Dismissed suggestions Untriaged suggestions Draft issues Published issues Automatically generated suggestions Create Draft to queue a suggestion for refinement. Dismiss to remove a suggestion from the queue. CVE-2023-3428 6.2 MEDIUM CVSS version: 3.1 Attack vector (AV): LOCAL Attack complexity (AC): LOW Privileges required (PR): NONE User interaction (UI): NONE Scope (S): UNCHANGED Confidentiality impact (C): NONE Integrity impact (I): NONE Availability impact (A): HIGH created 6 months, 3 weeks ago Imagemagick: heap-buffer-overflow in coders/tiff.c A heap-based buffer overflow vulnerability was found in coders/tiff.c in ImageMagick. This issue may allow a local attacker to trick the user into opening a specially crafted file, resulting in an application crash and denial of service. ImageMagick pkgs.tests.pkg-config.defaultPkgConfigPackages.ImageMagick Test whether imagemagick-7.1.1-40 exposes pkg-config modules ImageMagick nixos-unstable ??? nixos-unstable-small nixpkgs-unstable Package maintainers: 3 @rhendric Ryan Hendrickson @faukah faukah @dotlambda Robert Schütz <rschuetz17@gmail.com> CVE-2023-3745 5.5 MEDIUM CVSS version: 3.1 Attack vector (AV): LOCAL Attack complexity (AC): LOW Privileges required (PR): NONE User interaction (UI): REQUIRED Scope (S): UNCHANGED Confidentiality impact (C): NONE Integrity impact (I): NONE Availability impact (A): HIGH created 6 months, 3 weeks ago Imagemagick: heap-buffer-overflow in pushcharpixel() in quantum-private.h A heap-based buffer overflow issue was found in ImageMagick's PushCharPixel() function in quantum-private.h. This issue may allow a local attacker to trick the user into opening a specially crafted file, triggering an out-of-bounds read error and allowing an application to crash, resulting in a denial of service. ImageMagick pkgs.tests.pkg-config.defaultPkgConfigPackages.ImageMagick Test whether imagemagick-7.1.1-40 exposes pkg-config modules ImageMagick nixos-unstable ??? nixos-unstable-small nixpkgs-unstable Package maintainers: 3 @rhendric Ryan Hendrickson @faukah faukah @dotlambda Robert Schütz <rschuetz17@gmail.com> CVE-2023-6780 5.3 MEDIUM CVSS version: 3.1 Attack vector (AV): NETWORK Attack complexity (AC): LOW Privileges required (PR): NONE User interaction (UI): NONE Scope (S): UNCHANGED Confidentiality impact (C): NONE Integrity impact (I): NONE Availability impact (A): LOW created 6 months, 3 weeks ago Glibc: integer overflow in __vsyslog_internal() An integer overflow was found in the __vsyslog_internal function of the glibc library. This function is called by the syslog and vsyslog functions. This issue occurs when these functions are called with a very long message, leading to an incorrect calculation of the buffer size to store the message, resulting in undefined behavior. This issue affects glibc 2.37 and newer. glibc compat-glibc pkgs.glibc GNU C Library nixos-unstable 2.40-36 nixos-unstable-small 2.40-36 nixpkgs-unstable 2.40-36 pkgs.iconv GNU C Library nixos-unstable 2.40-36 nixos-unstable-small 2.40-36 nixpkgs-unstable 2.40-36 pkgs.getent nixos-unstable 2.40-36 nixos-unstable-small 2.40-36 nixpkgs-unstable 2.40-36 pkgs.locale nixos-unstable 2.40-36 nixos-unstable-small 2.40-36 nixpkgs-unstable 2.40-36 pkgs.mtrace Perl script used to interpret and provide human readable output of the trace log contained in the file mtracedata, whose contents were produced by mtrace(3) nixos-unstable 2.40-36 nixos-unstable-small 2.40-36 nixpkgs-unstable 2.40-36 pkgs.getconf nixos-unstable 2.40-36 nixos-unstable-small 2.40-36 nixpkgs-unstable 2.40-36 pkgs.libiconv nixos-unstable 2.40 nixos-unstable-small 2.40 nixpkgs-unstable 2.40 pkgs.glibcInfo GNU Info manual of the GNU C Library nixos-unstable 2.40-36 nixos-unstable-small 2.40-36 nixpkgs-unstable 2.40-36 pkgs.glibc_multi nixos-unstable 2.40-36 nixos-unstable-small 2.40-36 nixpkgs-unstable 2.40-36 pkgs.glibcLocales Locale information for the GNU C Library nixos-unstable 2.40-36 nixos-unstable-small 2.40-36 nixpkgs-unstable 2.40-36 pkgs.glibc_memusage GNU C Library nixos-unstable 2.40-36 nixos-unstable-small 2.40-36 nixpkgs-unstable 2.40-36 pkgs.glibcLocalesUtf8 Locale information for the GNU C Library nixos-unstable 2.40-36 nixos-unstable-small 2.40-36 nixpkgs-unstable 2.40-36 pkgs.unixtools.getent nixos-unstable 2.40-36 nixos-unstable-small 2.40-36 nixpkgs-unstable 2.40-36 pkgs.unixtools.locale nixos-unstable 2.40-36 nixos-unstable-small 2.40-36 nixpkgs-unstable 2.40-36 pkgs.unixtools.getconf nixos-unstable 2.40-36 nixos-unstable-small 2.40-36 nixpkgs-unstable 2.40-36 pkgs.locale.x86_64-linux nixos-unstable ??? nixos-unstable-small 2.40-36 pkgs.locale.aarch64-linux nixos-unstable ??? nixos-unstable-small 2.40-36 pkgs.libiconv.x86_64-linux nixos-unstable ??? nixos-unstable-small 2.40 pkgs.libiconv.aarch64-linux nixos-unstable ??? nixos-unstable-small 2.40 Package maintainers: 2 @Ma27 Maximilian Bosch <maximilian@mbosch.me> @ConnorBaker Connor Baker <ConnorBaker01@gmail.com> CVE-2023-38560 5.5 MEDIUM CVSS version: 3.1 Attack vector (AV): LOCAL Attack complexity (AC): LOW Privileges required (PR): NONE User interaction (UI): REQUIRED Scope (S): UNCHANGED Confidentiality impact (C): NONE Integrity impact (I): NONE Availability impact (A): HIGH created 6 months, 3 weeks ago Ghostscript: integer overflow in pcl/pl/plfont.c:418 in pl_glyph_name An integer overflow flaw was found in