CVE-2024-12224 created 6 months, 2 weeks ago idna accepts Punycode labels that do not produce any non-ASCII when decoded Improper Validation of Unsafe Equivalence in punycode by the idna crate from Servo rust-url allows an attacker to create a punycode hostname that one part of a system might treat as distinct while another part of that system would treat as equivalent to another hostname. Affected products idna <1.0.0 Matching in nixpkgs pkgs.echidna Ethereum smart contract fuzzer nixos-25.05 ??? nixos-25.05-small 2.2.6 nixos-unstable 2.2.3 nixos-unstable-small 2.2.6 nixpkgs-unstable 2.2.3 pkgs.unicode-idna unicode IDNA compatible processing data nixos-25.05 ??? nixos-25.05-small 16.0.0 nixos-unstable 16.0.0 nixos-unstable-small 16.0.0 nixpkgs-unstable 16.0.0 pkgs.kodiPackages.idna Internationalized Domain Names for Python nixos-25.05 ??? nixos-25.05-small 3.10.0 nixos-unstable 3.4.0 nixos-unstable-small 3.4.0 nixpkgs-unstable 3.10.0 pkgs.sbclPackages.idna nixos-25.05 ??? nixos-25.05-small 20120107-git nixos-unstable 20120107-git nixos-unstable-small 20120107-git nixpkgs-unstable 20120107-git pkgs.python311Packages.idna Internationalized Domain Names in Applications (IDNA) nixos-unstable 3.10 nixos-unstable-small 3.10 nixpkgs-unstable 3.10 pkgs.python312Packages.idna Internationalized Domain Names in Applications (IDNA) nixos-25.05 ??? nixos-25.05-small 3.10 nixos-unstable 3.10 nixos-unstable-small 3.10 nixpkgs-unstable 3.10 pkgs.python313Packages.idna Internationalized Domain Names in Applications (IDNA) nixos-25.05 ??? nixos-25.05-small 3.10 nixos-unstable 3.10 nixos-unstable-small 3.10 nixpkgs-unstable 3.10 pkgs.python311Packages.idna-ssl Patch ssl.match_hostname for Unicode(idna) domains support nixos-unstable 1.1.0 nixos-unstable-small 1.1.0 nixpkgs-unstable 1.1.0 pkgs.python312Packages.idna-ssl Patch ssl.match_hostname for Unicode(idna) domains support nixos-25.05 ??? nixos-25.05-small 1.1.0 nixos-unstable 1.1.0 nixos-unstable-small 1.1.0 nixpkgs-unstable 1.1.0 pkgs.python313Packages.idna-ssl Patch ssl.match_hostname for Unicode(idna) domains support nixos-25.05 ??? nixos-25.05-small 1.1.0 nixos-unstable 1.1.0 nixos-unstable-small 1.1.0 nixpkgs-unstable 1.1.0 pkgs.sbclPackages.idna.x86_64-linux nixos-unstable 20120107-git pkgs.sbclPackages.idna.aarch64-linux nixos-unstable 20120107-git pkgs.sbclPackages.idna.x86_64-darwin nixos-unstable 20120107-git pkgs.sbclPackages.idna.aarch64-darwin nixos-unstable 20120107-git pkgs.python312Packages.idna.x86_64-linux Internationalized Domain Names in Applications (IDNA) nixos-unstable 3.10 pkgs.python312Packages.idna.aarch64-linux Internationalized Domain Names in Applications (IDNA) nixos-unstable 3.10 pkgs.python312Packages.idna.x86_64-darwin Internationalized Domain Names in Applications (IDNA) nixos-unstable 3.10 pkgs.python312Packages.idna.aarch64-darwin Internationalized Domain Names in Applications (IDNA) nixos-unstable 3.10 pkgs.python312Packages.idna-ssl.x86_64-linux Patch ssl.match_hostname for Unicode(idna) domains support nixos-unstable 1.1.0 pkgs.python312Packages.idna-ssl.aarch64-linux Patch ssl.match_hostname for Unicode(idna) domains support nixos-unstable 1.1.0 pkgs.python312Packages.idna-ssl.x86_64-darwin Patch ssl.match_hostname for Unicode(idna) domains support nixos-unstable 1.1.0 pkgs.python312Packages.idna-ssl.aarch64-darwin Patch ssl.match_hostname for Unicode(idna) domains support nixos-unstable 1.1.0 Package maintainers: 17 @hellwolf Miao, ZhiCheng <zhicheng.miao@gmail.com> @arcz Artur Cygan <arczicygan@gmail.com> @nvmd Sergey Kazenyuk <kazenyuk@pm.me> @sephalon Stefan Wiehler <me@sephalon.net> @aanderse Aaron Andersen <aaron@fosslib.net> @dschrempf Dominik Schrempf <dominik.schrempf@gmail.com> @minijackson Rémi Nicole <minijackson@riseup.net> @cpages Carles Pagès <page@ruiec.cat> @peterhoeg Peter Hoeg <peter@hoeg.com> @edwtjo Edward Tjörnhammar <ed@cflags.cc> @dotlambda Robert Schütz <rschuetz17@gmail.com> @Uthar Kasper Gałkowski <galkowskikasper@gmail.com> @nagy Daniel Nagy <danielnagy@posteo.de> @lukego Luke Gorrie <luke@snabb.co> @hraban Hraban Luyat <hraban@0brg.net> @7c6f434c Michael Raskin <7c6f434c@mail.ru> @jopejoe1 jopejoe1 <nixpkgs@missing.ninja>
pkgs.echidna Ethereum smart contract fuzzer nixos-25.05 ??? nixos-25.05-small 2.2.6 nixos-unstable 2.2.3 nixos-unstable-small 2.2.6 nixpkgs-unstable 2.2.3
pkgs.unicode-idna unicode IDNA compatible processing data nixos-25.05 ??? nixos-25.05-small 16.0.0 nixos-unstable 16.0.0 nixos-unstable-small 16.0.0 nixpkgs-unstable 16.0.0
pkgs.kodiPackages.idna Internationalized Domain Names for Python nixos-25.05 ??? nixos-25.05-small 3.10.0 nixos-unstable 3.4.0 nixos-unstable-small 3.4.0 nixpkgs-unstable 3.10.0
pkgs.sbclPackages.idna nixos-25.05 ??? nixos-25.05-small 20120107-git nixos-unstable 20120107-git nixos-unstable-small 20120107-git nixpkgs-unstable 20120107-git
pkgs.python311Packages.idna Internationalized Domain Names in Applications (IDNA) nixos-unstable 3.10 nixos-unstable-small 3.10 nixpkgs-unstable 3.10
pkgs.python312Packages.idna Internationalized Domain Names in Applications (IDNA) nixos-25.05 ??? nixos-25.05-small 3.10 nixos-unstable 3.10 nixos-unstable-small 3.10 nixpkgs-unstable 3.10
pkgs.python313Packages.idna Internationalized Domain Names in Applications (IDNA) nixos-25.05 ??? nixos-25.05-small 3.10 nixos-unstable 3.10 nixos-unstable-small 3.10 nixpkgs-unstable 3.10
pkgs.python311Packages.idna-ssl Patch ssl.match_hostname for Unicode(idna) domains support nixos-unstable 1.1.0 nixos-unstable-small 1.1.0 nixpkgs-unstable 1.1.0
pkgs.python312Packages.idna-ssl Patch ssl.match_hostname for Unicode(idna) domains support nixos-25.05 ??? nixos-25.05-small 1.1.0 nixos-unstable 1.1.0 nixos-unstable-small 1.1.0 nixpkgs-unstable 1.1.0
pkgs.python313Packages.idna-ssl Patch ssl.match_hostname for Unicode(idna) domains support nixos-25.05 ??? nixos-25.05-small 1.1.0 nixos-unstable 1.1.0 nixos-unstable-small 1.1.0 nixpkgs-unstable 1.1.0
pkgs.python312Packages.idna.x86_64-linux Internationalized Domain Names in Applications (IDNA) nixos-unstable 3.10
pkgs.python312Packages.idna.aarch64-linux Internationalized Domain Names in Applications (IDNA) nixos-unstable 3.10
pkgs.python312Packages.idna.x86_64-darwin Internationalized Domain Names in Applications (IDNA) nixos-unstable 3.10
pkgs.python312Packages.idna.aarch64-darwin Internationalized Domain Names in Applications (IDNA) nixos-unstable 3.10
pkgs.python312Packages.idna-ssl.x86_64-linux Patch ssl.match_hostname for Unicode(idna) domains support nixos-unstable 1.1.0
pkgs.python312Packages.idna-ssl.aarch64-linux Patch ssl.match_hostname for Unicode(idna) domains support nixos-unstable 1.1.0
pkgs.python312Packages.idna-ssl.x86_64-darwin Patch ssl.match_hostname for Unicode(idna) domains support nixos-unstable 1.1.0
pkgs.python312Packages.idna-ssl.aarch64-darwin Patch ssl.match_hostname for Unicode(idna) domains support nixos-unstable 1.1.0
