Nixpkgs Security Tracker

Login with GitHub

Automatically generated suggestions

to queue a suggestion for refinement.

to remove a suggestion from the queue.

CVE-2023-40557
5.4 MEDIUM
  • CVSS version: 3.1
  • Attack vector (AV): NETWORK
  • Attack complexity (AC): LOW
  • Privileges required (PR): LOW
  • User interaction (UI): NONE
  • Scope (S): UNCHANGED
  • Confidentiality impact (C): NONE
  • Integrity impact (I): LOW
  • Availability impact (A): LOW
created 3 months ago
WordPress Tabs & Accordion plugin <= 1.3.10 - Content Injection vulnerability

Improper Neutralization of Script-Related HTML Tags in a Web Page (Basic XSS) vulnerability in PickPlugins Tabs & Accordion allows Code Injection.This issue affects Tabs & Accordion: from n/a through 1.3.10.

Affected products

tabs
  • =<1.3.10

Matching in nixpkgs

pkgs.python312Packages.sphinx-tabs

Sphinx extension for creating tabbed content when building HTML

pkgs.python313Packages.sphinx-tabs

Sphinx extension for creating tabbed content when building HTML

pkgs.gnomeExtensions.application-tabs

Panel will include a different window tab for the same application that is currently launched.

pkgs.python312Packages.sphinx-inline-tabs

Add inline tabbed content to your Sphinx documentation

pkgs.python313Packages.sphinx-inline-tabs

Add inline tabbed content to your Sphinx documentation

pkgs.gnomeExtensions.open-browser-tabs-on-active-workspace

Open tabs on active workspace.

Package maintainers: 3

CVE-2023-26590
6.2 MEDIUM
  • CVSS version: 3.1
  • Attack vector (AV): LOCAL
  • Attack complexity (AC): LOW
  • Privileges required (PR): NONE
  • User interaction (UI): NONE
  • Scope (S): UNCHANGED
  • Confidentiality impact (C): NONE
  • Integrity impact (I): NONE
  • Availability impact (A): HIGH
created 3 months ago
Floating point exception in src/aiff.c

A floating point exception vulnerability was found in sox, in the lsx_aiffstartwrite function at sox/src/aiff.c:622:58. This flaw can lead to a denial of service.

Affected products

sox

Matching in nixpkgs

pkgs.sox

Sample Rate Converter for audio

pkgs.soxr

Audio resampling library

pkgs.soxt

GUI binding for using Open Inventor with Xt/Motif

pkgs.haskellPackages.sox

Play, write, read, convert audio signals using Sox

pkgs.haskellPackages.soxlib

Write, read, convert audio signals using libsox

pkgs.python312Packages.soxr

High quality, one-dimensional sample-rate conversion library

pkgs.python313Packages.soxr

High quality, one-dimensional sample-rate conversion library

pkgs.haskellPackages.word-note-sox

SoX for algorithmic composition with groups of notes liken to words

Package maintainers: 4

CVE-2023-32550
9.3 CRITICAL
  • CVSS version: 3.1
  • Attack vector (AV): NETWORK
  • Attack complexity (AC): LOW
  • Privileges required (PR): NONE
  • User interaction (UI): NONE
  • Scope (S): CHANGED
  • Confidentiality impact (C): HIGH
  • Integrity impact (I): LOW
  • Availability impact (A): NONE
created 3 months ago
Landscape's Apache server-status is accessible by default

Landscape's server-status page exposed sensitive system information. This data leak included GET requests which contain information to attack and leak further information from the Landscape API.

Affected products

landscape
  • <19.10.05

Matching in nixpkgs

pkgs.terraform-landscape

Improve Terraform's plan output to be easier to read and understand

pkgs.ue4demos.landscape_mountains

Unreal Engine 4 Linux demos

  • nixos-unstable ???
    • nixpkgs-unstable

Package maintainers: 3

CVE-2023-1672
5.3 MEDIUM
  • CVSS version: 3.1
  • Attack vector (AV): ADJACENT_NETWORK
  • Attack complexity (AC): HIGH
  • Privileges required (PR): NONE
  • User interaction (UI): NONE
  • Scope (S): UNCHANGED
  • Confidentiality impact (C): HIGH
  • Integrity impact (I): NONE
  • Availability impact (A): NONE
created 3 months ago
Race condition exists in the key generation and rotation functionality

A race condition exists in the Tang server functionality for key generation and key rotation. This flaw results in a small time window where Tang private keys become readable by other processes on the same host.

