CVE-2023-1672 5.3 MEDIUM CVSS version: 3.1 Attack vector (AV): ADJACENT_NETWORK Attack complexity (AC): HIGH Privileges required (PR): NONE User interaction (UI): NONE Scope (S): UNCHANGED Confidentiality impact (C): HIGH Integrity impact (I): NONE Availability impact (A): NONE created 10 months ago Race condition exists in the key generation and rotation functionality A race condition exists in the Tang server functionality for key generation and key rotation. This flaw results in a small time window where Tang private keys become readable by other processes on the same host. Affected products tang Matching in nixpkgs pkgs.tang Server for binding data to network presence nixos-unstable 15 nixos-unstable-small 15 nixpkgs-unstable 15 pkgs.tango Local command-line Japanese dictionary tool using yomichan's dictionary files nixos-unstable 1.1.0 nixos-unstable-small 1.1.0 nixpkgs-unstable 1.1.0 pkgs.tangram Run web apps on your desktop nixos-unstable 3.1 nixos-unstable-small 3.1 nixpkgs-unstable 3.1 pkgs.entangle Tethered camera control and capture nixos-unstable 3.0 nixos-unstable-small 3.0 nixpkgs-unstable 3.0 pkgs.md-tangle Generates ("tangles") source code from Markdown documents nixos-unstable 1.3.1 nixos-unstable-small 1.3.1 nixpkgs-unstable 1.3.1 pkgs.rectangle Move and resize windows in macOS using keyboard shortcuts or snap areas nixos-unstable 0.85 nixos-unstable-small 0.85 nixpkgs-unstable 0.85 pkgs.tangerine System for creating 3D models procedurally from a set of Signed Distance Function (SDF) primitive shapes and combining operators nixos-unstable 2024-04-05 nixos-unstable-small 2024-04-05 nixpkgs-unstable 2024-04-05 pkgs.rectangle-pro Move and resize windows in macOS using keyboard shortcuts or snap areas nixos-unstable 3.0.19 nixos-unstable-small 3.0.19 nixpkgs-unstable 3.0.19 pkgs.tango-icon-theme Basic set of icons nixos-unstable 0.8.90 nixos-unstable-small 0.8.90 nixpkgs-unstable 0.8.90 pkgs.haskellPackages.tangle Heterogenous memoisation monad nixos-unstable 0.1 nixos-unstable-small 0.1 nixpkgs-unstable 0.1 pkgs.rectangle.x86_64-darwin Move and resize windows in macOS using keyboard shortcuts or snap areas nixos-unstable 0.85 pkgs.rectangle.aarch64-darwin Move and resize windows in macOS using keyboard shortcuts or snap areas nixos-unstable 0.85 pkgs.gnomeExtensions.rectangle Magnet/Rectangle like manual tiling nixos-unstable 23 nixos-unstable-small 25 nixpkgs-unstable 23 pkgs.python311Packages.untangle Convert XML documents into Python objects nixos-unstable 1.2.1 nixos-unstable-small 1.2.1 nixpkgs-unstable 1.2.1 pkgs.python312Packages.untangle Convert XML documents into Python objects nixos-unstable 1.2.1 nixos-unstable-small 1.2.1 nixpkgs-unstable 1.2.1 pkgs.emacsPackages.mustang-theme nixos-unstable 20170719.946 nixos-unstable-small 20170719.946 nixpkgs-unstable 20170719.946 pkgs.emacsPackages.phi-rectangle nixos-unstable 20200911.204 nixos-unstable-small 20200911.204 nixpkgs-unstable 20200911.204 pkgs.emacsPackages.tango-2-theme nixos-unstable 2-theme-20120312.2025 nixos-unstable-small 2-theme-20120312.2025 nixpkgs-unstable 2-theme-20120312.2025 pkgs.rectangle-pro.x86_64-darwin Move and resize windows