CVE-2023-40550 5.5 MEDIUM CVSS version: 3.1 Attack vector (AV): LOCAL Attack complexity (AC): LOW Privileges required (PR): LOW User interaction (UI): NONE Scope (S): UNCHANGED Confidentiality impact (C): HIGH Integrity impact (I): NONE Availability impact (A): NONE created 6 months, 2 weeks ago Shim: out-of-bound read in verify_buffer_sbat() An out-of-bounds read flaw was found in Shim when it tried to validate the SBAT information. This issue may expose sensitive data during the system's boot phase. Affected products shim * shim-signed * shim-unsigned-x64 * shim-unsigned-aarch64 * Matching in nixpkgs pkgs.yoshimi High quality software synthesizer based on ZynAddSubFX nixos-25.05 ??? nixos-25.05-small 2.3.3.3 nixos-unstable 2.3.3.2 nixos-unstable-small 2.3.3.2 nixpkgs-unstable 2.3.3.3 pkgs.epoll-shim Small epoll implementation using kqueue nixos-25.05 ??? nixos-25.05-small 0.0.20240608 nixos-unstable 0.0.20240608 nixos-unstable-small 0.0.20240608 nixpkgs-unstable 0.0.20240608 pkgs.libudev0-shim Shim to preserve libudev.so.0 compatibility nixos-25.05 ??? nixos-25.05-small 1 nixos-unstable 1 nixos-unstable-small 1 nixpkgs-unstable 1 pkgs.plex-mpv-shim Allows casting of videos to MPV via the Plex mobile and web app nixos-25.05 ??? nixos-25.05-small 1.11.0 nixos-unstable 1.11.0 nixos-unstable-small 1.11.0 nixpkgs-unstable 1.11.0 pkgs.shim-unsigned UEFI shim loader nixos-25.05 ??? nixos-25.05-small 16.0 nixos-unstable 15.8 nixos-unstable-small 15.8 nixpkgs-unstable 15.8 pkgs.doas-sudo-shim Shim for the sudo command that utilizes doas nixos-25.05 ??? nixos-25.05-small 0.1.2 nixos-unstable 0.1.1 nixos-unstable-small 0.1.2 nixpkgs-unstable 0.1.2 pkgs.rshim-user-space user-space rshim driver for the BlueField SoC nixos-25.05 ??? nixos-25.05-small 2.2.4 nixos-unstable 2.2.4 nixos-unstable-small 2.2.4 nixpkgs-unstable 2.2.4 pkgs.jellyfin-mpv-shim Allows casting of videos to MPV via the jellyfin mobile and web app nixos-25.05 ??? nixos-25.05-small 2.9.0 nixos-unstable 2.8.0 nixos-unstable-small 2.8.0 nixpkgs-unstable 2.8.0 pkgs.emacsPackages.shimbun nixos-unstable 20240827.234 nixos-unstable-small 20240827.234 nixpkgs-unstable 20240827.234 pkgs.mpv-shim-default-shaders Preconfigured set of MPV shaders and configurations for MPV Shim media clients nixos-25.05 ??? nixos-25.05-small 2.1.0 nixos-unstable 2.1.0 nixos-unstable-small 2.1.0 nixpkgs-unstable 2.1.0 pkgs.python311Packages.shimmy API conversion tool for popular external reinforcement learning environments nixos-unstable 2.0.0 nixos-unstable-small 2.0.0 nixpkgs-unstable 2.0.0 pkgs.python312Packages.shimmy API conversion tool for popular external reinforcement learning environments nixos-25.05 ??? nixos-25.05-small 2.0.0 nixos-unstable 2.0.0 nixos-unstable-small 2.0.0 nixpkgs-unstable 2.0.0 pkgs.libudev0-shim.x86_64-linux Shim to preserve libudev.so.0 compatibility nixos-unstable ??? nixos-unstable-small 1 pkgs.shim-unsigned.x86_64-linux UEFI shim loader nixos-unstable 15.8 pkgs.libudev0-shim.aarch64-linux Shim to preserve libudev.so.0 compatibility nixos-unstable ??? nixos-unstable-small 1 pkgs.shim-unsigned.aarch64-linux UEFI shim loader nixos-unstable 15.8 pkgs.rshim-user-space.x86_64-linux user-space rshim driver for the BlueField SoC nixos-unstable 2.1.5 pkgs.pantheon.elementary-print-shim Simple shim for printing support via Contractor nixos-25.05 ??? nixos-25.05-small 0.1.3 nixos-unstable 0.1.3 nixos-unstable-small 0.1.3 nixpkgs-unstable 0.1.3 pkgs.rshim-user-space.aarch64-linux user-space rshim driver for the BlueField SoC nixos-unstable 2.1.5 pkgs.python311Packages.notebook-shim Switch frontends to Jupyter Server nixos-unstable 0.2.4 nixos-unstable-small 0.2.4 nixpkgs-unstable 0.2.4 pkgs.python312Packages.notebook-shim Switch frontends to Jupyter Server nixos-25.05 ??? nixos-25.05-small 0.2.4 nixos-unstable 0.2.4 nixos-unstable-small 0.2.4 nixpkgs-unstable 0.2.4 pkgs.python313Packages.notebook-shim Switch frontends to Jupyter Server nixos-25.05 ??? nixos-25.05-small 0.2.4 nixos-unstable 0.2.4 nixos-unstable-small 0.2.4 nixpkgs-unstable 0.2.4 pkgs.python311Packages.pytz-deprecation-shim Shims to make deprecation of pytz easier nixos-unstable 0.1.0.post0 nixos-unstable-small 0.1.0.post0 nixpkgs-unstable 0.1.0.post0 pkgs.python312Packages.pytz-deprecation-shim Shims to make deprecation of pytz easier nixos-25.05 ??? nixos-25.05-small 0.1.0.post0 nixos-unstable 0.1.0.post0 nixos-unstable-small 0.1.0.post0 nixpkgs-unstable 0.1.0.post0 pkgs.python313Packages.pytz-deprecation-shim Shims to make deprecation of pytz easier nixos-25.05 ??? nixos-25.05-small 0.1.0.post0 nixos-unstable 0.1.0.post0 nixos-unstable-small 0.1.0.post0 nixpkgs-unstable 0.1.0.post0 pkgs.python312Packages.notebook-shim.x86_64-linux Switch frontends to Jupyter Server nixos-unstable 0.2.4 pkgs.python312Packages.notebook-shim.aarch64-linux Switch frontends to Jupyter Server nixos-unstable 0.2.4 pkgs.python312Packages.notebook-shim.x86_64-darwin Switch frontends to Jupyter Server nixos-unstable 0.2.4 pkgs.python312Packages.notebook-shim.aarch64-darwin Switch frontends to Jupyter Server nixos-unstable 0.2.4 pkgs.python312Packages.pytz-deprecation-shim.x86_64-linux Shims to make deprecation of pytz easier nixos-unstable 0.1.0.post0 pkgs.python312Packages.pytz-deprecation-shim.aarch64-linux Shims to make deprecation of pytz easier nixos-unstable 0.1.0.post0 pkgs.python312Packages.pytz-deprecation-shim.x86_64-darwin Shims to make deprecation of pytz easier nixos-unstable 0.1.0.post0 pkgs.python312Packages.pytz-deprecation-shim.aarch64-darwin Shims to make deprecation of pytz easier nixos-unstable 0.1.0.post0 Package maintainers: 13 @GaetanLepage Gaetan Lepage <gaetan@glepage.com> @devusb Morgan Helton <mhelton@devusb.us> @dotlambda Robert Schütz <rschuetz17@gmail.com> @baloo Arthur Gautier <nixpkgs@superbaloo.net> @RaitoBezarius Ryan Lahfa <ryan@lahfa.xyz> @abbradar Nikolay Amiantov <ab@fmap.me> @thillux Markus Theil <theil.markus@gmail.com> @jojosch Johannes Schleifenbaum <johannes@js-webcoding.de> @dani0854 Danil Suetin <suetin085+nixpkgs@protonmail.com> @wegank Weijia Wang <contact@weijia.wang> @davidak David Kleuker <post@davidak.de> @bobby285271 Bobby Rong <rjl931189261@126.com> @nikstur nikstur <nikstur@outlook.com>
pkgs.yoshimi High quality software synthesizer based on ZynAddSubFX nixos-25.05 ??? nixos-25.05-small 2.3.3.3 nixos-unstable 2.3.3.2 nixos-unstable-small 2.3.3.2 nixpkgs-unstable 2.3.3.3
pkgs.epoll-shim Small epoll implementation using kqueue nixos-25.05 ??? nixos-25.05-small 0.0.20240608 nixos-unstable 0.0.20240608 nixos-unstable-small 0.0.20240608 nixpkgs-unstable 0.0.20240608
pkgs.libudev0-shim Shim to preserve libudev.so.0 compatibility nixos-25.05 ??? nixos-25.05-small 1 nixos-unstable 1 nixos-unstable-small 1 nixpkgs-unstable 1
pkgs.plex-mpv-shim Allows casting of videos to MPV via the Plex mobile and web app nixos-25.05 ??? nixos-25.05-small 1.11.0 nixos-unstable 1.11.0 nixos-unstable-small 1.11.0 nixpkgs-unstable 1.11.0
pkgs.shim-unsigned UEFI shim loader nixos-25.05 ??? nixos-25.05-small 16.0 nixos-unstable 15.8 nixos-unstable-small 15.8 nixpkgs-unstable 15.8
pkgs.doas-sudo-shim Shim for the sudo command that utilizes doas nixos-25.05 ??? nixos-25.05-small 0.1.2 nixos-unstable 0.1.1 nixos-unstable-small 0.1.2 nixpkgs-unstable 0.1.2