pcl/pl/plfont.c:418 in pl_glyph_name in ghostscript. This issue may allow a local attacker to cause a denial of service via transforming a crafted PCL file to PDF format. ghostscript gimp:flatpak/ghostscript pkgs.ghostscriptX PostScript interpreter (mainline version) nixos-unstable 10.04.0 nixos-unstable-small 10.04.0 nixpkgs-unstable 10.04.0 pkgs.ghostscript_headless PostScript interpreter (mainline version) nixos-unstable 10.04.0 nixos-unstable-small 10.04.0 nixpkgs-unstable 10.04.0 pkgs.haskellPackages.ghostscript-parallel Let Ghostscript render pages in parallel nixos-unstable 0.0.1 nixos-unstable-small 0.0.1 nixpkgs-unstable 0.0.1 Package maintainers: 1 @tobim Tobias Mayer <nix@tobim.fastmail.fm> CVE-2024-45497 7.6 HIGH CVSS version: 3.1 Attack vector (AV): NETWORK Attack complexity (AC): LOW Privileges required (PR): LOW User interaction (UI): NONE Scope (S): UNCHANGED Confidentiality impact (C): LOW Integrity impact (I): LOW Availability impact (A): HIGH created 6 months, 3 weeks ago Openshift-api: build process in openshift allows overwriting of node pull credentials A flaw was found in the OpenShift build process, where the docker-build container is configured with a hostPath volume mount that maps the node's /var/lib/kubelet/config.json file into the build pod. This file contains sensitive credentials necessary for pulling images from private repositories. The mount is not read-only, which allows the attacker to overwrite it. By modifying the config.json file, the attacker can cause a denial of service by preventing the node from pulling new images and potentially exfiltrating sensitive secrets. This flaw impacts the availability of services dependent on image pulls and exposes sensitive information to unauthorized parties. openshift ==4.16 openshift-controller-manager openshift4/ose-openshift-apiserver-rhel7 openshift4/ose-openshift-apiserver-rhel9 openshift4/ose-openshift-controller-manager-rhel9 org.arquillian.cube/arquillian-cube-openshift-api openshift4/ose-cluster-openshift-apiserver-operator * openshift4/ose-cluster-openshift-apiserver-rhel9-operator * pkgs.openshift Build, deploy, and manage your applications with Docker and Kubernetes nixos-unstable 4.16.0 nixos-unstable-small 4.16.0 nixpkgs-unstable 4.16.0 pkgs.python311Packages.openshift Python client for the OpenShift API nixos-unstable 0.13.2 nixos-unstable-small 0.13.2 nixpkgs-unstable 0.13.2 pkgs.python312Packages.openshift Python client for the OpenShift API nixos-unstable 0.13.2 nixos-unstable-small 0.13.2 nixpkgs-unstable 0.13.2 pkgs.python312Packages.openshift.x86_64-linux Python client for the OpenShift API nixos-unstable 0.13.2 pkgs.python312Packages.openshift.aarch64-linux Python client for the OpenShift API nixos-unstable 0.13.2 pkgs.python312Packages.openshift.x86_64-darwin Python client for the OpenShift API nixos-unstable 0.13.2 pkgs.python312Packages.openshift.aarch64-darwin Python client for the OpenShift API nixos-unstable 0.13.2 pkgs.python311Packages.azure-mgmt-redhatopenshift Microsoft Azure Red Hat Openshift Management Client Library for Python nixos-unstable 1.5.0 nixos-unstable-small 1.5.0 nixpkgs-unstable 1.5.0 pkgs.python312Packages.azure-mgmt-redhatopenshift Microsoft Azure Red Hat Openshift Management Client Library for Python nixos-unstable 1.5.0 nixos-unstable-small 1.5.0 nixpkgs-unstable 1.5.0 Package maintainers: 4 @teto Matthieu Coudron <mcoudron@hotmail.com> @stehessel Stephan Heßelmann <stephan@stehessel.de> @moretea Maarten Hoogendoorn <maarten@moretea.nl> @offlinehacker Jaka Hudoklin <jaka@x-truder.net> CVE-2023-5341 6.2 MEDIUM CVSS version: 3.1 Attack vector (AV): LOCAL Attack complexity (AC): LOW Privileges required (PR): NONE User interaction (UI): NONE Scope (S): UNCHANGED Confidentiality impact (C): NONE Integrity impact (I): NONE Availability impact (A): HIGH created 6 months, 3 weeks ago Imagemagick: heap use-after-free in coders/bmp.c A heap use-after-free flaw was found in coders/bmp.c in ImageMagick. ImageMagick pkgs.tests.pkg-config.defaultPkgConfigPackages.ImageMagick Test whether imagemagick-7.1.1-40 exposes pkg-config modules ImageMagick nixos-unstable ??? nixos-unstable-small nixpkgs-unstable Package maintainers: 3 @rhendric Ryan Hendrickson @faukah faukah @dotlambda Robert Schütz <rschuetz17@gmail.com> CVE-2023-1326 7.7 HIGH CVSS version: 3.1 Attack vector (AV): LOCAL Attack complexity (AC): LOW Privileges required (PR): HIGH User interaction (UI): REQUIRED Scope (S): CHANGED Confidentiality impact (C): HIGH Integrity impact (I): HIGH Availability impact (A): HIGH created 6 months, 3 weeks ago local privilege escalation in apport-cli A privilege escalation attack was found in apport-cli 2.26.0 and earlier which is similar to CVE-2023-26604. If a system is specially configured to allow unprivileged users to run sudo apport-cli, less is configured as the pager, and the terminal size can be set: a local attacker can escalate privilege. It is extremely unlikely that a system administrator would configure sudo to allow unprivileged users to perform this class of exploit. apport =<2.26.0 pkgs.haskellPackages.apportionment Round a set of numbers while maintaining its sum nixos-unstable 0.0.0.4 nixos-unstable-small 0.0.0.4 nixpkgs-unstable 0.0.0.4 Package maintainers: 1 @thielema Henning Thielemann <nix@henning-thielemann.de> CVE-2023-50781 7.5 HIGH CVSS version: 3.1 Attack vector (AV): NETWORK Attack complexity (AC): LOW Privileges required (PR): NONE User interaction (UI): NONE Scope (S): UNCHANGED Confidentiality impact (C): HIGH Integrity impact (I): NONE Availability impact (A): NONE created 6 months, 3 weeks ago M2crypto: bleichenbacher timing attacks in the rsa decryption api - incomplete fix for cve-2020-25657 A flaw was found in m2crypto. This issue may allow a remote attacker to decrypt captured messages in TLS servers that use RSA key exchanges, which may lead to exposure of confidential or sensitive data. pywbem m2crypto virt-who pkgs.python311Packages.pywbem Support for the WBEM standard for systems management nixos-unstable 1.7.2 nixos-unstable-small 1.7.2 nixpkgs-unstable 1.7.2 pkgs.python312Packages.pywbem Support for the WBEM standard for systems management nixos-unstable 1.7.2 nixos-unstable-small 1.7.2 nixpkgs-unstable 1.7.2 pkgs.python311Packages.m2crypto Python crypto and SSL toolkit nixos-unstable m2crypto-0.42.0 nixos-unstable-small m2crypto-0.42.0 nixpkgs-unstable m2crypto-0.42.0 pkgs.python312Packages.m2crypto Python crypto and SSL toolkit nixos-unstable m2crypto-0.42.0 nixos-unstable-small m2crypto-0.42.0 nixpkgs-unstable m2crypto-0.42.0 pkgs.python312Packages.pywbem.x86_64-linux Support for the WBEM standard for systems management nixos-unstable 1.7.2 pkgs.python312Packages.pywbem.aarch64-linux Support for the WBEM standard for systems management nixos-unstable 1.7.2 pkgs.python312Packages.pywbem.x86_64-darwin Support for the WBEM standard for systems management nixos-unstable 1.7.2 pkgs.python312Packages.m2crypto.x86_64-linux Python crypto and SSL toolkit nixos-unstable m2crypto-0.42.0 pkgs.python312Packages.pywbem.aarch64-darwin Support for the WBEM standard for systems management nixos-unstable 1.7.2 pkgs.python312Packages.m2crypto.aarch64-linux Python crypto and SSL toolkit nixos-unstable m2crypto-0.42.0 pkgs.python312Packages.m2crypto.x86_64-darwin Python crypto and SSL toolkit nixos-unstable m2crypto-0.42.0 pkgs.python312Packages.m2crypto.aarch64-darwin Python crypto and SSL toolkit nixos-unstable m2crypto-0.42.0 CVE-2024-31420 6.5 MEDIUM CVSS version: 3.1 Attack vector (AV): NETWORK Attack complexity (AC): LOW Privileges required (PR): LOW User interaction (UI): NONE Scope (S): UNCHANGED Confidentiality impact (C): NONE Integrity impact (I): NONE Availability impact (A): HIGH created 6 months, 3 weeks ago Cnv: dos through repeatedly calling vm-dump-metrics until virt handler crashes A NULL pointer dereference flaw was found in KubeVirt. This flaw allows an attacker who has access to a virtual machine guest on a node with DownwardMetrics enabled to cause a denial of service by issuing a high number of calls to vm-dump-metrics --virtio and then deleting the virtual machine. cnv ==4.15.0 kubevirt pkgs.kubevirt Client tool to use advanced features such as console access nixos-unstable 1.4.0 nixos-unstable-small 1.4.0 nixpkgs-unstable 1.4.0 pkgs.vimPlugins.scnvim nixos-unstable 2024-09-16 nixos-unstable-small 2024-09-16 nixpkgs-unstable 2024-09-16 pkgs.python311Packages.cnvkit Python library and command-line software toolkit to infer and visualize copy number from high-throughput DNA sequencing data nixos-unstable 0.9.12 nixos-unstable-small 0.9.12 nixpkgs-unstable 0.9.12 pkgs.python312Packages.cnvkit Python library and command-line software toolkit to infer and visualize copy number from high-throughput DNA sequencing data nixos-unstable 0.9.12 nixos-unstable-small 0.9.12 nixpkgs-unstable 0.9.12 Package maintainers: 2 @jbedo Justin Bedő <cu@cua0.org> @haslersn Sebastian Hasler <haslersn@fius.informatik.uni-stuttgart.de> CVE-2024-3094 10.0 CRITICAL CVSS version: 3.1 Attack vector (AV): NETWORK Attack complexity (AC): LOW Privileges required (PR): NONE User interaction (UI): NONE Scope (S): CHANGED Confidentiality impact (C): HIGH Integrity impact (I): HIGH Availability impact (A): HIGH created 6 months, 3 weeks ago Xz: malicious code in distributed source Malicious code was discovered in the upstream tarballs of xz, starting with version 5.6.0. Through a series of complex obfuscations, the liblzma build process extracts a prebuilt object file from a disguised test file existing in the source code, which is then used to modify specific functions in the liblzma code. This results in a modified liblzma library that can be used by any software linked against this library, intercepting and modifying the data interaction with this library. xz ==5.6.0 ==5.6.1 pkgs.xz General-purpose data compression software, successor of LZMA nixos-unstable 5.6.3 nixos-unstable-small 5.6.3 nixpkgs-unstable 5.6.3 pkgs.pxz compression utility that runs LZMA compression of different parts on multiple cores simultaneously nixos-unstable 4.999.9beta nixos-unstable-small 4.999.9beta nixpkgs-unstable 4.999.9beta pkgs.pixz Parallel compressor/decompressor for xz format nixos-unstable 1.0.7 nixos-unstable-small 1.0.7 nixpkgs-unstable 1.0.7 pkgs.xzgv Picture viewer for X with a thumbnail-based selector nixos-unstable 0.9.2 nixos-unstable-small 0.9.2 nixpkgs-unstable 0.9.2 pkgs.xzoom X11 screen zoom tool nixos-unstable 0.3 nixos-unstable-small 0.3 nixpkgs-unstable 0.3 pkgs.plymouth-proxzima-theme Techno Plymouth theme with crazy animation nixos-unstable 0-unstable-2023-01-30 nixos-unstable-small 0-unstable-2023-01-30 nixpkgs-unstable 0-unstable-2023-01-30 pkgs.python311Packages.txzmq