in macOS using keyboard shortcuts or snap areas nixos-unstable 3.0.19 pkgs.emacsPackages.org-tanglesync nixos-unstable 20200127.1616 nixos-unstable-small 20200127.1616 nixpkgs-unstable 20200127.1616 pkgs.emacsPackages.tangonov-theme nixos-unstable 20230425.1456 nixos-unstable-small 20230425.1456 nixpkgs-unstable 20230425.1456 pkgs.rectangle-pro.aarch64-darwin Move and resize windows in macOS using keyboard shortcuts or snap areas nixos-unstable 3.0.19 pkgs.emacsPackages.org-auto-tangle nixos-unstable 20220812.2327 nixos-unstable-small 20220812.2327 nixpkgs-unstable 20220812.2327 pkgs.emacsPackages.rectangle-utils nixos-unstable 20240830.306 nixos-unstable-small 20240830.306 nixpkgs-unstable 20240830.306 pkgs.emacsPackages.tango-plus-theme nixos-unstable 20240703.1443 nixos-unstable-small 20240703.1443 nixpkgs-unstable 20240703.1443 pkgs.emacsPackages.tangotango-theme nixos-unstable 20220714.2034 nixos-unstable-small 20220714.2034 nixpkgs-unstable 20220714.2034 pkgs.vscode-extensions.matangover.mypy nixos-unstable 0.2.3 nixos-unstable-small 0.2.3 nixpkgs-unstable 0.2.3 pkgs.emacsPackages.color-theme-tangotango nixos-unstable 0.0.6 nixos-unstable-small 0.0.6 nixpkgs-unstable 0.0.6 pkgs.python312Packages.untangle.x86_64-linux Convert XML documents into Python objects nixos-unstable 1.2.1 pkgs.python312Packages.untangle.aarch64-linux Convert XML documents into Python objects nixos-unstable 1.2.1 pkgs.python312Packages.untangle.x86_64-darwin Convert XML documents into Python objects nixos-unstable 1.2.1 pkgs.python312Packages.untangle.aarch64-darwin Convert XML documents into Python objects nixos-unstable 1.2.1 pkgs.vscode-extensions.matangover.mypy.x86_64-linux nixos-unstable ??? nixos-unstable-small 0.2.3 pkgs.vscode-extensions.matangover.mypy.aarch64-linux nixos-unstable ??? nixos-unstable-small 0.2.3 pkgs.vscode-extensions.matangover.mypy.x86_64-darwin nixos-unstable ??? nixos-unstable-small 0.2.3 pkgs.vscode-extensions.matangover.mypy.aarch64-darwin nixos-unstable ??? nixos-unstable-small 0.2.3 Package maintainers: 12 @fpletz Franz Pletz <fpletz@fnordicwalking.de> @viraptor Stanisław Pitucha <nix@viraptor.info> @donovanglover Donovan Glover @austinbutler Austin Butler <austinabutler@gmail.com> @chuangzhu Chuang Zhu <nixos@chuang.cz> @Intuinewin Antoine Labarussias <antoinelabarussias@gmail.com> @wegank Weijia Wang <contact@weijia.wang> @emilytrau Emily Trau <emily+nix@downunderctf.com> @honnip Jung seungwoo <me@honnip.page> @AndersonTorres Anderson Torres <torres.anderson.85@protonmail.com> @arnoldfarkas Arnold Farkas <arnold.farkas@gmail.com> @ShamrockLee Yueh-Shun Li <shamrocklee@posteo.net>
pkgs.tang Server for binding data to network presence nixos-unstable 15 nixos-unstable-small 15 nixpkgs-unstable 15
pkgs.tango Local command-line Japanese dictionary tool using yomichan's dictionary files nixos-unstable 1.1.0 nixos-unstable-small 1.1.0 nixpkgs-unstable 1.1.0
pkgs.tangram Run web apps on your desktop nixos-unstable 3.1 nixos-unstable-small 3.1 nixpkgs-unstable 3.1
pkgs.entangle Tethered camera control and capture nixos-unstable 3.0 nixos-unstable-small 3.0 nixpkgs-unstable 3.0