Affected products

tang

Matching in nixpkgs

pkgs.tang

Server for binding data to network presence

pkgs.tango

Local command-line Japanese dictionary tool using yomichan's dictionary files

pkgs.tangram

Run web apps on your desktop

pkgs.entangle

Tethered camera control and capture

pkgs.md-tangle

Generates ("tangles") source code from Markdown documents

pkgs.rectangle

Move and resize windows in macOS using keyboard shortcuts or snap areas

pkgs.tangerine

System for creating 3D models procedurally from a set of Signed Distance Function (SDF) primitive shapes and combining operators

pkgs.tangara-cli

Command-line tool for managing the Cool Tech Zone Tangara

pkgs.rectangle-pro

Move and resize windows in macOS using keyboard shortcuts or snap areas

pkgs.tango-icon-theme

Basic set of icons

pkgs.tangara-companion

Companion app for Cool Tech Zone Tangara

pkgs.haskellPackages.tangle

Heterogenous memoisation monad

pkgs.gnomeExtensions.rectangle

Magnet/Rectangle like manual tiling

pkgs.python312Packages.untangle

Convert XML documents into Python objects

pkgs.python313Packages.untangle

Convert XML documents into Python objects

pkgs.vscode-extensions.matangover.mypy

pkgs.python312Packages.rectangle-packer

Pack a set of rectangles into a bounding box with minimum area

pkgs.python313Packages.rectangle-packer

Pack a set of rectangles into a bounding box with minimum area

CVE-2023-23790
7.1 HIGH
  • CVSS version: 3.1
  • Attack vector (AV): NETWORK
  • Attack complexity (AC): LOW
  • Privileges required (PR): NONE
  • User interaction (UI): REQUIRED
  • Scope (S): UNCHANGED
  • Confidentiality impact (C): NONE
  • Integrity impact (I): LOW
  • Availability impact (A): HIGH
created 3 months ago
WordPress Pods Plugin <= 2.9.10.2 is vulnerable to Cross Site Request Forgery (CSRF)

Cross-Site Request Forgery (CSRF) vulnerability in Pods Framework Team Pods – Custom Content Types and Fields plugin <= 2.9.10.2 versions.