pkgs.rshim-user-space user-space rshim driver for the BlueField SoC nixos-25.05 ??? nixos-25.05-small 2.2.4 nixos-unstable 2.2.4 nixos-unstable-small 2.2.4 nixpkgs-unstable 2.2.4
pkgs.jellyfin-mpv-shim Allows casting of videos to MPV via the jellyfin mobile and web app nixos-25.05 ??? nixos-25.05-small 2.9.0 nixos-unstable 2.8.0 nixos-unstable-small 2.8.0 nixpkgs-unstable 2.8.0
pkgs.emacsPackages.shimbun nixos-unstable 20240827.234 nixos-unstable-small 20240827.234 nixpkgs-unstable 20240827.234
pkgs.mpv-shim-default-shaders Preconfigured set of MPV shaders and configurations for MPV Shim media clients nixos-25.05 ??? nixos-25.05-small 2.1.0 nixos-unstable 2.1.0 nixos-unstable-small 2.1.0 nixpkgs-unstable 2.1.0
pkgs.python311Packages.shimmy API conversion tool for popular external reinforcement learning environments nixos-unstable 2.0.0 nixos-unstable-small 2.0.0 nixpkgs-unstable 2.0.0
pkgs.python312Packages.shimmy API conversion tool for popular external reinforcement learning environments nixos-25.05 ??? nixos-25.05-small 2.0.0 nixos-unstable 2.0.0 nixos-unstable-small 2.0.0 nixpkgs-unstable 2.0.0
pkgs.libudev0-shim.x86_64-linux Shim to preserve libudev.so.0 compatibility nixos-unstable ??? nixos-unstable-small 1
pkgs.libudev0-shim.aarch64-linux Shim to preserve libudev.so.0 compatibility nixos-unstable ??? nixos-unstable-small 1
pkgs.rshim-user-space.x86_64-linux user-space rshim driver for the BlueField SoC nixos-unstable 2.1.5
pkgs.pantheon.elementary-print-shim Simple shim for printing support via Contractor nixos-25.05 ??? nixos-25.05-small 0.1.3 nixos-unstable 0.1.3 nixos-unstable-small 0.1.3 nixpkgs-unstable 0.1.3
pkgs.rshim-user-space.aarch64-linux user-space rshim driver for the BlueField SoC nixos-unstable 2.1.5
pkgs.python311Packages.notebook-shim Switch frontends to Jupyter Server nixos-unstable 0.2.4 nixos-unstable-small 0.2.4 nixpkgs-unstable 0.2.4
pkgs.python312Packages.notebook-shim Switch frontends to Jupyter Server nixos-25.05 ??? nixos-25.05-small 0.2.4 nixos-unstable 0.2.4 nixos-unstable-small 0.2.4 nixpkgs-unstable 0.2.4
pkgs.python313Packages.notebook-shim Switch frontends to Jupyter Server nixos-25.05 ??? nixos-25.05-small 0.2.4 nixos-unstable 0.2.4 nixos-unstable-small 0.2.4 nixpkgs-unstable 0.2.4
pkgs.python311Packages.pytz-deprecation-shim Shims to make deprecation of pytz easier nixos-unstable 0.1.0.post0 nixos-unstable-small 0.1.0.post0 nixpkgs-unstable 0.1.0.post0
pkgs.python312Packages.pytz-deprecation-shim Shims to make deprecation of pytz easier nixos-25.05 ??? nixos-25.05-small 0.1.0.post0 nixos-unstable 0.1.0.post0 nixos-unstable-small 0.1.0.post0 nixpkgs-unstable 0.1.0.post0
pkgs.python313Packages.pytz-deprecation-shim Shims to make deprecation of pytz easier nixos-25.05 ??? nixos-25.05-small 0.1.0.post0 nixos-unstable 0.1.0.post0 nixos-unstable-small 0.1.0.post0 nixpkgs-unstable 0.1.0.post0
pkgs.python312Packages.notebook-shim.x86_64-linux Switch frontends to Jupyter Server nixos-unstable 0.2.4
pkgs.python312Packages.notebook-shim.aarch64-linux Switch frontends to Jupyter Server nixos-unstable 0.2.4
pkgs.python312Packages.notebook-shim.x86_64-darwin Switch frontends to Jupyter Server nixos-unstable 0.2.4
pkgs.python312Packages.notebook-shim.aarch64-darwin Switch frontends to Jupyter Server nixos-unstable 0.2.4
pkgs.python312Packages.pytz-deprecation-shim.x86_64-linux Shims to make deprecation of pytz easier nixos-unstable 0.1.0.post0
pkgs.python312Packages.pytz-deprecation-shim.aarch64-linux Shims to make deprecation of pytz easier nixos-unstable 0.1.0.post0
pkgs.python312Packages.pytz-deprecation-shim.x86_64-darwin Shims to make deprecation of pytz easier nixos-unstable 0.1.0.post0
pkgs.python312Packages.pytz-deprecation-shim.aarch64-darwin Shims to make deprecation of pytz easier nixos-unstable 0.1.0.post0
CVE-2023-40548 7.4 HIGH CVSS version: 3.1 Attack vector (AV): LOCAL Attack complexity (AC): HIGH Privileges required (PR): NONE User interaction (UI): NONE Scope (S): UNCHANGED Confidentiality impact (C): HIGH Integrity impact (I): HIGH Availability impact (A): HIGH created 6 months, 2 weeks ago Shim: interger overflow leads to heap buffer overflow in verify_sbat_section on 32-bits systems A buffer overflow was found in Shim in the 32-bit system. The overflow happens due to an addition operation involving a user-controlled value parsed from the PE binary being used by Shim. This value is further used for memory allocation operations, leading to a heap-based buffer overflow. This flaw causes memory corruption and can lead to a crash or data integrity issues during the boot phase. Affected products shim * shim-signed * shim-unsigned-x64 * shim-unsigned-aarch64 * Matching in nixpkgs pkgs.yoshimi High quality software synthesizer based on ZynAddSubFX nixos-25.05 ??? nixos-25.05-small 2.3.3.3 nixos-unstable 2.3.3.2 nixos-unstable-small 2.3.3.2 nixpkgs-unstable 2.3.3.2 pkgs.epoll-shim Small epoll implementation using kqueue nixos-25.05 ??? nixos-25.05-small 0.0.20240608 nixos-unstable 0.0.20240608 nixos-unstable-small 0.0.20240608 nixpkgs-unstable 0.0.20240608 pkgs.libudev0-shim Shim to preserve libudev.so.0 compatibility nixos-25.05 ??? nixos-25.05-small 1 nixos-unstable 1 nixos-unstable-small 1 nixpkgs-unstable 1 pkgs.plex-mpv-shim Allows casting of videos to MPV via the Plex mobile and web app nixos-25.05 ??? nixos-25.05-small 1.11.0 nixos-unstable 1.11.0 nixos-unstable-small 1.11.0 nixpkgs-unstable 1.11.0 pkgs.shim-unsigned UEFI shim loader nixos-25.05 ??? nixos-25.05-small 16.0 nixos-unstable 15.8 nixos-unstable-small 15.8 nixpkgs-unstable 15.8 pkgs.doas-sudo-shim Shim for the sudo command that utilizes doas nixos-25.05 ??? nixos-25.05-small 0.1.2 nixos-unstable 0.1.1 nixos-unstable-small 0.1.2 nixpkgs-unstable 0.1.2 pkgs.rshim-user-space user-space rshim driver for the BlueField SoC nixos-25.05 ??? nixos-25.05-small 2.2.4 nixos-unstable 2.2.4 nixos-unstable-small 2.2.4 nixpkgs-unstable 2.2.4 pkgs.jellyfin-mpv-shim Allows casting of videos to MPV via the jellyfin mobile and web app nixos-25.05 ??? nixos-25.05-small 2.9.0 nixos-unstable 2.8.0 nixos-unstable-small 2.8.0 nixpkgs-unstable 2.8.0 pkgs.emacsPackages.shimbun nixos-unstable 20240827.234 nixos-unstable-small 20240827.234 nixpkgs-unstable 20240827.234 pkgs.mpv-shim-default-shaders Preconfigured set of MPV shaders and configurations for MPV Shim media clients nixos-25.05 ??? nixos-25.05-small 2.1.0 nixos-unstable 2.1.0 nixos-unstable-small 2.1.0 nixpkgs-unstable 2.1.0 pkgs.python311Packages.shimmy API conversion tool for popular external reinforcement learning environments nixos-unstable 2.0.0 nixos-unstable-small 2.0.0 nixpkgs-unstable 2.0.0 pkgs.python312Packages.shimmy API conversion tool for popular external reinforcement learning environments nixos-25.05 ??? nixos-25.05-small 2.0.0 nixos-unstable 2.0.0 nixos-unstable-small 2.0.0 nixpkgs-unstable 2.0.0 pkgs.libudev0-shim.x86_64-linux Shim to preserve libudev.so.0 compatibility nixos-unstable ??? nixos-unstable-small 1 pkgs.shim-unsigned.x86_64-linux UEFI shim loader nixos-unstable 15.8 pkgs.libudev0-shim.aarch64-linux Shim to preserve