pkgs.md-tangle Generates ("tangles") source code from Markdown documents nixos-unstable 1.3.1 nixos-unstable-small 1.3.1 nixpkgs-unstable 1.3.1
pkgs.rectangle Move and resize windows in macOS using keyboard shortcuts or snap areas nixos-unstable 0.85 nixos-unstable-small 0.85 nixpkgs-unstable 0.85
pkgs.tangerine System for creating 3D models procedurally from a set of Signed Distance Function (SDF) primitive shapes and combining operators nixos-unstable 2024-04-05 nixos-unstable-small 2024-04-05 nixpkgs-unstable 2024-04-05
pkgs.rectangle-pro Move and resize windows in macOS using keyboard shortcuts or snap areas nixos-unstable 3.0.19 nixos-unstable-small 3.0.19 nixpkgs-unstable 3.0.19
pkgs.tango-icon-theme Basic set of icons nixos-unstable 0.8.90 nixos-unstable-small 0.8.90 nixpkgs-unstable 0.8.90
pkgs.haskellPackages.tangle Heterogenous memoisation monad nixos-unstable 0.1 nixos-unstable-small 0.1 nixpkgs-unstable 0.1
pkgs.rectangle.x86_64-darwin Move and resize windows in macOS using keyboard shortcuts or snap areas nixos-unstable 0.85
pkgs.rectangle.aarch64-darwin Move and resize windows in macOS using keyboard shortcuts or snap areas nixos-unstable 0.85
pkgs.gnomeExtensions.rectangle Magnet/Rectangle like manual tiling nixos-unstable 23 nixos-unstable-small 25 nixpkgs-unstable 23
pkgs.python311Packages.untangle Convert XML documents into Python objects nixos-unstable 1.2.1 nixos-unstable-small 1.2.1 nixpkgs-unstable 1.2.1
pkgs.python312Packages.untangle Convert XML documents into Python objects nixos-unstable 1.2.1 nixos-unstable-small 1.2.1 nixpkgs-unstable 1.2.1
pkgs.emacsPackages.mustang-theme nixos-unstable 20170719.946 nixos-unstable-small 20170719.946 nixpkgs-unstable 20170719.946
pkgs.emacsPackages.phi-rectangle nixos-unstable 20200911.204 nixos-unstable-small 20200911.204 nixpkgs-unstable 20200911.204
pkgs.emacsPackages.tango-2-theme nixos-unstable 2-theme-20120312.2025 nixos-unstable-small 2-theme-20120312.2025 nixpkgs-unstable 2-theme-20120312.2025
pkgs.rectangle-pro.x86_64-darwin Move and resize windows in macOS using keyboard shortcuts or snap areas nixos-unstable 3.0.19
pkgs.emacsPackages.org-tanglesync nixos-unstable 20200127.1616 nixos-unstable-small 20200127.1616 nixpkgs-unstable 20200127.1616
pkgs.emacsPackages.tangonov-theme nixos-unstable 20230425.1456 nixos-unstable-small 20230425.1456 nixpkgs-unstable 20230425.1456
pkgs.rectangle-pro.aarch64-darwin Move and resize windows in macOS using keyboard shortcuts or snap areas nixos-unstable 3.0.19
pkgs.emacsPackages.org-auto-tangle nixos-unstable 20220812.2327 nixos-unstable-small 20220812.2327 nixpkgs-unstable 20220812.2327
pkgs.emacsPackages.rectangle-utils nixos-unstable 20240830.306 nixos-unstable-small 20240830.306 nixpkgs-unstable 20240830.306
pkgs.emacsPackages.tango-plus-theme nixos-unstable 20240703.1443 nixos-unstable-small 20240703.1443 nixpkgs-unstable 20240703.1443
pkgs.emacsPackages.tangotango-theme nixos-unstable 20220714.2034 nixos-unstable-small 20220714.2034 nixpkgs-unstable 20220714.2034
pkgs.vscode-extensions.matangover.mypy nixos-unstable 0.2.3 nixos-unstable-small 0.2.3 nixpkgs-unstable 0.2.3
pkgs.emacsPackages.color-theme-tangotango nixos-unstable 0.0.6 nixos-unstable-small 0.0.6 nixpkgs-unstable 0.0.6