Affected products

pods
  • =<2.9.10.2

Matching in nixpkgs

pkgs.pods

Podman desktop application

pkgs.cocoapods

Manages dependencies for your Xcode projects

pkgs.cocoapods-beta

Manages dependencies for your Xcode projects

pkgs.rubyPackages.cocoapods

pkgs.rubyPackages.cocoapods-art

pkgs.rubyPackages.cocoapods-try

pkgs.rubyPackages_3_1.cocoapods

pkgs.rubyPackages_3_2.cocoapods

pkgs.rubyPackages_3_3.cocoapods

pkgs.rubyPackages_3_4.cocoapods

pkgs.rubyPackages.cocoapods-keys

pkgs.rubyPackages.cocoapods-open

pkgs.rubyPackages.cocoapods-clean

pkgs.rubyPackages.cocoapods-trunk

pkgs.rubyPackages.cocoapods-deploy

pkgs.rubyPackages.cocoapods-search

pkgs.rubyPackages.cocoapods-browser

pkgs.rubyPackages.cocoapods-plugins

pkgs.rubyPackages.cocoapods-testing

pkgs.rubyPackages_3_1.cocoapods-art

pkgs.rubyPackages_3_1.cocoapods-try

pkgs.rubyPackages_3_2.cocoapods-art

pkgs.rubyPackages_3_2.cocoapods-try

pkgs.rubyPackages_3_3.cocoapods-art

pkgs.rubyPackages_3_3.cocoapods-try

pkgs.rubyPackages_3_4.cocoapods-art

pkgs.rubyPackages_3_4.cocoapods-try

pkgs.rubyPackages.cocoapods-coverage

pkgs.rubyPackages.cocoapods-generate

pkgs.rubyPackages_3_1.cocoapods-keys

pkgs.rubyPackages_3_1.cocoapods-open

pkgs.rubyPackages_3_2.cocoapods-keys

pkgs.rubyPackages_3_2.cocoapods-open

pkgs.rubyPackages_3_3.cocoapods-keys

pkgs.rubyPackages_3_3.cocoapods-open

pkgs.rubyPackages_3_4.cocoapods-keys

pkgs.rubyPackages_3_4.cocoapods-open

pkgs.rubyPackages.cocoapods-whitelist

pkgs.rubyPackages_3_1.cocoapods-clean

pkgs.rubyPackages_3_1.cocoapods-trunk

pkgs.rubyPackages_3_2.cocoapods-clean

pkgs.rubyPackages_3_2.cocoapods-trunk

pkgs.rubyPackages_3_3.cocoapods-clean

pkgs.rubyPackages_3_3.cocoapods-trunk

pkgs.rubyPackages_3_4.cocoapods-clean

pkgs.rubyPackages_3_4.cocoapods-trunk

pkgs.rubyPackages.cocoapods-downloader

pkgs.rubyPackages_3_1.cocoapods-deploy

pkgs.rubyPackages_3_1.cocoapods-search

pkgs.rubyPackages_3_2.cocoapods-deploy

pkgs.rubyPackages_3_2.cocoapods-search

pkgs.rubyPackages_3_3.cocoapods-deploy

pkgs.rubyPackages_3_3.cocoapods-search

pkgs.rubyPackages_3_4.cocoapods-deploy

pkgs.rubyPackages_3_4.cocoapods-search

pkgs.rubyPackages.cocoapods-deintegrate

pkgs.rubyPackages.cocoapods-wholemodule

pkgs.rubyPackages_3_1.cocoapods-browser

pkgs.rubyPackages_3_1.cocoapods-plugins

pkgs.rubyPackages_3_1.cocoapods-testing

pkgs.rubyPackages_3_2.cocoapods-browser

pkgs.rubyPackages_3_2.cocoapods-plugins

pkgs.rubyPackages_3_2.cocoapods-testing

pkgs.rubyPackages_3_3.cocoapods-browser

pkgs.rubyPackages_3_3.cocoapods-plugins

pkgs.rubyPackages_3_3.cocoapods-testing

pkgs.rubyPackages_3_4.cocoapods-browser

pkgs.rubyPackages_3_4.cocoapods-plugins

pkgs.rubyPackages_3_4.cocoapods-testing

pkgs.rubyPackages.cocoapods-dependencies

pkgs.rubyPackages_3_1.cocoapods-coverage

pkgs.rubyPackages_3_1.cocoapods-generate

pkgs.rubyPackages_3_2.cocoapods-coverage

pkgs.rubyPackages_3_2.cocoapods-generate

pkgs.rubyPackages_3_3.cocoapods-coverage

pkgs.rubyPackages_3_3.cocoapods-generate

pkgs.rubyPackages_3_4.cocoapods-coverage

pkgs.rubyPackages_3_4.cocoapods-generate

pkgs.rubyPackages_3_1.cocoapods-whitelist

pkgs.rubyPackages_3_2.cocoapods-whitelist

pkgs.rubyPackages_3_3.cocoapods-whitelist

pkgs.rubyPackages_3_4.cocoapods-whitelist

pkgs.rubyPackages_3_1.cocoapods-downloader