Twisted bindings for ZeroMQ nixos-unstable 1.0.0 nixos-unstable-small 1.0.0 nixpkgs-unstable 1.0.0 pkgs.python312Packages.txzmq Twisted bindings for ZeroMQ nixos-unstable 1.0.0 nixos-unstable-small 1.0.0 nixpkgs-unstable 1.0.0 pkgs.python311Packages.python-xz Pure Python library for seeking within compressed xz files nixos-unstable 0.5.0 nixos-unstable-small 0.5.0 nixpkgs-unstable 0.5.0 pkgs.python312Packages.python-xz Pure Python library for seeking within compressed xz files nixos-unstable 0.5.0 nixos-unstable-small 0.5.0 nixpkgs-unstable 0.5.0 pkgs.python312Packages.txzmq.x86_64-linux Twisted bindings for ZeroMQ nixos-unstable 1.0.0 pkgs.python312Packages.txzmq.aarch64-linux Twisted bindings for ZeroMQ nixos-unstable 1.0.0 pkgs.python312Packages.txzmq.x86_64-darwin Twisted bindings for ZeroMQ nixos-unstable 1.0.0 pkgs.python312Packages.txzmq.aarch64-darwin Twisted bindings for ZeroMQ nixos-unstable 1.0.0 pkgs.python312Packages.python-xz.x86_64-linux Pure Python library for seeking within compressed xz files nixos-unstable 0.5.0 pkgs.python312Packages.python-xz.aarch64-linux Pure Python library for seeking within compressed xz files nixos-unstable 0.5.0 pkgs.python312Packages.python-xz.x86_64-darwin Pure Python library for seeking within compressed xz files nixos-unstable 0.5.0 pkgs.python312Packages.python-xz.aarch64-darwin Pure Python library for seeking within compressed xz files nixos-unstable 0.5.0 Package maintainers: 6 @mxmlnkn Maximilian Knespel @johnrtitor Masum Reza <masumrezarock100@gmail.com> @svanderburg Sander van der Burg <s.vanderburg@tudelft.nl> @womfoo Kranium Gikos Mendoza <kranium@gikos.net> @7c6f434c Michael Raskin <7c6f434c@mail.ru> @ip1981 Igor Pashev <pashev.igor@gmail.com>
CVE-2023-3428 6.2 MEDIUM CVSS version: 3.1 Attack vector (AV): LOCAL Attack complexity (AC): LOW Privileges required (PR): NONE User interaction (UI): NONE Scope (S): UNCHANGED Confidentiality impact (C): NONE Integrity impact (I): NONE Availability impact (A): HIGH created 6 months, 3 weeks ago Imagemagick: heap-buffer-overflow in coders/tiff.c A heap-based buffer overflow vulnerability was found in coders/tiff.c in ImageMagick. This issue may allow a local attacker to trick the user into opening a specially crafted file, resulting in an application crash and denial of service. ImageMagick pkgs.tests.pkg-config.defaultPkgConfigPackages.ImageMagick Test whether imagemagick-7.1.1-40 exposes pkg-config modules ImageMagick nixos-unstable ??? nixos-unstable-small nixpkgs-unstable Package maintainers: 3 @rhendric Ryan Hendrickson @faukah faukah @dotlambda Robert Schütz <rschuetz17@gmail.com>
pkgs.tests.pkg-config.defaultPkgConfigPackages.ImageMagick Test whether imagemagick-7.1.1-40 exposes pkg-config modules ImageMagick nixos-unstable ??? nixos-unstable-small nixpkgs-unstable
CVE-2023-3745 5.5 MEDIUM CVSS version: 3.1 Attack vector (AV): LOCAL Attack complexity (AC): LOW Privileges required (PR): NONE User interaction (UI): REQUIRED Scope (S): UNCHANGED Confidentiality impact (C): NONE Integrity impact (I): NONE Availability impact (A): HIGH created 6 months, 3 weeks ago Imagemagick: heap-buffer-overflow in pushcharpixel() in quantum-private.h A heap-based buffer overflow issue was found in ImageMagick's PushCharPixel() function in quantum-private.h. This issue may allow a local attacker to trick the user into opening a specially crafted file, triggering an out-of-bounds read error and allowing an application to crash, resulting in a denial of service. ImageMagick pkgs.tests.pkg-config.defaultPkgConfigPackages.ImageMagick Test whether imagemagick-7.1.1-40 exposes pkg-config modules ImageMagick nixos-unstable ??? nixos-unstable-small nixpkgs-unstable Package maintainers: 3 @rhendric Ryan Hendrickson @faukah faukah @dotlambda Robert Schütz <rschuetz17@gmail.com>
pkgs.tests.pkg-config.defaultPkgConfigPackages.ImageMagick Test whether imagemagick-7.1.1-40 exposes pkg-config modules ImageMagick nixos-unstable ??? nixos-unstable-small nixpkgs-unstable
CVE-2023-6780 5.3 MEDIUM CVSS version: 3.1 Attack vector (AV): NETWORK Attack complexity (AC): LOW Privileges required (PR): NONE User interaction (UI): NONE Scope (S): UNCHANGED Confidentiality impact (C): NONE Integrity impact (I): NONE Availability impact (A): LOW created 6 months, 3 weeks ago Glibc: integer overflow in __vsyslog_internal() An integer overflow was found in the __vsyslog_internal function of the glibc library. This function is called by the syslog and vsyslog functions. This issue occurs when these functions are called with a very long message, leading to an incorrect calculation of the buffer size to store the message, resulting in undefined behavior. This issue affects glibc 2.37 and newer. glibc compat-glibc pkgs.glibc GNU C Library nixos-unstable 2.40-36 nixos-unstable-small 2.40-36 nixpkgs-unstable 2.40-36 pkgs.iconv GNU C Library nixos-unstable 2.40-36 nixos-unstable-small 2.40-36 nixpkgs-unstable 2.40-36 pkgs.getent nixos-unstable 2.40-36 nixos-unstable-small 2.40-36 nixpkgs-unstable 2.40-36 pkgs.locale nixos-unstable 2.40-36 nixos-unstable-small 2.40-36 nixpkgs-unstable 2.40-36 pkgs.mtrace Perl script used to interpret and provide human readable output of the trace log contained in the file mtracedata, whose contents were produced by mtrace(3) nixos-unstable 2.40-36 nixos-unstable-small 2.40-36 nixpkgs-unstable 2.40-36 