pkgs.python312Packages.untangle.x86_64-linux Convert XML documents into Python objects nixos-unstable 1.2.1
pkgs.python312Packages.untangle.aarch64-linux Convert XML documents into Python objects nixos-unstable 1.2.1
pkgs.python312Packages.untangle.x86_64-darwin Convert XML documents into Python objects nixos-unstable 1.2.1
pkgs.python312Packages.untangle.aarch64-darwin Convert XML documents into Python objects nixos-unstable 1.2.1
CVE-2023-3966 7.5 HIGH CVSS version: 3.1 Attack vector (AV): NETWORK Attack complexity (AC): LOW Privileges required (PR): NONE User interaction (UI): NONE Scope (S): UNCHANGED Confidentiality impact (C): NONE Integrity impact (I): NONE Availability impact (A): HIGH created 10 months ago Openvswsitch: ovs-vswitch fails to recover after malformed geneve metadata packet A flaw was found in Open vSwitch where multiple versions are vulnerable to crafted Geneve packets, which may result in a denial of service and invalid memory accesses. Triggering this issue requires that hardware offloading via the netlink path is enabled. Affected products openvswitch openvswitch3.0 openvswitch3.1 openvswitch3.2 openvswitch2.10 openvswitch2.11 openvswitch2.12 openvswitch2.13 openvswitch2.15 openvswitch2.16 openvswitch2.17 rdo-openvswitch openvswitch-ovn-kubernetes Matching in nixpkgs pkgs.openvswitch Multilayer virtual switch nixos-unstable 3.4.1 nixos-unstable-small 3.4.1 nixpkgs-unstable 3.4.1 pkgs.openvswitch-dpdk Multilayer virtual switch nixos-unstable 3.4.1 nixos-unstable-small 3.4.1 nixpkgs-unstable 3.4.1 Package maintainers: 4 @xddxdd Yuhui Xu <b980120@hotmail.com> @netixx François Espinet <dev.espinetfrancois@gmail.com> @kmcopper Kyle Copperfield <kmcopper@danwin1210.me> @adamcstephens Adam C. Stephens <happy.plan4249@valkor.net>
pkgs.openvswitch Multilayer virtual switch nixos-unstable 3.4.1 nixos-unstable-small 3.4.1 nixpkgs-unstable 3.4.1
pkgs.openvswitch-dpdk Multilayer virtual switch nixos-unstable 3.4.1 nixos-unstable-small 3.4.1 nixpkgs-unstable 3.4.1
CVE-2024-26280 4.7 MEDIUM CVSS version: 3.1 Attack vector (AV): NETWORK Attack complexity (AC): LOW Privileges required (PR): HIGH User interaction (UI): NONE Scope (S): UNCHANGED Confidentiality impact (C): LOW Integrity impact (I): LOW Availability impact (A): LOW created 10 months ago Apache Airflow: Overly broad default permissions for Viewer/Ops (audit logs) Apache Airflow, versions before 2.8.2, has a vulnerability that allows authenticated Ops and Viewers users to view all information on audit logs, including dag names and usernames they were not permitted to view. With 2.8.2 and newer, Ops and Viewer users do not have audit log permission by default, they need to be explicitly granted permissions to see the logs. Only admin users have audit log permission by default. Users of Apache Airflow are recommended to upgrade to version 2.8.2 or newer to mitigate the risk associated with this vulnerability Affected products apache-airflow <2.8.2 Matching in nixpkgs pkgs.apache-airflow Programmatically author, schedule and monitor data pipelines nixos-unstable 2.7.3 nixos-unstable-small 2.7.3 nixpkgs-unstable 2.7.3 Package maintainers: 3 @bhipple Benjamin Hipple <bhipple@protonmail.com> @gbpdt Graham Bennett <nix@pdtpartners.com> @ingenieroariel Ariel Nunez <ariel@nunez.co>