pkgs.rubyPackages_3_2.cocoapods-downloader

pkgs.rubyPackages_3_3.cocoapods-downloader

pkgs.rubyPackages_3_4.cocoapods-downloader

pkgs.rubyPackages.cocoapods-try-release-fix

pkgs.rubyPackages_3_1.cocoapods-deintegrate

pkgs.rubyPackages_3_1.cocoapods-wholemodule

pkgs.rubyPackages_3_2.cocoapods-deintegrate

pkgs.rubyPackages_3_2.cocoapods-wholemodule

pkgs.rubyPackages_3_3.cocoapods-deintegrate

pkgs.rubyPackages_3_3.cocoapods-wholemodule

pkgs.rubyPackages_3_4.cocoapods-deintegrate

pkgs.rubyPackages_3_4.cocoapods-wholemodule

pkgs.rubyPackages.cocoapods-acknowledgements

pkgs.rubyPackages.cocoapods-git_url_rewriter

pkgs.rubyPackages_3_1.cocoapods-dependencies

pkgs.rubyPackages_3_2.cocoapods-dependencies

pkgs.rubyPackages_3_3.cocoapods-dependencies

pkgs.rubyPackages_3_4.cocoapods-dependencies

pkgs.rubyPackages.cocoapods-expert-difficulty

pkgs.rubyPackages.cocoapods-update-if-you-dare

pkgs.rubyPackages_3_1.cocoapods-try-release-fix

pkgs.rubyPackages_3_2.cocoapods-try-release-fix

pkgs.rubyPackages_3_3.cocoapods-try-release-fix

pkgs.rubyPackages_3_4.cocoapods-try-release-fix

pkgs.rubyPackages_3_1.cocoapods-acknowledgements

pkgs.rubyPackages_3_1.cocoapods-fix-react-native

pkgs.rubyPackages_3_1.cocoapods-git_url_rewriter

pkgs.rubyPackages_3_2.cocoapods-acknowledgements

pkgs.rubyPackages_3_2.cocoapods-fix-react-native

pkgs.rubyPackages_3_2.cocoapods-git_url_rewriter

pkgs.rubyPackages_3_3.cocoapods-acknowledgements

pkgs.rubyPackages_3_3.cocoapods-fix-react-native

pkgs.rubyPackages_3_3.cocoapods-git_url_rewriter

pkgs.rubyPackages_3_4.cocoapods-acknowledgements

pkgs.rubyPackages_3_4.cocoapods-fix-react-native

pkgs.rubyPackages_3_4.cocoapods-git_url_rewriter

pkgs.rubyPackages_3_1.cocoapods-expert-difficulty

pkgs.rubyPackages_3_2.cocoapods-expert-difficulty

pkgs.rubyPackages_3_3.cocoapods-expert-difficulty

pkgs.rubyPackages_3_4.cocoapods-expert-difficulty

pkgs.rubyPackages_3_1.cocoapods-update-if-you-dare

pkgs.rubyPackages_3_2.cocoapods-update-if-you-dare

pkgs.rubyPackages_3_3.cocoapods-update-if-you-dare

pkgs.rubyPackages_3_4.cocoapods-update-if-you-dare

pkgs.rubyPackages.cocoapods-clean_build_phases_scripts

pkgs.rubyPackages.cocoapods-disable-podfile-validations

pkgs.rubyPackages_3_1.cocoapods-clean_build_phases_scripts

pkgs.rubyPackages_3_2.cocoapods-clean_build_phases_scripts

pkgs.rubyPackages_3_3.cocoapods-clean_build_phases_scripts

pkgs.rubyPackages_3_4.cocoapods-clean_build_phases_scripts

pkgs.rubyPackages_3_1.cocoapods-disable-podfile-validations

pkgs.rubyPackages_3_2.cocoapods-disable-podfile-validations

pkgs.rubyPackages_3_3.cocoapods-disable-podfile-validations

pkgs.rubyPackages_3_4.cocoapods-disable-podfile-validations

Package maintainers: 2

CVE-2023-50849
7.6 HIGH
  • CVSS version: 3.1
  • Attack vector (AV): NETWORK
  • Attack complexity (AC): LOW
  • Privileges required (PR): HIGH
  • User interaction (UI): NONE
  • Scope (S): CHANGED
  • Confidentiality impact (C): HIGH
  • Integrity impact (I): NONE
  • Availability impact (A): LOW
created 3 months ago
WordPress e2pdf Plugin <= 1.20.23 is vulnerable to SQL Injection

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in E2Pdf.Com E2Pdf – Export To Pdf Tool for WordPress.This issue affects E2Pdf – Export To Pdf Tool for WordPress: from n/a through 1.20.23.