libudev.so.0 compatibility nixos-unstable ??? nixos-unstable-small 1 pkgs.shim-unsigned.aarch64-linux UEFI shim loader nixos-unstable 15.8 pkgs.rshim-user-space.x86_64-linux user-space rshim driver for the BlueField SoC nixos-unstable 2.1.5 pkgs.pantheon.elementary-print-shim Simple shim for printing support via Contractor nixos-25.05 ??? nixos-25.05-small 0.1.3 nixos-unstable 0.1.3 nixos-unstable-small 0.1.3 nixpkgs-unstable 0.1.3 pkgs.rshim-user-space.aarch64-linux user-space rshim driver for the BlueField SoC nixos-unstable 2.1.5 pkgs.python311Packages.notebook-shim Switch frontends to Jupyter Server nixos-unstable 0.2.4 nixos-unstable-small 0.2.4 nixpkgs-unstable 0.2.4 pkgs.python312Packages.notebook-shim Switch frontends to Jupyter Server nixos-25.05 ??? nixos-25.05-small 0.2.4 nixos-unstable 0.2.4 nixos-unstable-small 0.2.4 nixpkgs-unstable 0.2.4 pkgs.python313Packages.notebook-shim Switch frontends to Jupyter Server nixos-25.05 ??? nixos-25.05-small 0.2.4 nixos-unstable 0.2.4 nixos-unstable-small 0.2.4 nixpkgs-unstable 0.2.4 pkgs.python311Packages.pytz-deprecation-shim Shims to make deprecation of pytz easier nixos-unstable 0.1.0.post0 nixos-unstable-small 0.1.0.post0 nixpkgs-unstable 0.1.0.post0 pkgs.python312Packages.pytz-deprecation-shim Shims to make deprecation of pytz easier nixos-25.05 ??? nixos-25.05-small 0.1.0.post0 nixos-unstable 0.1.0.post0 nixos-unstable-small 0.1.0.post0 nixpkgs-unstable 0.1.0.post0 pkgs.python313Packages.pytz-deprecation-shim Shims to make deprecation of pytz easier nixos-25.05 ??? nixos-25.05-small 0.1.0.post0 nixos-unstable 0.1.0.post0 nixos-unstable-small 0.1.0.post0 nixpkgs-unstable 0.1.0.post0 pkgs.python312Packages.notebook-shim.x86_64-linux Switch frontends to Jupyter Server nixos-unstable 0.2.4 pkgs.python312Packages.notebook-shim.aarch64-linux Switch frontends to Jupyter Server nixos-unstable 0.2.4 pkgs.python312Packages.notebook-shim.x86_64-darwin Switch frontends to Jupyter Server nixos-unstable 0.2.4 pkgs.python312Packages.notebook-shim.aarch64-darwin Switch frontends to Jupyter Server nixos-unstable 0.2.4 pkgs.python312Packages.pytz-deprecation-shim.x86_64-linux Shims to make deprecation of pytz easier nixos-unstable 0.1.0.post0 pkgs.python312Packages.pytz-deprecation-shim.aarch64-linux Shims to make deprecation of pytz easier nixos-unstable 0.1.0.post0 pkgs.python312Packages.pytz-deprecation-shim.x86_64-darwin Shims to make deprecation of pytz easier nixos-unstable 0.1.0.post0 pkgs.python312Packages.pytz-deprecation-shim.aarch64-darwin Shims to make deprecation of pytz easier nixos-unstable 0.1.0.post0 Package maintainers: 13 @GaetanLepage Gaetan Lepage <gaetan@glepage.com> @devusb Morgan Helton <mhelton@devusb.us> @dotlambda Robert Schütz <rschuetz17@gmail.com> @baloo Arthur Gautier <nixpkgs@superbaloo.net> @RaitoBezarius Ryan Lahfa <ryan@lahfa.xyz> @abbradar Nikolay Amiantov <ab@fmap.me> @thillux Markus Theil <theil.markus@gmail.com> @jojosch Johannes Schleifenbaum <johannes@js-webcoding.de> @dani0854 Danil Suetin <suetin085+nixpkgs@protonmail.com> @wegank Weijia Wang <contact@weijia.wang> @davidak David Kleuker <post@davidak.de> @bobby285271 Bobby Rong <rjl931189261@126.com> @nikstur nikstur <nikstur@outlook.com>
pkgs.yoshimi High quality software synthesizer based on ZynAddSubFX nixos-25.05 ??? nixos-25.05-small 2.3.3.3 nixos-unstable 2.3.3.2 nixos-unstable-small 2.3.3.2 nixpkgs-unstable 2.3.3.2
pkgs.epoll-shim Small epoll implementation using kqueue nixos-25.05 ??? nixos-25.05-small 0.0.20240608 nixos-unstable 0.0.20240608 nixos-unstable-small 0.0.20240608 nixpkgs-unstable 0.0.20240608
pkgs.libudev0-shim Shim to preserve libudev.so.0 compatibility nixos-25.05 ??? nixos-25.05-small 1 nixos-unstable 1 nixos-unstable-small 1 nixpkgs-unstable 1
pkgs.plex-mpv-shim Allows casting of videos to MPV via the Plex mobile and web app nixos-25.05 ??? nixos-25.05-small 1.11.0 nixos-unstable 1.11.0 nixos-unstable-small 1.11.0 nixpkgs-unstable 1.11.0
pkgs.shim-unsigned UEFI shim loader nixos-25.05 ??? nixos-25.05-small 16.0 nixos-unstable 15.8 nixos-unstable-small 15.8 nixpkgs-unstable 15.8
pkgs.doas-sudo-shim Shim for the sudo command that utilizes doas nixos-25.05 ??? nixos-25.05-small 0.1.2 nixos-unstable 0.1.1 nixos-unstable-small 0.1.2 nixpkgs-unstable 0.1.2
pkgs.rshim-user-space user-space rshim driver for the BlueField SoC nixos-25.05 ??? nixos-25.05-small 2.2.4 nixos-unstable 2.2.4 nixos-unstable-small 2.2.4 nixpkgs-unstable 2.2.4
pkgs.jellyfin-mpv-shim Allows casting of videos to MPV via the jellyfin mobile and web app nixos-25.05 ??? nixos-25.05-small 2.9.0 nixos-unstable 2.8.0 nixos-unstable-small 2.8.0 nixpkgs-unstable 2.8.0
pkgs.emacsPackages.shimbun nixos-unstable 20240827.234 nixos-unstable-small 20240827.234 nixpkgs-unstable 20240827.234
pkgs.mpv-shim-default-shaders Preconfigured set of MPV shaders and configurations for MPV Shim media clients nixos-25.05 ??? nixos-25.05-small 2.1.0 nixos-unstable 2.1.0 nixos-unstable-small 2.1.0 nixpkgs-unstable 2.1.0
pkgs.python311Packages.shimmy API conversion tool for popular external reinforcement learning environments nixos-unstable 2.0.0 nixos-unstable-small 2.0.0 nixpkgs-unstable 2.0.0
pkgs.python312Packages.shimmy API conversion tool for popular external reinforcement learning environments nixos-25.05 ??? nixos-25.05-small 2.0.0 nixos-unstable 2.0.0 nixos-unstable-small 2.0.0 nixpkgs-unstable 2.0.0
pkgs.libudev0-shim.x86_64-linux Shim to preserve libudev.so.0 compatibility nixos-unstable ??? nixos-unstable-small 1
pkgs.libudev0-shim.aarch64-linux Shim to preserve libudev.so.0 compatibility nixos-unstable ??? nixos-unstable-small 1
pkgs.rshim-user-space.x86_64-linux user-space rshim driver for the BlueField SoC nixos-unstable 2.1.5
pkgs.pantheon.elementary-print-shim Simple shim for printing support via Contractor nixos-25.05 ??? nixos-25.05-small 0.1.3 nixos-unstable 0.1.3 nixos-unstable-small 0.1.3 nixpkgs-unstable 0.1.3
pkgs.rshim-user-space.aarch64-linux user-space rshim driver for the BlueField SoC nixos-unstable 2.1.5
pkgs.python311Packages.notebook-shim Switch frontends to Jupyter Server nixos-unstable 0.2.4 nixos-unstable-small 0.2.4 nixpkgs-unstable 0.2.4
pkgs.python312Packages.notebook-shim Switch frontends to Jupyter Server nixos-25.05 ??? nixos-25.05-small 0.2.4 nixos-unstable 0.2.4 nixos-unstable-small 0.2.4 nixpkgs-unstable 0.2.4
pkgs.python313Packages.notebook-shim Switch frontends to Jupyter Server nixos-25.05 ??? nixos-25.05-small 0.2.4 nixos-unstable 0.2.4 nixos-unstable-small 0.2.4 nixpkgs-unstable 0.2.4
pkgs.python311Packages.pytz-deprecation-shim Shims to make deprecation of pytz easier nixos-unstable 0.1.0.post0 nixos-unstable-small 0.1.0.post0 nixpkgs-unstable 0.1.0.post0
pkgs.python312Packages.pytz-deprecation-shim Shims to make deprecation of pytz easier nixos-25.05 ??? nixos-25.05-small 0.1.0.post0 nixos-unstable 0.1.0.post0 nixos-unstable-small 0.1.0.post0 nixpkgs-unstable 0.1.0.post0
pkgs.python313Packages.pytz-deprecation-shim Shims to make deprecation of pytz easier nixos-25.05 ??? nixos-25.05-small 0.1.0.post0 nixos-unstable 0.1.0.post0 nixos-unstable-small 0.1.0.post0 nixpkgs-unstable 0.1.0.post0
