Nixpkgs Security Tracker

Login with GitHub

Suggestions search

With package: tango

Found 1 matching suggestions

View:
Compact
Detailed
Untriaged
Permalink CVE-2023-1672
5.3 MEDIUM
  • CVSS version: 3.1
  • Attack vector (AV): ADJACENT_NETWORK
  • Attack complexity (AC): HIGH
  • Privileges required (PR): NONE
  • User interaction (UI): NONE
  • Scope (S): UNCHANGED
  • Confidentiality impact (C): HIGH
  • Integrity impact (I): NONE
  • Availability impact (A): NONE
created 6 months ago
Race condition exists in the key generation and rotation functionality

A race condition exists in the Tang server functionality for key generation and key rotation. This flaw results in a small time window where Tang private keys become readable by other processes on the same host.

References

Affected products

tang

Matching in nixpkgs

pkgs.tang

Server for binding data to network presence

  • nixos-unstable -
    • nixpkgs-unstable 15

pkgs.tango

Local command-line Japanese dictionary tool using yomichan's dictionary files

  • nixos-unstable -

pkgs.tangram

Run web apps on your desktop

  • nixos-unstable -

pkgs.entangle

Tethered camera control and capture

  • nixos-unstable -

pkgs.md-tangle

Generates ("tangles") source code from Markdown documents

  • nixos-unstable -

pkgs.rectangle

Move and resize windows in macOS using keyboard shortcuts or snap areas

  • nixos-unstable -

pkgs.tangerine

System for creating 3D models procedurally from a set of Signed Distance Function (SDF) primitive shapes and combining operators

pkgs.tangara-cli

Command-line tool for managing the Cool Tech Zone Tangara

  • nixos-unstable -

pkgs.rectangle-pro

Move and resize windows in macOS using keyboard shortcuts or snap areas

  • nixos-unstable -