Affected products

e2pdf
  • =<1.20.23

Matching in nixpkgs

pkgs.haskellPackages.line2pdf

Simple command-line utility to convert text into PDF

CVE-2023-34432
7.8 HIGH
  • CVSS version: 3.1
  • Attack vector (AV): LOCAL
  • Attack complexity (AC): LOW
  • Privileges required (PR): NONE
  • User interaction (UI): REQUIRED
  • Scope (S): UNCHANGED
  • Confidentiality impact (C): HIGH
  • Integrity impact (I): HIGH
  • Availability impact (A): HIGH
created 3 months ago
Heap-buffer-overflow in src/formats_i.c

A heap buffer overflow vulnerability was found in sox, in the lsx_readbuf function at sox/src/formats_i.c:98:16. This flaw can lead to a denial of service, code execution, or information disclosure.

Affected products

sox

Matching in nixpkgs

pkgs.sox

Sample Rate Converter for audio

pkgs.soxr

Audio resampling library

pkgs.soxt

GUI binding for using Open Inventor with Xt/Motif

pkgs.haskellPackages.sox

Play, write, read, convert audio signals using Sox

pkgs.haskellPackages.soxlib

Write, read, convert audio signals using libsox

pkgs.python312Packages.soxr

High quality, one-dimensional sample-rate conversion library

pkgs.python313Packages.soxr

High quality, one-dimensional sample-rate conversion library

pkgs.haskellPackages.word-note-sox

SoX for algorithmic composition with groups of notes liken to words

Package maintainers: 4

created 3 months ago
Apache Airflow: Bypass permission verification to view task instances of other dags

Apache Airflow, versions before 2.7.2, has a vulnerability that allows an authorized user who has access to read specific DAGs only, to read information about task instances in other DAGs. Users of Apache Airflow are advised to upgrade to version 2.7.2 or newer to mitigate the risk associated with this vulnerability.

Affected products

apache-airflow
  • <2.7.2

Matching in nixpkgs

pkgs.apache-airflow

Programmatically author, schedule and monitor data pipelines

Package maintainers: 3

CVE-2023-1194
7.1 HIGH
  • CVSS version: 3.1
  • Attack vector (AV): NETWORK
  • Attack complexity (AC): LOW
  • Privileges required (PR): LOW
  • User interaction (UI): NONE
  • Scope (S): UNCHANGED
  • Confidentiality impact (C): LOW
  • Integrity impact (I): NONE
  • Availability impact (A): HIGH
created 3 months ago
Use-after-free in parse_lease_state()

An out-of-bounds (OOB) memory read flaw was found in parse_lease_state in the KSMBD implementation of the in-kernel samba server and CIFS in the Linux kernel. When an attacker sends the CREATE command with a malformed payload to KSMBD, due to a missing check of `NameOffset` in the `parse_lease_state()` function, the `create_context` object can access invalid memory.