pkgs.apache-airflow Programmatically author, schedule and monitor data pipelines nixos-unstable 2.7.3 nixos-unstable-small 2.7.3 nixpkgs-unstable 2.7.3
CVE-2023-0341 7.8 HIGH CVSS version: 3.1 Attack vector (AV): LOCAL Attack complexity (AC): LOW Privileges required (PR): NONE User interaction (UI): REQUIRED Scope (S): UNCHANGED Confidentiality impact (C): HIGH Integrity impact (I): HIGH Availability impact (A): HIGH created 10 months ago Stack Buffer Overflow in editorconfig-core-c A stack buffer overflow exists in the ec_glob function of editorconfig-core-c before v0.12.6 which allowed an attacker to arbitrarily write to the stack and possibly allows remote code execution. editorconfig-core-c v0.12.6 resolved this vulnerability by bound checking all write operations over the p_pcre buffer. Affected products editorconfig-core-c <v0.12.6 Matching in nixpkgs pkgs.editorconfig-core-c EditorConfig core library written in C nixos-unstable 0.12.9 nixos-unstable-small 0.12.9 nixpkgs-unstable 0.12.9 Package maintainers: 1 @dochang Desmond O. Chang <dochang@gmail.com>
pkgs.editorconfig-core-c EditorConfig core library written in C nixos-unstable 0.12.9 nixos-unstable-small 0.12.9 nixpkgs-unstable 0.12.9
CVE-2023-48291 created 10 months ago Apache Airflow: Improper access control to DAG resources Apache Airflow, in versions prior to 2.8.0, contains a security vulnerability that allows an authenticated user with limited access to some DAGs, to craft a request that could give the user write access to various DAG resources for DAGs that the user had no access to, thus, enabling the user to clear DAGs they shouldn't. This is a missing fix for CVE-2023-42792 in Apache Airflow 2.7.2 Users of Apache Airflow are strongly advised to upgrade to version 2.8.0 or newer to mitigate the risk associated with this vulnerability. Affected products apache-airflow <2.8.0 Matching in nixpkgs pkgs.apache-airflow Programmatically author, schedule and monitor data pipelines nixos-unstable 2.7.3 nixos-unstable-small 2.7.3 nixpkgs-unstable 2.7.3 Package maintainers: 3 @bhipple Benjamin Hipple <bhipple@protonmail.com> @gbpdt Graham Bennett <nix@pdtpartners.com> @ingenieroariel Ariel Nunez <ariel@nunez.co>
pkgs.apache-airflow Programmatically author, schedule and monitor data pipelines nixos-unstable 2.7.3 nixos-unstable-small 2.7.3 nixpkgs-unstable 2.7.3
CVE-2024-5197 created 10 months ago Integer overflow in libvpx There exists interger overflows in libvpx in versions prior to 1.14.1. Calling vpx_img_alloc() with a large value of the d_w, d_h, or align parameter may result in integer overflows in the calculations of buffer sizes and offsets and some fields of the returned vpx_image_t struct may be invalid. Calling vpx_img_wrap() with a large value of the d_w, d_h, or stride_align parameter may result in integer overflows in the calculations of buffer sizes and offsets and some fields of the returned vpx_image_t struct may be invalid. We recommend upgrading to version 1.14.1 or beyond Affected