pkgs.python312Packages.notebook-shim.x86_64-linux Switch frontends to Jupyter Server nixos-unstable 0.2.4
pkgs.python312Packages.notebook-shim.aarch64-linux Switch frontends to Jupyter Server nixos-unstable 0.2.4
pkgs.python312Packages.notebook-shim.x86_64-darwin Switch frontends to Jupyter Server nixos-unstable 0.2.4
pkgs.python312Packages.notebook-shim.aarch64-darwin Switch frontends to Jupyter Server nixos-unstable 0.2.4
pkgs.python312Packages.pytz-deprecation-shim.x86_64-linux Shims to make deprecation of pytz easier nixos-unstable 0.1.0.post0
pkgs.python312Packages.pytz-deprecation-shim.aarch64-linux Shims to make deprecation of pytz easier nixos-unstable 0.1.0.post0
pkgs.python312Packages.pytz-deprecation-shim.x86_64-darwin Shims to make deprecation of pytz easier nixos-unstable 0.1.0.post0
pkgs.python312Packages.pytz-deprecation-shim.aarch64-darwin Shims to make deprecation of pytz easier nixos-unstable 0.1.0.post0
CVE-2025-1461 5.6 MEDIUM CVSS version: 3.1 Attack vector (AV): NETWORK Attack complexity (AC): HIGH Privileges required (PR): NONE User interaction (UI): NONE Scope (S): UNCHANGED Confidentiality impact (C): LOW Integrity impact (I): LOW Availability impact (A): LOW created 6 months, 2 weeks ago Vuetify XSS through 'eventMoreText' prop of VCalendar Improper neutralization of the value of the 'eventMoreText' property of the 'VCalendar' component in Vuetify allows unsanitized HTML to be inserted into the page. This can lead to a Cross-Site Scripting (XSS) https://owasp.org/www-community/attacks/xss attack. The vulnerability occurs because the default Vuetify translator will return the translation key as the translation, if it can't find an actual translation. This issue affects Vuetify versions greater than or equal to 2.0.0 and less than 3.0.0. Note: Version 2.x of Vuetify is End-of-Life and will not receive any updates to address this issue. For more information see here https://v2.vuetifyjs.com/en/about/eol/ . Affected products vuetify ==>=2.0.0 <3.0.0 Matching in nixpkgs pkgs.python311Packages.ipyvuetify Jupyter widgets based on Vuetify UI Components nixos-unstable 1.10.0 nixos-unstable-small 1.10.0 nixpkgs-unstable 1.10.0 pkgs.python312Packages.ipyvuetify Jupyter widgets based on Vuetify UI Components nixos-25.05 ??? nixos-25.05-small 1.11.1 nixos-unstable 1.10.0 nixos-unstable-small 1.10.0 nixpkgs-unstable 1.11.1 pkgs.python313Packages.ipyvuetify Jupyter widgets based on Vuetify UI Components nixos-25.05 ??? nixos-25.05-small 1.11.1 nixos-unstable ??? nixos-unstable-small 1.11.1 nixpkgs-unstable 1.11.1 pkgs.python312Packages.ipyvuetify.x86_64-linux Jupyter widgets based on Vuetify UI Components nixos-unstable 1.10.0 pkgs.python312Packages.ipyvuetify.aarch64-linux Jupyter widgets based on Vuetify UI Components nixos-unstable 1.10.0 pkgs.python312Packages.ipyvuetify.x86_64-darwin Jupyter widgets based on Vuetify UI Components nixos-unstable 1.10.0 pkgs.python312Packages.ipyvuetify.aarch64-darwin Jupyter widgets based on Vuetify UI Components nixos-unstable 1.10.0 Package maintainers: 1 @drewrisinger Drew Risinger <drisinger+nixpkgs@gmail.com>
pkgs.python311Packages.ipyvuetify Jupyter widgets based on Vuetify UI Components nixos-unstable 1.10.0 nixos-unstable-small 1.10.0 nixpkgs-unstable 1.10.0
pkgs.python312Packages.ipyvuetify Jupyter widgets based on Vuetify UI Components nixos-25.05 ??? nixos-25.05-small 1.11.1 nixos-unstable 1.10.0 nixos-unstable-small 1.10.0 nixpkgs-unstable 1.11.1
pkgs.python313Packages.ipyvuetify Jupyter widgets based on Vuetify UI Components nixos-25.05 ??? nixos-25.05-small 1.11.1 nixos-unstable ??? nixos-unstable-small 1.11.1 nixpkgs-unstable 1.11.1
pkgs.python312Packages.ipyvuetify.x86_64-linux Jupyter widgets based on Vuetify UI Components nixos-unstable 1.10.0
pkgs.python312Packages.ipyvuetify.aarch64-linux Jupyter widgets based on Vuetify UI Components nixos-unstable 1.10.0
pkgs.python312Packages.ipyvuetify.x86_64-darwin Jupyter widgets based on Vuetify UI Components nixos-unstable 1.10.0
pkgs.python312Packages.ipyvuetify.aarch64-darwin Jupyter widgets based on Vuetify UI Components nixos-unstable 1.10.0
CVE-2025-0716 4.8 MEDIUM CVSS version: 3.1 Attack vector (AV): NETWORK Attack complexity (AC): HIGH Privileges required (PR): NONE User interaction (UI): NONE Scope (S): UNCHANGED Confidentiality impact (C): NONE Integrity impact (I): LOW Availability impact (A): LOW created 6 months, 2 weeks ago AngularJS improper sanitization in SVG '<image>' element Improper sanitization of the value of the 'href' and 'xlink:href' attributes in '<image>' SVG elements in AngularJS allows attackers to bypass common image source restrictions. This can lead to a form of Content Spoofing https://owasp.org/www-community/attacks/Content_Spoofing and also negatively affect the application's performance and behavior by using too large or slow-to-load images. This issue affects all versions of AngularJS. Note: The AngularJS project is End-of-Life and will not receive any updates to address this issue. For more information see here https://docs.angularjs.org/misc/version-support-status . Affected products angular ==>=0.0.0 Matching in nixpkgs pkgs.angular-language-server LSP for angular completions, AOT diagnostic, quick info and go to definitions nixos-25.05 ??? nixos-25.05-small 20.0.0 nixos-unstable 19.0.3 nixos-unstable-small 19.0.3 nixpkgs-unstable 19.0.3 pkgs.emacsPackages.angular-mode nixos-unstable 20151201.2127 nixos-unstable-small 20151201.2127 nixpkgs-unstable 20151201.2127 pkgs.emacsPackages.ac-html-angular nixos-unstable 20151225.719 nixos-unstable-small 20151225.719 nixpkgs-unstable 20151225.719 pkgs.emacsPackages.angular-snippets nixos-unstable 20140514.523 nixos-unstable-small 20140514.523 nixpkgs-unstable 20140514.523 pkgs.vimPlugins.nvim-treesitter-parsers.angular nixos-25.05 ??? nixos-25.05-small nixos-unstable ??? nixos-unstable-small nixpkgs-unstable Package maintainers: 1 @tricktron Thibault Gagnaux <tgagnaux@gmail.com>
pkgs.angular-language-server LSP for angular completions, AOT diagnostic, quick info and go to definitions nixos-25.05 ??? nixos-25.05-small 20.0.0 nixos-unstable 19.0.3 nixos-unstable-small 19.0.3 nixpkgs-unstable 19.0.3
pkgs.emacsPackages.angular-mode nixos-unstable 20151201.2127 nixos-unstable-small 20151201.2127 nixpkgs-unstable 20151201.2127
pkgs.emacsPackages.ac-html-angular nixos-unstable 20151225.719 nixos-unstable-small 20151225.719 nixpkgs-unstable 20151225.719
pkgs.emacsPackages.angular-snippets nixos-unstable 20140514.523 nixos-unstable-small 20140514.523 nixpkgs-unstable 20140514.523
pkgs.vimPlugins.nvim-treesitter-parsers.angular nixos-25.05 ??? nixos-25.05-small nixos-unstable ??? nixos-unstable-small nixpkgs-unstable