Affected products

kernel
kernel-rt

Matching in nixpkgs

pkgs.linux-doc

Linux kernel html documentation

pkgs.coq-kernel

  • nixos-unstable ???
    • nixpkgs-unstable

pkgs.kernelshark

GUI for trace-cmd which is an interface for the Linux kernel ftrace subsystem

pkgs.linuxPackages.zfs_2_2

ZFS Filesystem Linux Kernel Module

pkgs.linuxPackages.zfs_2_3

ZFS Filesystem Linux Kernel Module

pkgs.kernel-hardening-checker

Tool for checking the security hardening options of the Linux kernel

pkgs.linuxPackages.linux-gpib

Support package for GPIB (IEEE 488) hardware

pkgs.linuxPackages_lqx.zfs_2_3

ZFS Filesystem Linux Kernel Module

pkgs.linuxPackages_zen.zfs_2_3

ZFS Filesystem Linux Kernel Module

pkgs.python312Packages.kernels

Load compute kernels from the Huggingface Hub

pkgs.python313Packages.kernels

Load compute kernels from the Huggingface Hub

pkgs.linuxPackages.zfs_unstable

ZFS Filesystem Linux Kernel Module

pkgs.linuxPackages-libre.zfs_2_2

ZFS Filesystem Linux Kernel Module

pkgs.linuxPackages-libre.zfs_2_3

ZFS Filesystem Linux Kernel Module

pkgs.python312Packages.ipykernel

IPython Kernel for Jupyter

pkgs.python313Packages.ipykernel

IPython Kernel for Jupyter

pkgs.linuxPackages_latest.zfs_2_3

ZFS Filesystem Linux Kernel Module

pkgs.linuxPackages_lqx.linux-gpib

Support package for GPIB (IEEE 488) hardware

pkgs.linuxPackages_xanmod.zfs_2_2

ZFS Filesystem Linux Kernel Module

pkgs.linuxPackages_xanmod.zfs_2_3

ZFS Filesystem Linux Kernel Module

pkgs.linuxPackages_zen.linux-gpib

Support package for GPIB (IEEE 488) hardware

pkgs.python312Packages.metakernel

Jupyter/IPython Kernel Tools

pkgs.python312Packages.nix-kernel

Simple jupyter kernel for nix-repl

pkgs.python313Packages.metakernel

Jupyter/IPython Kernel Tools

pkgs.python313Packages.nix-kernel

Simple jupyter kernel for nix-repl

pkgs.python312Packages.bash-kernel

Bash Kernel for Jupyter

pkgs.python313Packages.bash-kernel

Bash Kernel for Jupyter

pkgs.haskellPackages.ipython-kernel

A library for creating kernels for IPython frontends

pkgs.linuxPackages-libre.linux-gpib

Support package for GPIB (IEEE 488) hardware

pkgs.linuxPackages_lqx.zfs_unstable

ZFS Filesystem Linux Kernel Module

pkgs.linuxPackages_zen.zfs_unstable

ZFS Filesystem Linux Kernel Module

pkgs.rocmPackages.composable_kernel

Performance portable programming model for machine learning tensor operators

pkgs.linuxPackages_latest.linux-gpib

Support package for GPIB (IEEE 488) hardware

pkgs.linuxPackages_xanmod.linux-gpib

Support package for GPIB (IEEE 488) hardware

pkgs.gnomeExtensions.kernel-indicator

Display the kernel version in the top bar

pkgs.linuxPackages-libre.zfs_unstable

ZFS Filesystem Linux Kernel Module

pkgs.python312Packages.ansible-kernel

Ansible kernel for Jupyter

pkgs.python312Packages.spyder-kernels

Jupyter kernels for Spyder's console

pkgs.python313Packages.ansible-kernel

Ansible kernel for Jupyter

pkgs.python313Packages.spyder-kernels

Jupyter kernels for Spyder's console

pkgs.rocmPackages_6.composable_kernel

Performance portable programming model for machine learning tensor operators

pkgs.linuxPackages_latest.zfs_unstable

ZFS Filesystem Linux Kernel Module

pkgs.linuxPackages_xanmod.zfs_unstable