pkgs.getconf nixos-unstable 2.40-36 nixos-unstable-small 2.40-36 nixpkgs-unstable 2.40-36 pkgs.libiconv nixos-unstable 2.40 nixos-unstable-small 2.40 nixpkgs-unstable 2.40 pkgs.glibcInfo GNU Info manual of the GNU C Library nixos-unstable 2.40-36 nixos-unstable-small 2.40-36 nixpkgs-unstable 2.40-36 pkgs.glibc_multi nixos-unstable 2.40-36 nixos-unstable-small 2.40-36 nixpkgs-unstable 2.40-36 pkgs.glibcLocales Locale information for the GNU C Library nixos-unstable 2.40-36 nixos-unstable-small 2.40-36 nixpkgs-unstable 2.40-36 pkgs.glibc_memusage GNU C Library nixos-unstable 2.40-36 nixos-unstable-small 2.40-36 nixpkgs-unstable 2.40-36 pkgs.glibcLocalesUtf8 Locale information for the GNU C Library nixos-unstable 2.40-36 nixos-unstable-small 2.40-36 nixpkgs-unstable 2.40-36 pkgs.unixtools.getent nixos-unstable 2.40-36 nixos-unstable-small 2.40-36 nixpkgs-unstable 2.40-36 pkgs.unixtools.locale nixos-unstable 2.40-36 nixos-unstable-small 2.40-36 nixpkgs-unstable 2.40-36 pkgs.unixtools.getconf nixos-unstable 2.40-36 nixos-unstable-small 2.40-36 nixpkgs-unstable 2.40-36 pkgs.locale.x86_64-linux nixos-unstable ??? nixos-unstable-small 2.40-36 pkgs.locale.aarch64-linux nixos-unstable ??? nixos-unstable-small 2.40-36 pkgs.libiconv.x86_64-linux nixos-unstable ??? nixos-unstable-small 2.40 pkgs.libiconv.aarch64-linux nixos-unstable ??? nixos-unstable-small 2.40 Package maintainers: 2 @Ma27 Maximilian Bosch <maximilian@mbosch.me> @ConnorBaker Connor Baker <ConnorBaker01@gmail.com>
pkgs.glibc GNU C Library nixos-unstable 2.40-36 nixos-unstable-small 2.40-36 nixpkgs-unstable 2.40-36
pkgs.iconv GNU C Library nixos-unstable 2.40-36 nixos-unstable-small 2.40-36 nixpkgs-unstable 2.40-36
pkgs.mtrace Perl script used to interpret and provide human readable output of the trace log contained in the file mtracedata, whose contents were produced by mtrace(3) nixos-unstable 2.40-36 nixos-unstable-small 2.40-36 nixpkgs-unstable 2.40-36
pkgs.glibcInfo GNU Info manual of the GNU C Library nixos-unstable 2.40-36 nixos-unstable-small 2.40-36 nixpkgs-unstable 2.40-36
pkgs.glibcLocales Locale information for the GNU C Library nixos-unstable 2.40-36 nixos-unstable-small 2.40-36 nixpkgs-unstable 2.40-36
pkgs.glibc_memusage GNU C Library nixos-unstable 2.40-36 nixos-unstable-small 2.40-36 nixpkgs-unstable 2.40-36
pkgs.glibcLocalesUtf8 Locale information for the GNU C Library nixos-unstable 2.40-36 nixos-unstable-small 2.40-36 nixpkgs-unstable 2.40-36
CVE-2023-38560 5.5 MEDIUM CVSS version: 3.1 Attack vector (AV): LOCAL Attack complexity (AC): LOW Privileges required (PR): NONE User interaction (UI): REQUIRED Scope (S): UNCHANGED Confidentiality impact (C): NONE Integrity impact (I): NONE Availability impact (A): HIGH created 6 months, 3 weeks ago Ghostscript: integer overflow in pcl/pl/plfont.c:418 in pl_glyph_name An integer overflow flaw was found in pcl/pl/plfont.c:418 in pl_glyph_name in ghostscript. This issue may allow a local attacker to cause a denial of service via transforming a crafted PCL file to PDF format. ghostscript gimp:flatpak/ghostscript pkgs.ghostscriptX PostScript interpreter (mainline version) nixos-unstable 10.04.0 nixos-unstable-small 10.04.0 nixpkgs-unstable 10.04.0 pkgs.ghostscript_headless PostScript interpreter (mainline version) nixos-unstable 10.04.0 nixos-unstable-small 10.04.0 nixpkgs-unstable 10.04.0 pkgs.haskellPackages.ghostscript-parallel Let Ghostscript render pages in parallel nixos-unstable 0.0.1 nixos-unstable-small 0.0.1 nixpkgs-unstable 0.0.1 Package maintainers: 1 @tobim Tobias Mayer <nix@tobim.fastmail.fm>
pkgs.ghostscriptX PostScript interpreter (mainline version) nixos-unstable 10.04.0 nixos-unstable-small 10.04.0 nixpkgs-unstable 10.04.0
pkgs.ghostscript_headless PostScript interpreter (mainline version) nixos-unstable 10.04.0 nixos-unstable-small 10.04.0 nixpkgs-unstable 10.04.0
pkgs.haskellPackages.ghostscript-parallel Let Ghostscript render pages in parallel nixos-unstable 0.0.1 nixos-unstable-small 0.0.1 nixpkgs-unstable 0.0.1
CVE-2024-45497 7.6 HIGH CVSS version: 3.1 Attack vector (AV): NETWORK Attack complexity (AC): LOW Privileges required (PR): LOW User interaction (UI): NONE Scope (S): UNCHANGED Confidentiality impact (C): LOW Integrity impact (I): LOW Availability impact (A): HIGH created 6 months, 3 weeks ago Openshift-api: build process in openshift allows overwriting of node pull credentials A flaw was found in the OpenShift build process, where the docker-build container is configured with a hostPath volume mount that maps the node's /var/lib/kubelet/config.json file into the build pod. This file contains sensitive credentials necessary for pulling images from private repositories. The mount is not read-only, which allows the attacker to overwrite it. By modifying the config.json file, the attacker can cause a denial of service by preventing the node from pulling new images and potentially exfiltrating sensitive secrets. This flaw impacts the availability of services dependent on image pulls and exposes sensitive information to unauthorized parties. openshift ==4.16 openshift-controller-manager openshift4/ose-openshift-apiserver-rhel7 openshift4/ose-openshift-apiserver-rhel9 openshift4/ose-openshift-controller-manager-rhel9 org.arquillian.cube/arquillian-cube-openshift-api openshift4/ose-cluster-openshift-apiserver-operator * openshift4/ose-cluster-openshift-apiserver-rhel9-operator * pkgs.openshift Build, deploy, and manage your applications with Docker and Kubernetes nixos-unstable 4.16.0 nixos-unstable-small 4.16.0 nixpkgs-unstable 4.16.0 pkgs.python311Packages.openshift Python client for the OpenShift API nixos-unstable 0.13.2 nixos-unstable-small 0.13.2 nixpkgs-unstable 0.13.2 pkgs.python312Packages.openshift Python client for the OpenShift API nixos-unstable 0.13.2 nixos-unstable-small 0.13.2 nixpkgs-unstable 0.13.2 pkgs.python312Packages.openshift.x86_64-linux Python client for the OpenShift API nixos-unstable 0.13.2 pkgs.python312Packages.openshift.aarch64-linux Python client for the OpenShift API nixos-unstable 0.13.2 pkgs.python312Packages.openshift.x86_64-darwin Python client for the OpenShift API nixos-unstable 0.13.2 pkgs.python312Packages.openshift.aarch64-darwin Python client for the OpenShift API nixos-unstable 0.13.2 pkgs.python311Packages.azure-mgmt-redhatopenshift Microsoft Azure Red Hat Openshift Management Client Library for Python nixos-unstable 1.5.0 nixos-unstable-small 1.5.0 nixpkgs-unstable 1.5.0 pkgs.python312Packages.azure-mgmt-redhatopenshift Microsoft Azure Red Hat Openshift Management Client Library for Python nixos-unstable 1.5.0 nixos-unstable-small 1.5.0 nixpkgs-unstable 1.5.0 Package maintainers: 4 @teto Matthieu Coudron <mcoudron@hotmail.com> @stehessel Stephan Heßelmann <stephan@stehessel.de> @moretea Maarten Hoogendoorn <maarten@moretea.nl> @offlinehacker Jaka Hudoklin <jaka@x-truder.net>
pkgs.openshift Build, deploy, and manage your applications with Docker and Kubernetes nixos-unstable 4.16.0 nixos-unstable-small 4.16.0 nixpkgs-unstable 4.16.0
pkgs.python311Packages.openshift Python client for the OpenShift API nixos-unstable 0.13.2 nixos-unstable-small 0.13.2 nixpkgs-unstable 0.13.2
pkgs.python312Packages.openshift Python client for the OpenShift API nixos-unstable 0.13.2 nixos-unstable-small 0.13.2 nixpkgs-unstable 0.13.2
pkgs.python312Packages.openshift.x86_64-linux Python client for the OpenShift API nixos-unstable 0.13.2
pkgs.python312Packages.openshift.aarch64-linux Python client for the OpenShift API nixos-unstable 0.13.2
pkgs.python312Packages.openshift.x86_64-darwin Python client for the OpenShift API nixos-unstable 0.13.2
pkgs.python312Packages.openshift.aarch64-darwin Python client for the OpenShift API nixos-unstable 0.13.2
pkgs.python311Packages.azure-mgmt-redhatopenshift Microsoft Azure Red Hat Openshift Management Client Library for Python nixos-unstable 1.5.0 nixos-unstable-small 1.5.0 nixpkgs-unstable 1.5.0
pkgs.python312Packages.azure-mgmt-redhatopenshift Microsoft Azure Red Hat Openshift Management Client Library for Python nixos-unstable 1.5.0 nixos-unstable-small 1.5.0 nixpkgs-unstable 1.5.0
CVE-2023-5341 6.2 MEDIUM CVSS version: 3.1 Attack vector (AV): LOCAL Attack complexity (AC): LOW Privileges required (PR): NONE User interaction (UI): NONE Scope (S): UNCHANGED Confidentiality impact (C): NONE Integrity impact (I): NONE Availability impact (A): HIGH created 6 months, 3 weeks ago Imagemagick: heap use-after-free in coders/bmp.c A heap use-after-free flaw was found in coders/bmp.c in ImageMagick. ImageMagick pkgs.tests.pkg-config.defaultPkgConfigPackages.ImageMagick Test whether imagemagick-7.1.1-40 exposes pkg-config modules ImageMagick nixos-unstable ??? nixos-unstable-small nixpkgs-unstable Package maintainers: 3 @rhendric Ryan Hendrickson @faukah faukah @dotlambda Robert Schütz <rschuetz17@gmail.com>
pkgs.tests.pkg-config.defaultPkgConfigPackages.ImageMagick Test whether imagemagick-7.1.1-40 exposes pkg-config modules ImageMagick nixos-unstable ??? nixos-unstable-small nixpkgs-unstable
CVE-2023-1326 7.7 HIGH CVSS version: 3.1 Attack vector (AV): LOCAL Attack complexity (AC): LOW Privileges required (PR): HIGH User interaction (UI): REQUIRED Scope (S): CHANGED Confidentiality impact (C): HIGH Integrity impact (I): HIGH Availability impact (A): HIGH created 6 months, 3 weeks ago local privilege escalation in apport-cli A privilege escalation attack was found in apport-cli 2.26.0 and earlier which is similar to CVE-2023-26604. If a system is specially configured to allow unprivileged users to run sudo apport-cli, less is configured as the pager, and the terminal size can be set: a local attacker can escalate privilege. It is extremely unlikely that a system administrator would configure sudo to allow unprivileged users to perform this class of exploit. apport =<2.26.0 pkgs.haskellPackages.apportionment Round a set of numbers while maintaining its sum nixos-unstable 0.0.0.4 nixos-unstable-small 0.0.0.4 nixpkgs-unstable 0.0.0.4 Package maintainers: 1 @thielema Henning Thielemann <nix@henning-thielemann.de>
pkgs.haskellPackages.apportionment Round a set of numbers while maintaining its sum nixos-unstable 0.0.0.4 nixos-unstable-small 0.0.0.4 nixpkgs-unstable 0.0.0.4