CVE-2024-8372 4.8 MEDIUM CVSS version: 3.1 Attack vector (AV): NETWORK Attack complexity (AC): HIGH Privileges required (PR): NONE User interaction (UI): NONE Scope (S): UNCHANGED Confidentiality impact (C): NONE Integrity impact (I): LOW Availability impact (A): LOW created 6 months, 2 weeks ago AngularJS improper sanitization in 'srcset' attribute Improper sanitization of the value of the '[srcset]' attribute in AngularJS allows attackers to bypass common image source restrictions, which can also lead to a form of Content Spoofing https://owasp.org/www-community/attacks/Content_Spoofing . This issue affects AngularJS versions 1.3.0-rc.4 and greater. Note: The AngularJS project is End-of-Life and will not receive any updates to address this issue. For more information see here https://docs.angularjs.org/misc/version-support-status . Affected products angular ==>=1.3.0-rc.4 Matching in nixpkgs pkgs.angular-language-server LSP for angular completions, AOT diagnostic, quick info and go to definitions nixos-25.05 ??? nixos-25.05-small 20.0.0 nixos-unstable 19.0.3 nixos-unstable-small 19.0.3 nixpkgs-unstable 19.0.3 pkgs.emacsPackages.angular-mode nixos-unstable 20151201.2127 nixos-unstable-small 20151201.2127 nixpkgs-unstable 20151201.2127 pkgs.emacsPackages.ac-html-angular nixos-unstable 20151225.719 nixos-unstable-small 20151225.719 nixpkgs-unstable 20151225.719 pkgs.emacsPackages.angular-snippets nixos-unstable 20140514.523 nixos-unstable-small 20140514.523 nixpkgs-unstable 20140514.523 pkgs.vimPlugins.nvim-treesitter-parsers.angular nixos-25.05 ??? nixos-25.05-small nixos-unstable ??? nixos-unstable-small nixpkgs-unstable Package maintainers: 1 @tricktron Thibault Gagnaux <tgagnaux@gmail.com>
pkgs.angular-language-server LSP for angular completions, AOT diagnostic, quick info and go to definitions nixos-25.05 ??? nixos-25.05-small 20.0.0 nixos-unstable 19.0.3 nixos-unstable-small 19.0.3 nixpkgs-unstable 19.0.3
pkgs.emacsPackages.angular-mode nixos-unstable 20151201.2127 nixos-unstable-small 20151201.2127 nixpkgs-unstable 20151201.2127
pkgs.emacsPackages.ac-html-angular nixos-unstable 20151225.719 nixos-unstable-small 20151225.719 nixpkgs-unstable 20151225.719
pkgs.emacsPackages.angular-snippets nixos-unstable 20140514.523 nixos-unstable-small 20140514.523 nixpkgs-unstable 20140514.523
pkgs.vimPlugins.nvim-treesitter-parsers.angular nixos-25.05 ??? nixos-25.05-small nixos-unstable ??? nixos-unstable-small nixpkgs-unstable
CVE-2024-8373 4.8 MEDIUM CVSS version: 3.1 Attack vector (AV): NETWORK Attack complexity (AC): HIGH Privileges required (PR): NONE User interaction (UI): NONE Scope (S): UNCHANGED Confidentiality impact (C): NONE Integrity impact (I): LOW Availability impact (A): LOW created 6 months, 2 weeks ago AngularJS improper sanitization in '<source>' element Improper sanitization of the value of the [srcset] attribute in <source> HTML elements in AngularJS allows attackers to bypass common image source restrictions, which can also lead to a form of Content Spoofing https://owasp.org/www-community/attacks/Content_Spoofing . This issue affects all versions of AngularJS. Note: The AngularJS project is End-of-Life and will not receive any updates to address this issue. For more information see here https://docs.angularjs.org/misc/version-support-status . Affected products angular ==>=0.0.0 Matching in nixpkgs pkgs.angular-language-server LSP for angular completions, AOT diagnostic, quick info and go to definitions nixos-25.05 ??? nixos-25.05-small 20.0.0 nixos-unstable 19.0.3 nixos-unstable-small 19.0.3 nixpkgs-unstable 19.0.3 pkgs.emacsPackages.angular-mode nixos-unstable 20151201.2127 nixos-unstable-small 20151201.2127 nixpkgs-unstable 20151201.2127 pkgs.emacsPackages.ac-html-angular nixos-unstable 20151225.719 nixos-unstable-small 20151225.719 nixpkgs-unstable 20151225.719 pkgs.emacsPackages.angular-snippets nixos-unstable 20140514.523 nixos-unstable-small 20140514.523 nixpkgs-unstable 20140514.523 pkgs.vimPlugins.nvim-treesitter-parsers.angular nixos-25.05 ??? nixos-25.05-small nixos-unstable ??? nixos-unstable-small nixpkgs-unstable Package maintainers: 1 @tricktron Thibault Gagnaux <tgagnaux@gmail.com>
pkgs.angular-language-server LSP for angular completions, AOT diagnostic, quick info and go to definitions nixos-25.05 ??? nixos-25.05-small 20.0.0 nixos-unstable 19.0.3 nixos-unstable-small 19.0.3 nixpkgs-unstable 19.0.3
pkgs.emacsPackages.angular-mode nixos-unstable 20151201.2127 nixos-unstable-small 20151201.2127 nixpkgs-unstable 20151201.2127
pkgs.emacsPackages.ac-html-angular nixos-unstable 20151225.719 nixos-unstable-small 20151225.719 nixpkgs-unstable 20151225.719
pkgs.emacsPackages.angular-snippets nixos-unstable 20140514.523 nixos-unstable-small 20140514.523 nixpkgs-unstable 20140514.523
pkgs.vimPlugins.nvim-treesitter-parsers.angular nixos-25.05 ??? nixos-25.05-small nixos-unstable ??? nixos-unstable-small nixpkgs-unstable
CVE-2025-5278 4.4 MEDIUM CVSS version: 3.1 Attack vector (AV): LOCAL Attack complexity (AC): LOW Privileges required (PR): NONE User interaction (UI): REQUIRED Scope (S): UNCHANGED Confidentiality impact (C): LOW Integrity impact (I): NONE Availability impact (A): LOW created 6 months, 3 weeks ago Coreutils: heap buffer under-read in gnu coreutils sort via key specification A flaw was found in GNU Coreutils. The sort utility's begfield() function is vulnerable to a heap buffer under-read. The program may access memory outside the allocated buffer if a user runs a crafted command using the traditional key format. A malicious input could lead to a crash or leak sensitive data. Affected products rhcos coreutils <9.8 Matching in nixpkgs pkgs.coreutils GNU Core Utilities nixos-25.05 ??? nixos-25.05-small 9.7 nixos-unstable 9.5 nixos-unstable-small 9.5 nixpkgs-unstable 9.7 pkgs.coreutils-full GNU Core Utilities nixos-25.05 ??? nixos-25.05-small 9.7 nixos-unstable 9.5 nixos-unstable-small 9.5 nixpkgs-unstable 9.7 pkgs.policycoreutils SELinux policy core utilities nixos-25.05 ??? nixos-25.05-small 3.8.1 nixos-unstable 3.7 nixos-unstable-small 3.7 nixpkgs-unstable 3.7 pkgs.uutils-coreutils Cross-platform Rust rewrite of the GNU coreutils nixos-25.05 ??? nixos-25.05-small 0.0.30 nixos-unstable 0.0.28 nixos-unstable-small 0.0.30 nixpkgs-unstable 0.0.28 pkgs.coreutils-prefixed GNU Core Utilities nixos-25.05 ??? nixos-25.05-small 9.7 nixos-unstable 9.5 nixos-unstable-small 9.5 nixpkgs-unstable 9.7 pkgs.uutils-coreutils-noprefix Cross-platform Rust rewrite of the GNU coreutils nixos-25.05 ??? nixos-25.05-small 0.0.30 nixos-unstable 0.0.28 nixos-unstable-small 0.0.30 nixpkgs-unstable 0.0.28 Package maintainers: 4 @siraben Siraphob Phipathananunth <bensiraphob@gmail.com> @RossComputerGuy Tristan Ross <tristan.ross@midstall.com> @numinit Morgan Jones <me+nixpkgs@numin.it> @dasJ Janne Heß <janne@hess.ooo>
pkgs.coreutils GNU Core Utilities nixos-25.05 ??? nixos-25.05-small 9.7 nixos-unstable 9.5 nixos-unstable-small 9.5 nixpkgs-unstable 9.7
pkgs.coreutils-full GNU Core Utilities nixos-25.05 ??? nixos-25.05-small 9.7 nixos-unstable 9.5 nixos-unstable-small 9.5 nixpkgs-unstable 9.7
pkgs.policycoreutils SELinux policy core utilities nixos-25.05 ??? nixos-25.05-small 3.8.1 nixos-unstable 3.7 nixos-unstable-small 3.7 nixpkgs-unstable 3.7
pkgs.uutils-coreutils Cross-platform Rust rewrite of the GNU coreutils nixos-25.05 ??? nixos-25.05-small 0.0.30 nixos-unstable 0.0.28 nixos-unstable-small 0.0.30 nixpkgs-unstable 0.0.28