ZFS Filesystem Linux Kernel Module

pkgs.linuxPackages_latest-libre.zfs_2_3

ZFS Filesystem Linux Kernel Module

pkgs.python312Packages.jupyter-c-kernel

Minimalistic C kernel for Jupyter

pkgs.python313Packages.jupyter-c-kernel

Minimalistic C kernel for Jupyter

pkgs.linuxPackages_xanmod_stable.zfs_2_3

ZFS Filesystem Linux Kernel Module

pkgs.linuxPackages_latest-libre.linux-gpib

Support package for GPIB (IEEE 488) hardware

pkgs.linuxKernel.packages.linux_5_4.zfs_2_2

ZFS Filesystem Linux Kernel Module

pkgs.linuxKernel.packages.linux_5_4.zfs_2_3

ZFS Filesystem Linux Kernel Module

pkgs.linuxKernel.packages.linux_6_1.zfs_2_2

ZFS Filesystem Linux Kernel Module

pkgs.linuxKernel.packages.linux_6_1.zfs_2_3

ZFS Filesystem Linux Kernel Module

pkgs.linuxKernel.packages.linux_6_6.zfs_2_2

ZFS Filesystem Linux Kernel Module

pkgs.linuxKernel.packages.linux_6_6.zfs_2_3

ZFS Filesystem Linux Kernel Module

pkgs.linuxKernel.packages.linux_lqx.zfs_2_3

ZFS Filesystem Linux Kernel Module

pkgs.linuxKernel.packages.linux_zen.zfs_2_3

ZFS Filesystem Linux Kernel Module

pkgs.linuxPackages_xanmod_stable.linux-gpib

Support package for GPIB (IEEE 488) hardware

pkgs.linuxKernel.packages.linux_5_10.zfs_2_2

ZFS Filesystem Linux Kernel Module

pkgs.linuxKernel.packages.linux_5_10.zfs_2_3

ZFS Filesystem Linux Kernel Module

pkgs.linuxKernel.packages.linux_5_15.zfs_2_2

ZFS Filesystem Linux Kernel Module

pkgs.linuxKernel.packages.linux_5_15.zfs_2_3

ZFS Filesystem Linux Kernel Module

pkgs.linuxKernel.packages.linux_6_12.zfs_2_2

ZFS Filesystem Linux Kernel Module

pkgs.linuxKernel.packages.linux_6_12.zfs_2_3

ZFS Filesystem Linux Kernel Module

pkgs.linuxKernel.packages.linux_6_16.zfs_2_3

ZFS Filesystem Linux Kernel Module

pkgs.linuxPackages_latest-libre.zfs_unstable

ZFS Filesystem Linux Kernel Module

pkgs.linuxKernel.packages.linux_libre.zfs_2_2

ZFS Filesystem Linux Kernel Module

pkgs.linuxKernel.packages.linux_libre.zfs_2_3

ZFS Filesystem Linux Kernel Module

pkgs.linuxPackages_xanmod_stable.zfs_unstable

ZFS Filesystem Linux Kernel Module

pkgs.home-assistant-component-tests.hardkernel

Open source home automation that puts local control and privacy first

pkgs.linuxKernel.packages.linux_5_4.linux-gpib

Support package for GPIB (IEEE 488) hardware

pkgs.linuxKernel.packages.linux_6_1.linux-gpib

Support package for GPIB (IEEE 488) hardware

pkgs.linuxKernel.packages.linux_6_6.linux-gpib

Support package for GPIB (IEEE 488) hardware

pkgs.linuxKernel.packages.linux_lqx.linux-gpib

Support package for GPIB (IEEE 488) hardware

pkgs.linuxKernel.packages.linux_xanmod.zfs_2_2

ZFS Filesystem Linux Kernel Module

pkgs.linuxKernel.packages.linux_xanmod.zfs_2_3

ZFS Filesystem Linux Kernel Module

pkgs.linuxKernel.packages.linux_zen.linux-gpib

Support package for GPIB (IEEE 488) hardware

pkgs.linuxKernel.packages.linux_5_10.linux-gpib

Support package for GPIB (IEEE 488) hardware

pkgs.linuxKernel.packages.linux_5_15.linux-gpib

Support package for GPIB (IEEE 488) hardware

pkgs.linuxKernel.packages.linux_6_12.linux-gpib

Support package for GPIB (IEEE 488) hardware

pkgs.linuxKernel.packages.linux_6_16.linux-gpib

Support package for GPIB (IEEE 488) hardware