CVE-2023-50781 7.5 HIGH CVSS version: 3.1 Attack vector (AV): NETWORK Attack complexity (AC): LOW Privileges required (PR): NONE User interaction (UI): NONE Scope (S): UNCHANGED Confidentiality impact (C): HIGH Integrity impact (I): NONE Availability impact (A): NONE created 6 months, 3 weeks ago M2crypto: bleichenbacher timing attacks in the rsa decryption api - incomplete fix for cve-2020-25657 A flaw was found in m2crypto. This issue may allow a remote attacker to decrypt captured messages in TLS servers that use RSA key exchanges, which may lead to exposure of confidential or sensitive data. pywbem m2crypto virt-who pkgs.python311Packages.pywbem Support for the WBEM standard for systems management nixos-unstable 1.7.2 nixos-unstable-small 1.7.2 nixpkgs-unstable 1.7.2 pkgs.python312Packages.pywbem Support for the WBEM standard for systems management nixos-unstable 1.7.2 nixos-unstable-small 1.7.2 nixpkgs-unstable 1.7.2 pkgs.python311Packages.m2crypto Python crypto and SSL toolkit nixos-unstable m2crypto-0.42.0 nixos-unstable-small m2crypto-0.42.0 nixpkgs-unstable m2crypto-0.42.0 pkgs.python312Packages.m2crypto Python crypto and SSL toolkit nixos-unstable m2crypto-0.42.0 nixos-unstable-small m2crypto-0.42.0 nixpkgs-unstable m2crypto-0.42.0 pkgs.python312Packages.pywbem.x86_64-linux Support for the WBEM standard for systems management nixos-unstable 1.7.2 pkgs.python312Packages.pywbem.aarch64-linux Support for the WBEM standard for systems management nixos-unstable 1.7.2 pkgs.python312Packages.pywbem.x86_64-darwin Support for the WBEM standard for systems management nixos-unstable 1.7.2 pkgs.python312Packages.m2crypto.x86_64-linux Python crypto and SSL toolkit nixos-unstable m2crypto-0.42.0 pkgs.python312Packages.pywbem.aarch64-darwin Support for the WBEM standard for systems management nixos-unstable 1.7.2 pkgs.python312Packages.m2crypto.aarch64-linux Python crypto and SSL toolkit nixos-unstable m2crypto-0.42.0 pkgs.python312Packages.m2crypto.x86_64-darwin Python crypto and SSL toolkit nixos-unstable m2crypto-0.42.0 pkgs.python312Packages.m2crypto.aarch64-darwin Python crypto and SSL toolkit nixos-unstable m2crypto-0.42.0
pkgs.python311Packages.pywbem Support for the WBEM standard for systems management nixos-unstable 1.7.2 nixos-unstable-small 1.7.2 nixpkgs-unstable 1.7.2
pkgs.python312Packages.pywbem Support for the WBEM standard for systems management nixos-unstable 1.7.2 nixos-unstable-small 1.7.2 nixpkgs-unstable 1.7.2
pkgs.python311Packages.m2crypto Python crypto and SSL toolkit nixos-unstable m2crypto-0.42.0 nixos-unstable-small m2crypto-0.42.0 nixpkgs-unstable m2crypto-0.42.0
pkgs.python312Packages.m2crypto Python crypto and SSL toolkit nixos-unstable m2crypto-0.42.0 nixos-unstable-small m2crypto-0.42.0 nixpkgs-unstable m2crypto-0.42.0
pkgs.python312Packages.pywbem.x86_64-linux Support for the WBEM standard for systems management nixos-unstable 1.7.2
pkgs.python312Packages.pywbem.aarch64-linux Support for the WBEM standard for systems management nixos-unstable 1.7.2
pkgs.python312Packages.pywbem.x86_64-darwin Support for the WBEM standard for systems management nixos-unstable 1.7.2
pkgs.python312Packages.m2crypto.x86_64-linux Python crypto and SSL toolkit nixos-unstable m2crypto-0.42.0
pkgs.python312Packages.pywbem.aarch64-darwin Support for the WBEM standard for systems management nixos-unstable 1.7.2
pkgs.python312Packages.m2crypto.aarch64-linux Python crypto and SSL toolkit nixos-unstable m2crypto-0.42.0
pkgs.python312Packages.m2crypto.x86_64-darwin Python crypto and SSL toolkit nixos-unstable m2crypto-0.42.0
pkgs.python312Packages.m2crypto.aarch64-darwin Python crypto and SSL toolkit nixos-unstable m2crypto-0.42.0
CVE-2024-31420 6.5 MEDIUM CVSS version: 3.1 Attack vector (AV): NETWORK Attack complexity (AC): LOW Privileges required (PR): LOW User interaction (UI): NONE Scope (S): UNCHANGED Confidentiality impact (C): NONE Integrity impact (I): NONE Availability impact (A): HIGH created 6 months, 3 weeks ago Cnv: dos through repeatedly calling vm-dump-metrics until virt handler crashes A NULL pointer dereference flaw was found in KubeVirt. This flaw allows an attacker who has access to a virtual machine guest on a node with DownwardMetrics enabled to cause a denial of service by issuing a high number of calls to vm-dump-metrics --virtio and then deleting the virtual machine. cnv ==4.15.0 kubevirt pkgs.kubevirt Client tool to use advanced features such as console access nixos-unstable 1.4.0 nixos-unstable-small 1.4.0 nixpkgs-unstable 1.4.0 pkgs.vimPlugins.scnvim nixos-unstable 2024-09-16 nixos-unstable-small 2024-09-16 nixpkgs-unstable 2024-09-16 pkgs.python311Packages.cnvkit Python library and command-line software toolkit to infer and visualize copy number from high-throughput DNA sequencing data nixos-unstable 0.9.12 nixos-unstable-small 0.9.12 nixpkgs-unstable 0.9.12 pkgs.python312Packages.cnvkit Python library and command-line software toolkit to infer and visualize copy number from high-throughput DNA sequencing data nixos-unstable 0.9.12 nixos-unstable-small 0.9.12 nixpkgs-unstable 0.9.12 Package maintainers: 2 @jbedo Justin Bedő <cu@cua0.org> @haslersn Sebastian Hasler <haslersn@fius.informatik.uni-stuttgart.de>
pkgs.kubevirt Client tool to use advanced features such as console access nixos-unstable 1.4.0 nixos-unstable-small 1.4.0 nixpkgs-unstable 1.4.0
pkgs.vimPlugins.scnvim nixos-unstable 2024-09-16 nixos-unstable-small 2024-09-16 nixpkgs-unstable 2024-09-16
pkgs.python311Packages.cnvkit Python library and command-line software toolkit to infer and visualize copy number from high-throughput DNA sequencing data nixos-unstable 0.9.12 nixos-unstable-small 0.9.12 nixpkgs-unstable 0.9.12
pkgs.python312Packages.cnvkit Python library and command-line software toolkit to infer and visualize copy number from high-throughput DNA sequencing data nixos-unstable 0.9.12 nixos-unstable-small 0.9.12 nixpkgs-unstable 0.9.12