pkgs.coreutils-prefixed GNU Core Utilities nixos-25.05 ??? nixos-25.05-small 9.7 nixos-unstable 9.5 nixos-unstable-small 9.5 nixpkgs-unstable 9.7
pkgs.uutils-coreutils-noprefix Cross-platform Rust rewrite of the GNU coreutils nixos-25.05 ??? nixos-25.05-small 0.0.30 nixos-unstable 0.0.28 nixos-unstable-small 0.0.30 nixpkgs-unstable 0.0.28
CVE-2025-48798 7.3 HIGH CVSS version: 3.1 Attack vector (AV): LOCAL Attack complexity (AC): LOW Privileges required (PR): LOW User interaction (UI): REQUIRED Scope (S): UNCHANGED Confidentiality impact (C): HIGH Integrity impact (I): HIGH Availability impact (A): HIGH created 6 months, 3 weeks ago Gimp: multiple use after free in xcf parser A flaw was found in GIMP when processing XCF image files. If a user opens one of these image files that has been specially crafted by an attacker, GIMP can be tricked into making serious memory errors, potentially leading to crashes and causing use-after-free issues. Affected products gimp * <3.0.0 gimp:2.8 * gimp:2.8/gimp Matching in nixpkgs pkgs.zigimports Automatically remove unused imports and globals from Zig files nixos-25.05 ??? nixos-25.05-small 0.1.0 nixos-unstable ??? nixos-unstable-small 0.1.0 nixpkgs-unstable 0.1.0 pkgs.gimpPlugins.gap GIMP Animation Package nixos-unstable 2.6.0-unstable-2023-05-20 nixos-unstable-small 2.6.0-unstable-2023-05-20 nixpkgs-unstable 2.6.0-unstable-2023-05-20 pkgs.gimpPlugins.bimp Batch Image Manipulation Plugin for GIMP nixos-25.05 ??? nixos-25.05-small 2.6 nixos-unstable 2.6 nixos-unstable-small 2.6 nixpkgs-unstable 2.6 pkgs.gimpPlugins.gimp GNU Image Manipulation Program nixos-25.05 ??? nixos-25.05-small 2.10.38 nixos-unstable 2.10.38 nixos-unstable-small 2.10.38 nixpkgs-unstable 2.10.38 pkgs.gimpPlugins.gmic GIMP plugin for the G'MIC image processing framework nixos-25.05 ??? nixos-25.05-small 3.5.0 nixos-unstable 3.4.2 nixos-unstable-small 3.4.2 nixpkgs-unstable 3.4.2 pkgs.gimp-with-plugins GNU Image Manipulation Program nixos-25.05 ??? nixos-25.05-small 2.10.38 nixos-unstable 2.10.38 nixos-unstable-small 2.10.38 nixpkgs-unstable 2.10.38 pkgs.gimp3Plugins.gimp GNU Image Manipulation Program nixos-25.05 ??? nixos-25.05-small 3.0.2 nixos-unstable ??? nixos-unstable-small 3.0.2 nixpkgs-unstable 3.0.2 pkgs.gimp3Plugins.gmic GIMP plugin for the G'MIC image processing framework nixos-25.05 ??? nixos-25.05-small 3.5.0 nixos-unstable ??? nixos-unstable-small 3.5.0 nixpkgs-unstable 3.5.0 pkgs.gimp3-with-plugins GNU Image Manipulation Program nixos-25.05 ??? nixos-25.05-small 3.0.2 nixos-unstable ??? nixos-unstable-small 3.0.2 nixpkgs-unstable 3.0.2 pkgs.gimpPlugins.fourier GIMP plug-in to do the fourier transform nixos-25.05 ??? nixos-25.05-small 0.4.3 nixos-unstable 0.4.3 nixos-unstable-small 0.4.3 nixpkgs-unstable 0.4.3 pkgs.gimpPlugins.farbfeld Gimp plug-in for the farbfeld image format nixos-25.05 ??? nixos-25.05-small 2019-08-12 nixos-unstable 2019-08-12 nixos-unstable-small 2019-08-12 nixpkgs-unstable 2019-08-12 pkgs.gimpPlugins.lightning nixos-25.05 ??? nixos-25.05-small nixos-unstable ??? nixos-unstable-small nixpkgs-unstable pkgs.gimpPlugins.lqrPlugin nixos-25.05 ??? nixos-25.05-small 0.7.2 nixos-unstable 0.7.2 nixos-unstable-small 0.7.2 nixpkgs-unstable 0.7.2 pkgs.gimpPlugins.texturize nixos-25.05 ??? nixos-25.05-small 2.2+unstable=2021-12-03 nixos-unstable 2.2+unstable=2021-12-03 nixos-unstable-small 2.2+unstable=2021-12-03 nixpkgs-unstable 2.2+unstable=2021-12-03 pkgs.gimp3Plugins.lightning nixos-25.05 ??? nixos-25.05-small nixos-unstable ??? nixos-unstable-small nixpkgs-unstable pkgs.gimpPlugins.gimplensfun GIMP plugin to correct lens distortion using the lensfun library and database nixos-25.05 ??? nixos-25.05-small 2018-10-21 nixos-unstable 2018-10-21 nixos-unstable-small 2018-10-21 nixpkgs-unstable 2018-10-21 pkgs.gimpPlugins.resynthesizer nixos-25.05 ??? nixos-25.05-small 2.0.3 nixos-unstable ??? nixos-unstable-small 2.0.3 nixpkgs-unstable 2.0.3 pkgs.gimpPlugins.waveletSharpen nixos-25.05 ??? nixos-25.05-small 0.1.2 nixos-unstable 0.1.2 nixos-unstable-small 0.1.2 nixpkgs-unstable 0.1.2 Package maintainers: 3 @jtojnar Jan Tojnar <jtojnar@gmail.com> @sikmir Nikolay Korotkiy <sikmir@disroot.org> @jmbaur Jared Baur <jaredbaur@fastmail.com>
pkgs.zigimports Automatically remove unused imports and globals from Zig files nixos-25.05 ??? nixos-25.05-small 0.1.0 nixos-unstable ??? nixos-unstable-small 0.1.0 nixpkgs-unstable 0.1.0
pkgs.gimpPlugins.gap GIMP Animation Package nixos-unstable 2.6.0-unstable-2023-05-20 nixos-unstable-small 2.6.0-unstable-2023-05-20 nixpkgs-unstable 2.6.0-unstable-2023-05-20
pkgs.gimpPlugins.bimp Batch Image Manipulation Plugin for GIMP nixos-25.05 ??? nixos-25.05-small 2.6 nixos-unstable 2.6 nixos-unstable-small 2.6 nixpkgs-unstable 2.6
pkgs.gimpPlugins.gimp GNU Image Manipulation Program nixos-25.05 ??? nixos-25.05-small 2.10.38 nixos-unstable 2.10.38 nixos-unstable-small 2.10.38 nixpkgs-unstable 2.10.38
pkgs.gimpPlugins.gmic GIMP plugin for the G'MIC image processing framework nixos-25.05 ??? nixos-25.05-small 3.5.0 nixos-unstable 3.4.2 nixos-unstable-small 3.4.2 nixpkgs-unstable 3.4.2
pkgs.gimp-with-plugins GNU Image Manipulation Program nixos-25.05 ??? nixos-25.05-small 2.10.38 nixos-unstable 2.10.38 nixos-unstable-small 2.10.38 nixpkgs-unstable 2.10.38
pkgs.gimp3Plugins.gimp GNU Image Manipulation Program nixos-25.05 ??? nixos-25.05-small 3.0.2 nixos-unstable ??? nixos-unstable-small 3.0.2 nixpkgs-unstable 3.0.2
pkgs.gimp3Plugins.gmic GIMP plugin for the G'MIC image processing framework nixos-25.05 ??? nixos-25.05-small 3.5.0 nixos-unstable ??? nixos-unstable-small 3.5.0 nixpkgs-unstable 3.5.0
pkgs.gimp3-with-plugins GNU Image Manipulation Program nixos-25.05 ??? nixos-25.05-small 3.0.2 nixos-unstable ??? nixos-unstable-small 3.0.2 nixpkgs-unstable 3.0.2
pkgs.gimpPlugins.fourier GIMP plug-in to do the fourier transform nixos-25.05 ??? nixos-25.05-small 0.4.3 nixos-unstable 0.4.3 nixos-unstable-small 0.4.3 nixpkgs-unstable 0.4.3
pkgs.gimpPlugins.farbfeld Gimp plug-in for the farbfeld image format nixos-25.05 ??? nixos-25.05-small 2019-08-12 nixos-unstable 2019-08-12 nixos-unstable-small 2019-08-12 nixpkgs-unstable 2019-08-12
pkgs.gimpPlugins.lightning nixos-25.05 ??? nixos-25.05-small nixos-unstable ??? nixos-unstable-small nixpkgs-unstable
pkgs.gimpPlugins.lqrPlugin nixos-25.05 ??? nixos-25.05-small 0.7.2 nixos-unstable 0.7.2 nixos-unstable-small 0.7.2 nixpkgs-unstable 0.7.2
pkgs.gimpPlugins.texturize nixos-25.05 ??? nixos-25.05-small 2.2+unstable=2021-12-03 nixos-unstable 2.2+unstable=2021-12-03 nixos-unstable-small 2.2+unstable=2021-12-03 nixpkgs-unstable 2.2+unstable=2021-12-03
pkgs.gimp3Plugins.lightning nixos-25.05 ??? nixos-25.05-small nixos-unstable ??? nixos-unstable-small nixpkgs-unstable
pkgs.gimpPlugins.gimplensfun GIMP plugin to correct lens distortion using the lensfun library and database nixos-25.05 ??? nixos-25.05-small 2018-10-21 nixos-unstable 2018-10-21 nixos-unstable-small 2018-10-21 nixpkgs-unstable 2018-10-21
pkgs.gimpPlugins.resynthesizer nixos-25.05 ??? nixos-25.05-small 2.0.3 nixos-unstable ??? nixos-unstable-small 2.0.3 nixpkgs-unstable 2.0.3