pkgs.linuxKernel.packages.linux_5_4.zfs_unstable

ZFS Filesystem Linux Kernel Module

pkgs.linuxKernel.packages.linux_6_1.zfs_unstable

ZFS Filesystem Linux Kernel Module

pkgs.linuxKernel.packages.linux_6_6.zfs_unstable

ZFS Filesystem Linux Kernel Module

pkgs.linuxKernel.packages.linux_hardened.zfs_2_2

ZFS Filesystem Linux Kernel Module

pkgs.linuxKernel.packages.linux_hardened.zfs_2_3

ZFS Filesystem Linux Kernel Module

pkgs.linuxKernel.packages.linux_libre.linux-gpib

Support package for GPIB (IEEE 488) hardware

pkgs.linuxKernel.packages.linux_lqx.zfs_unstable

ZFS Filesystem Linux Kernel Module

pkgs.linuxKernel.packages.linux_zen.zfs_unstable

ZFS Filesystem Linux Kernel Module

pkgs.linuxKernel.packages.linux_5_10.zfs_unstable

ZFS Filesystem Linux Kernel Module

pkgs.linuxKernel.packages.linux_5_15.zfs_unstable

ZFS Filesystem Linux Kernel Module

pkgs.linuxKernel.packages.linux_6_12.zfs_unstable

ZFS Filesystem Linux Kernel Module

pkgs.linuxKernel.packages.linux_6_16.zfs_unstable

ZFS Filesystem Linux Kernel Module

pkgs.linuxKernel.packages.linux_xanmod.linux-gpib

Support package for GPIB (IEEE 488) hardware

pkgs.linuxKernel.packages.linux_libre.zfs_unstable

ZFS Filesystem Linux Kernel Module

pkgs.linuxKernel.packages.linux_hardened.linux-gpib

Support package for GPIB (IEEE 488) hardware

pkgs.linuxKernel.packages.linux_xanmod.zfs_unstable

ZFS Filesystem Linux Kernel Module

pkgs.linuxKernel.packages.linux_latest_libre.zfs_2_3

ZFS Filesystem Linux Kernel Module

pkgs.linuxKernel.packages.linux_6_12_hardened.zfs_2_2

ZFS Filesystem Linux Kernel Module

pkgs.linuxKernel.packages.linux_6_12_hardened.zfs_2_3

ZFS Filesystem Linux Kernel Module

pkgs.linuxKernel.packages.linux_hardened.zfs_unstable

ZFS Filesystem Linux Kernel Module

pkgs.linuxKernel.packages.linux_xanmod_stable.zfs_2_3

ZFS Filesystem Linux Kernel Module

pkgs.linuxKernel.packages.linux_latest_libre.linux-gpib

Support package for GPIB (IEEE 488) hardware

pkgs.linuxKernel.packages.linux_6_12_hardened.linux-gpib

Support package for GPIB (IEEE 488) hardware

pkgs.linuxKernel.packages.linux_xanmod_stable.linux-gpib

Support package for GPIB (IEEE 488) hardware

pkgs.linuxKernel.packages.linux_latest_libre.zfs_unstable

ZFS Filesystem Linux Kernel Module

pkgs.linuxKernel.packages.linux_6_12_hardened.zfs_unstable

ZFS Filesystem Linux Kernel Module

pkgs.linuxKernel.packages.linux_xanmod_stable.zfs_unstable

ZFS Filesystem Linux Kernel Module

Package maintainers: 19

CVE-2023-26302
3.3 LOW
  • CVSS version: 3.1
  • Attack vector (AV): LOCAL
  • Attack complexity (AC): LOW
  • Privileges required (PR): LOW
  • User interaction (UI): NONE
  • Scope (S): UNCHANGED
  • Confidentiality impact (C): NONE
  • Integrity impact (I): NONE
  • Availability impact (A): LOW
created 3 months ago
markdown-it-py CLI crash on invalid UTF-8 characters

Denial of service could be caused to the command line interface of markdown-it-py, before v2.2.0, if an attacker was allowed to use invalid UTF-8 characters as input.

Affected products

markdown-it-py
  • <v2.2.0

Matching in nixpkgs

pkgs.python312Packages.markdown-it-py

Markdown parser in Python

pkgs.python313Packages.markdown-it-py

Markdown parser in Python

Package maintainers: 1