24.11-small 2024-04-13 nixos-unstable 2024-04-13 nixos-unstable-small 2024-04-13 nixpkgs-unstable 2024-04-13
pkgs.kakounePlugins.openscad-kak nixos-24.05 2020-12-10 nixpkgs-24.05-darwin 2020-12-10 nixos-24.05-small 2020-12-10 nixos-24.11 2020-12-10 nixpkgs-24.11-darwin 2020-12-10 nixos-24.11-small 2020-12-10 nixos-unstable 2020-12-10 nixos-unstable-small 2020-12-10 nixpkgs-unstable 2020-12-10
pkgs.vscode-extensions.antyos.openscad OpenSCAD highlighting, snippets, and more for VSCode nixos-24.05 1.1.1 nixpkgs-24.05-darwin 1.1.1 nixos-24.05-small 1.1.1 nixos-24.11 1.3.1 nixpkgs-24.11-darwin 1.3.1 nixos-24.11-small 1.3.1 nixos-unstable 1.3.1 nixos-unstable-small 1.3.1 nixpkgs-unstable 1.3.1
CVE-2024-2905 6.2 MEDIUM CVSS version: 3.1 Attack vector (AV): LOCAL Attack complexity (AC): LOW Privileges required (PR): NONE User interaction (UI): NONE Scope (S): UNCHANGED Confidentiality impact (C): HIGH Integrity impact (I): NONE Availability impact (A): NONE created 3 months, 1 week ago Rpm-ostree: world-readable /etc/shadow file A security vulnerability has been discovered within rpm-ostree, pertaining to the /etc/shadow file in default builds having the world-readable bit enabled. This issue arises from the default permissions being set at a higher level than recommended, potentially exposing sensitive authentication data to unauthorized access. rpm-ostree ==1.2024.4 * pkgs.rpm-ostree Hybrid image/package system. It uses OSTree as an image format, and uses RPM as a component model nixos-24.05 2024.6 nixpkgs-24.05-darwin 2024.6 nixos-24.05-small 2024.6 nixos-24.11 2024.8 nixpkgs-24.11-darwin 2024.8 nixos-24.11-small 2024.8 nixos-unstable 2024.8 nixos-unstable-small 2024.8 nixpkgs-unstable 2024.8 Notify package maintainers: 1 @copumpkin Dan Peebles <pumpkingod@gmail.com>
pkgs.rpm-ostree Hybrid image/package system. It uses OSTree as an image format, and uses RPM as a component model nixos-24.05 2024.6 nixpkgs-24.05-darwin 2024.6 nixos-24.05-small 2024.6 nixos-24.11 2024.8 nixpkgs-24.11-darwin 2024.8 nixos-24.11-small 2024.8 nixos-unstable 2024.8 nixos-unstable-small 2024.8 nixpkgs-unstable 2024.8
CVE-2024-3049 5.9 MEDIUM CVSS version: 3.1 Attack vector (AV): NETWORK Attack complexity (AC): HIGH Privileges required (PR): NONE User interaction (UI): NONE Scope (S): UNCHANGED Confidentiality impact (C): NONE Integrity impact (I): HIGH Availability impact (A): NONE created 3 months, 1 week ago Booth: specially crafted hash can lead to invalid hmac being accepted by booth server A flaw was found in Booth, a cluster ticket manager. If a specially-crafted hash is passed to gcry_md_get_algo_dlen(), it may allow an invalid HMAC to be accepted by the Booth server. booth * ==1.0-283.1 pkgs.libsForQt5.booth Camera application nixos-24.05 1.1.3 nixpkgs-24.05-darwin 1.1.3 nixos-24.05-small 1.1.3 nixos-24.11 1.1.3 nixpkgs-24.11-darwin 1.1.3 nixos-24.11-small 1.1.3 nixos-unstable 1.1.3 nixos-unstable-small 1.1.3 nixpkgs-unstable 1.1.3 pkgs.plasma5Packages.booth Camera application nixos-24.05 1.1.3 nixpkgs-24.05-darwin 1.1.3 nixos-24.05-small 1.1.3 nixos-24.11 1.1.3 nixpkgs-24.11-darwin 1.1.3 nixos-24.11-small 1.1.3 nixos-unstable 1.1.3 nixos-unstable-small 1.1.3 nixpkgs-unstable 1.1.3 Notify package maintainers: 1 @milahu Milan Hauth <milahu@gmail.com>
pkgs.libsForQt5.booth Camera application nixos-24.05 1.1.3 nixpkgs-24.05-darwin 1.1.3 nixos-24.05-small 1.1.3 nixos-24.11 1.1.3 nixpkgs-24.11-darwin 1.1.3 nixos-24.11-small 1.1.3 nixos-unstable 1.1.3 nixos-unstable-small 1.1.3 nixpkgs-unstable 1.1.3
pkgs.plasma5Packages.booth Camera application nixos-24.05 1.1.3 nixpkgs-24.05-darwin 1.1.3 nixos-24.05-small 1.1.3 nixos-24.11 1.1.3 nixpkgs-24.11-darwin 1.1.3 nixos-24.11-small 1.1.3 nixos-unstable 1.1.3 nixos-unstable-small 1.1.3 nixpkgs-unstable 1.1.3