pkgs.gimpPlugins.waveletSharpen nixos-25.05 ??? nixos-25.05-small 0.1.2 nixos-unstable 0.1.2 nixos-unstable-small 0.1.2 nixpkgs-unstable 0.1.2
CVE-2025-48796 7.3 HIGH CVSS version: 3.1 Attack vector (AV): LOCAL Attack complexity (AC): LOW Privileges required (PR): LOW User interaction (UI): REQUIRED Scope (S): UNCHANGED Confidentiality impact (C): HIGH Integrity impact (I): HIGH Availability impact (A): HIGH created 6 months, 3 weeks ago Gimp: stack-based buffer overflows in file-ico A flaw was found in GIMP. The GIMP ani_load_image() function is vulnerable to a stack-based overflow. If a user opens.ANI files, GIMP may be used to store more information than the capacity allows. This flaw allows a malicious ANI file to trigger arbitrary code execution. Affected products gimp <2.99.16 gimp:2.8/gimp Matching in nixpkgs pkgs.zigimports Automatically remove unused imports and globals from Zig files nixos-25.05 ??? nixos-25.05-small 0.1.0 nixos-unstable ??? nixos-unstable-small 0.1.0 nixpkgs-unstable 0.1.0 pkgs.gimpPlugins.gap GIMP Animation Package nixos-unstable 2.6.0-unstable-2023-05-20 nixos-unstable-small 2.6.0-unstable-2023-05-20 nixpkgs-unstable 2.6.0-unstable-2023-05-20 pkgs.gimpPlugins.bimp Batch Image Manipulation Plugin for GIMP nixos-25.05 ??? nixos-25.05-small 2.6 nixos-unstable 2.6 nixos-unstable-small 2.6 nixpkgs-unstable 2.6 pkgs.gimpPlugins.gimp GNU Image Manipulation Program nixos-25.05 ??? nixos-25.05-small 2.10.38 nixos-unstable 2.10.38 nixos-unstable-small 2.10.38 nixpkgs-unstable 2.10.38 pkgs.gimpPlugins.gmic GIMP plugin for the G'MIC image processing framework nixos-25.05 ??? nixos-25.05-small 3.5.0 nixos-unstable 3.4.2 nixos-unstable-small 3.4.2 nixpkgs-unstable 3.4.2 pkgs.gimp-with-plugins GNU Image Manipulation Program nixos-25.05 ??? nixos-25.05-small 2.10.38 nixos-unstable 2.10.38 nixos-unstable-small 2.10.38 nixpkgs-unstable 2.10.38 pkgs.gimp3Plugins.gimp GNU Image Manipulation Program nixos-25.05 ??? nixos-25.05-small 3.0.2 nixos-unstable ??? nixos-unstable-small 3.0.2 nixpkgs-unstable 3.0.2 pkgs.gimp3Plugins.gmic GIMP plugin for the G'MIC image processing framework nixos-25.05 ??? nixos-25.05-small 3.5.0 nixos-unstable ??? nixos-unstable-small 3.5.0 nixpkgs-unstable 3.5.0 pkgs.gimp3-with-plugins GNU Image Manipulation Program nixos-25.05 ??? nixos-25.05-small 3.0.2 nixos-unstable ??? nixos-unstable-small 3.0.2 nixpkgs-unstable 3.0.2 pkgs.gimpPlugins.fourier GIMP plug-in to do the fourier transform nixos-25.05 ??? nixos-25.05-small 0.4.3 nixos-unstable 0.4.3 nixos-unstable-small 0.4.3 nixpkgs-unstable 0.4.3 pkgs.gimpPlugins.farbfeld Gimp plug-in for the farbfeld image format nixos-25.05 ??? nixos-25.05-small 2019-08-12 nixos-unstable 2019-08-12 nixos-unstable-small 2019-08-12 nixpkgs-unstable 2019-08-12 pkgs.gimpPlugins.lightning nixos-25.05 ??? nixos-25.05-small nixos-unstable ??? nixos-unstable-small nixpkgs-unstable pkgs.gimpPlugins.lqrPlugin nixos-25.05 ??? nixos-25.05-small 0.7.2 nixos-unstable 0.7.2 nixos-unstable-small 0.7.2 nixpkgs-unstable 0.7.2 pkgs.gimpPlugins.texturize nixos-25.05 ??? nixos-25.05-small 2.2+unstable=2021-12-03 nixos-unstable 2.2+unstable=2021-12-03 nixos-unstable-small 2.2+unstable=2021-12-03 nixpkgs-unstable 2.2+unstable=2021-12-03 pkgs.gimp3Plugins.lightning nixos-25.05 ??? nixos-25.05-small nixos-unstable ??? nixos-unstable-small nixpkgs-unstable pkgs.gimpPlugins.gimplensfun GIMP plugin to correct lens distortion using the lensfun library and database nixos-25.05 ??? nixos-25.05-small 2018-10-21 nixos-unstable 2018-10-21 nixos-unstable-small 2018-10-21 nixpkgs-unstable 2018-10-21 pkgs.gimpPlugins.resynthesizer nixos-25.05 ??? nixos-25.05-small 2.0.3 nixos-unstable ??? nixos-unstable-small 2.0.3 nixpkgs-unstable 2.0.3 pkgs.gimpPlugins.waveletSharpen nixos-25.05 ??? nixos-25.05-small 0.1.2 nixos-unstable 0.1.2 nixos-unstable-small 0.1.2 nixpkgs-unstable 0.1.2 Package maintainers: 3 @jtojnar Jan Tojnar <jtojnar@gmail.com> @sikmir Nikolay Korotkiy <sikmir@disroot.org> @jmbaur Jared Baur <jaredbaur@fastmail.com>
pkgs.zigimports Automatically remove unused imports and globals from Zig files nixos-25.05 ??? nixos-25.05-small 0.1.0 nixos-unstable ??? nixos-unstable-small 0.1.0 nixpkgs-unstable 0.1.0
pkgs.gimpPlugins.gap GIMP Animation Package nixos-unstable 2.6.0-unstable-2023-05-20 nixos-unstable-small 2.6.0-unstable-2023-05-20 nixpkgs-unstable 2.6.0-unstable-2023-05-20
pkgs.gimpPlugins.bimp Batch Image Manipulation Plugin for GIMP nixos-25.05 ??? nixos-25.05-small 2.6 nixos-unstable 2.6 nixos-unstable-small 2.6 nixpkgs-unstable 2.6
pkgs.gimpPlugins.gimp GNU Image Manipulation Program nixos-25.05 ??? nixos-25.05-small 2.10.38 nixos-unstable 2.10.38 nixos-unstable-small 2.10.38 nixpkgs-unstable 2.10.38
pkgs.gimpPlugins.gmic GIMP plugin for the G'MIC image processing framework nixos-25.05 ??? nixos-25.05-small 3.5.0 nixos-unstable 3.4.2 nixos-unstable-small 3.4.2 nixpkgs-unstable 3.4.2
pkgs.gimp-with-plugins GNU Image Manipulation Program nixos-25.05 ??? nixos-25.05-small 2.10.38 nixos-unstable 2.10.38 nixos-unstable-small 2.10.38 nixpkgs-unstable 2.10.38
pkgs.gimp3Plugins.gimp GNU Image Manipulation Program nixos-25.05 ??? nixos-25.05-small 3.0.2 nixos-unstable ??? nixos-unstable-small 3.0.2 nixpkgs-unstable 3.0.2
pkgs.gimp3Plugins.gmic GIMP plugin for the G'MIC image processing framework nixos-25.05 ??? nixos-25.05-small 3.5.0 nixos-unstable ??? nixos-unstable-small 3.5.0 nixpkgs-unstable 3.5.0
pkgs.gimp3-with-plugins GNU Image Manipulation Program nixos-25.05 ??? nixos-25.05-small 3.0.2 nixos-unstable ??? nixos-unstable-small 3.0.2 nixpkgs-unstable 3.0.2
pkgs.gimpPlugins.fourier GIMP plug-in to do the fourier transform nixos-25.05 ??? nixos-25.05-small 0.4.3 nixos-unstable 0.4.3 nixos-unstable-small 0.4.3 nixpkgs-unstable 0.4.3
pkgs.gimpPlugins.farbfeld Gimp plug-in for the farbfeld image format nixos-25.05 ??? nixos-25.05-small 2019-08-12 nixos-unstable 2019-08-12 nixos-unstable-small 2019-08-12 nixpkgs-unstable 2019-08-12
pkgs.gimpPlugins.lightning nixos-25.05 ??? nixos-25.05-small nixos-unstable ??? nixos-unstable-small nixpkgs-unstable
pkgs.gimpPlugins.lqrPlugin nixos-25.05 ??? nixos-25.05-small 0.7.2 nixos-unstable 0.7.2 nixos-unstable-small 0.7.2 nixpkgs-unstable 0.7.2
pkgs.gimpPlugins.texturize nixos-25.05 ??? nixos-25.05-small 2.2+unstable=2021-12-03 nixos-unstable 2.2+unstable=2021-12-03 nixos-unstable-small 2.2+unstable=2021-12-03 nixpkgs-unstable 2.2+unstable=2021-12-03
pkgs.gimp3Plugins.lightning nixos-25.05 ??? nixos-25.05-small nixos-unstable ??? nixos-unstable-small nixpkgs-unstable
pkgs.gimpPlugins.gimplensfun GIMP plugin to correct lens distortion using the lensfun library and database nixos-25.05 ??? nixos-25.05-small 2018-10-21 nixos-unstable 2018-10-21 nixos-unstable-small 2018-10-21 nixpkgs-unstable 2018-10-21
pkgs.gimpPlugins.resynthesizer nixos-25.05 ??? nixos-25.05-small 2.0.3 nixos-unstable ??? nixos-unstable-small 2.0.3 nixpkgs-unstable 2.0.3
pkgs.gimpPlugins.waveletSharpen nixos-25.05 ??? nixos-25.05-small 0.1.2 nixos-unstable 0.1.2 nixos-unstable-small 0.1.2 nixpkgs-unstable 0.1.2