CVE-2024-3094 10.0 CRITICAL CVSS version: 3.1 Attack vector (AV): NETWORK Attack complexity (AC): LOW Privileges required (PR): NONE User interaction (UI): NONE Scope (S): CHANGED Confidentiality impact (C): HIGH Integrity impact (I): HIGH Availability impact (A): HIGH created 6 months, 3 weeks ago Xz: malicious code in distributed source Malicious code was discovered in the upstream tarballs of xz, starting with version 5.6.0. Through a series of complex obfuscations, the liblzma build process extracts a prebuilt object file from a disguised test file existing in the source code, which is then used to modify specific functions in the liblzma code. This results in a modified liblzma library that can be used by any software linked against this library, intercepting and modifying the data interaction with this library. xz ==5.6.0 ==5.6.1 pkgs.xz General-purpose data compression software, successor of LZMA nixos-unstable 5.6.3 nixos-unstable-small 5.6.3 nixpkgs-unstable 5.6.3 pkgs.pxz compression utility that runs LZMA compression of different parts on multiple cores simultaneously nixos-unstable 4.999.9beta nixos-unstable-small 4.999.9beta nixpkgs-unstable 4.999.9beta pkgs.pixz Parallel compressor/decompressor for xz format nixos-unstable 1.0.7 nixos-unstable-small 1.0.7 nixpkgs-unstable 1.0.7 pkgs.xzgv Picture viewer for X with a thumbnail-based selector nixos-unstable 0.9.2 nixos-unstable-small 0.9.2 nixpkgs-unstable 0.9.2 pkgs.xzoom X11 screen zoom tool nixos-unstable 0.3 nixos-unstable-small 0.3 nixpkgs-unstable 0.3 pkgs.plymouth-proxzima-theme Techno Plymouth theme with crazy animation nixos-unstable 0-unstable-2023-01-30 nixos-unstable-small 0-unstable-2023-01-30 nixpkgs-unstable 0-unstable-2023-01-30 pkgs.python311Packages.txzmq Twisted bindings for ZeroMQ nixos-unstable 1.0.0 nixos-unstable-small 1.0.0 nixpkgs-unstable 1.0.0 pkgs.python312Packages.txzmq Twisted bindings for ZeroMQ nixos-unstable 1.0.0 nixos-unstable-small 1.0.0 nixpkgs-unstable 1.0.0 pkgs.python311Packages.python-xz Pure Python library for seeking within compressed xz files nixos-unstable 0.5.0 nixos-unstable-small 0.5.0 nixpkgs-unstable 0.5.0 pkgs.python312Packages.python-xz Pure Python library for seeking within compressed xz files nixos-unstable 0.5.0 nixos-unstable-small 0.5.0 nixpkgs-unstable 0.5.0 pkgs.python312Packages.txzmq.x86_64-linux Twisted bindings for ZeroMQ nixos-unstable 1.0.0 pkgs.python312Packages.txzmq.aarch64-linux Twisted bindings for ZeroMQ nixos-unstable 1.0.0 pkgs.python312Packages.txzmq.x86_64-darwin Twisted bindings for ZeroMQ nixos-unstable 1.0.0 pkgs.python312Packages.txzmq.aarch64-darwin Twisted bindings for ZeroMQ nixos-unstable 1.0.0 pkgs.python312Packages.python-xz.x86_64-linux Pure Python library for seeking within compressed xz files nixos-unstable 0.5.0 pkgs.python312Packages.python-xz.aarch64-linux Pure Python library for seeking within compressed xz files nixos-unstable 0.5.0 pkgs.python312Packages.python-xz.x86_64-darwin Pure Python library for seeking within compressed xz files nixos-unstable 0.5.0 pkgs.python312Packages.python-xz.aarch64-darwin Pure Python library for seeking within compressed xz files nixos-unstable 0.5.0 Package maintainers: 6 @mxmlnkn Maximilian Knespel @johnrtitor Masum Reza <masumrezarock100@gmail.com> @svanderburg Sander van der Burg <s.vanderburg@tudelft.nl> @womfoo Kranium Gikos Mendoza <kranium@gikos.net> @7c6f434c Michael Raskin <7c6f434c@mail.ru> @ip1981 Igor Pashev <pashev.igor@gmail.com>
pkgs.xz General-purpose data compression software, successor of LZMA nixos-unstable 5.6.3 nixos-unstable-small 5.6.3 nixpkgs-unstable 5.6.3
pkgs.pxz compression utility that runs LZMA compression of different parts on multiple cores simultaneously nixos-unstable 4.999.9beta nixos-unstable-small 4.999.9beta nixpkgs-unstable 4.999.9beta
pkgs.pixz Parallel compressor/decompressor for xz format nixos-unstable 1.0.7 nixos-unstable-small 1.0.7 nixpkgs-unstable 1.0.7
pkgs.xzgv Picture viewer for X with a thumbnail-based selector nixos-unstable 0.9.2 nixos-unstable-small 0.9.2 nixpkgs-unstable 0.9.2
pkgs.plymouth-proxzima-theme Techno Plymouth theme with crazy animation nixos-unstable 0-unstable-2023-01-30 nixos-unstable-small 0-unstable-2023-01-30 nixpkgs-unstable 0-unstable-2023-01-30
pkgs.python311Packages.txzmq Twisted bindings for ZeroMQ nixos-unstable 1.0.0 nixos-unstable-small 1.0.0 nixpkgs-unstable 1.0.0
pkgs.python312Packages.txzmq Twisted bindings for ZeroMQ nixos-unstable 1.0.0 nixos-unstable-small 1.0.0 nixpkgs-unstable 1.0.0
pkgs.python311Packages.python-xz Pure Python library for seeking within compressed xz files nixos-unstable 0.5.0 nixos-unstable-small 0.5.0 nixpkgs-unstable 0.5.0
pkgs.python312Packages.python-xz Pure Python library for seeking within compressed xz files nixos-unstable 0.5.0 nixos-unstable-small 0.5.0 nixpkgs-unstable 0.5.0
pkgs.python312Packages.python-xz.x86_64-linux Pure Python library for seeking within compressed xz files nixos-unstable 0.5.0
pkgs.python312Packages.python-xz.aarch64-linux Pure Python library for seeking within compressed xz files nixos-unstable 0.5.0
pkgs.python312Packages.python-xz.x86_64-darwin Pure Python library for seeking within compressed xz files nixos-unstable 0.5.0
pkgs.python312Packages.python-xz.aarch64-darwin Pure Python library for seeking within compressed xz files nixos-unstable 0.5.0