products libvpx <1.14.1 Matching in nixpkgs pkgs.libvpx WebM VP8/VP9 codec SDK nixos-unstable 1.15.0 nixos-unstable-small 1.15.0 nixpkgs-unstable 1.15.0 pkgs.libvpx.x86_64-linux WebM VP8/VP9 codec SDK nixos-unstable ??? nixos-unstable-small 1.15.0 pkgs.libvpx.aarch64-linux WebM VP8/VP9 codec SDK nixos-unstable ??? nixos-unstable-small 1.15.0 pkgs.libvpx.x86_64-darwin WebM VP8/VP9 codec SDK nixos-unstable ??? nixos-unstable-small 1.15.0 pkgs.libvpx.aarch64-darwin WebM VP8/VP9 codec SDK nixos-unstable ??? nixos-unstable-small 1.15.0 Package maintainers: 1 @codyopel Cody Opel <codyopel@gmail.com>
pkgs.libvpx WebM VP8/VP9 codec SDK nixos-unstable 1.15.0 nixos-unstable-small 1.15.0 nixpkgs-unstable 1.15.0
CVE-2023-6779 8.2 HIGH CVSS version: 3.1 Attack vector (AV): NETWORK Attack complexity (AC): LOW Privileges required (PR): NONE User interaction (UI): NONE Scope (S): UNCHANGED Confidentiality impact (C): NONE Integrity impact (I): LOW Availability impact (A): HIGH created 10 months ago Glibc: off-by-one heap-based buffer overflow in __vsyslog_internal() An off-by-one heap-based buffer overflow was found in the __vsyslog_internal function of the glibc library. This function is called by the syslog and vsyslog functions. This issue occurs when these functions are called with a message bigger than INT_MAX bytes, leading to an incorrect calculation of the buffer size to store the message, resulting in an application crash. This issue affects glibc 2.37 and newer. Affected products glibc compat-glibc Matching in nixpkgs pkgs.glibc GNU C Library nixos-unstable 2.40-36 nixos-unstable-small 2.40-36 nixpkgs-unstable 2.40-36 pkgs.iconv GNU C Library nixos-unstable 2.40-36 nixos-unstable-small 2.40-36 nixpkgs-unstable 2.40-36 pkgs.getent nixos-unstable 2.40-36 nixos-unstable-small 2.40-36 nixpkgs-unstable 2.40-36 pkgs.locale nixos-unstable 2.40-36 nixos-unstable-small 2.40-36 nixpkgs-unstable 2.40-36 pkgs.mtrace Perl script used to interpret and provide human readable output of the trace log contained in the file mtracedata, whose contents were produced by mtrace(3) nixos-unstable 2.40-36 nixos-unstable-small 2.40-36 nixpkgs-unstable 2.40-36 pkgs.getconf nixos-unstable 2.40-36 nixos-unstable-small 2.40-36 nixpkgs-unstable 2.40-36 pkgs.libiconv nixos-unstable 2.40 nixos-unstable-small 2.40 nixpkgs-unstable 2.40 pkgs.glibcInfo GNU Info manual of the GNU C Library nixos-unstable 2.40-36 nixos-unstable-small 2.40-36 nixpkgs-unstable 2.40-36 pkgs.glibc_multi nixos-unstable 2.40-36 nixos-unstable-small 2.40-36 nixpkgs-unstable 2.40-36 pkgs.glibcLocales Locale information for the GNU C Library nixos-unstable 2.40-36 nixos-unstable-small 2.40-36 nixpkgs-unstable 2.40-36 pkgs.glibc_memusage GNU C Library nixos-unstable 2.40-36 nixos-unstable-small 2.40-36 nixpkgs-unstable 2.40-36 pkgs.glibcLocalesUtf8 Locale information for the GNU C Library nixos-unstable 2.40-36 nixos-unstable-small 2.40-36 nixpkgs-unstable 2.40-36 pkgs.unixtools.getent nixos-unstable 2.40-36 nixos-unstable-small 2.40-36 nixpkgs-unstable 2.40-36 pkgs.unixtools.locale nixos-unstable 2.40-36 nixos-unstable-small 2.40-36 nixpkgs-unstable 2.40-36 pkgs.unixtools.getconf nixos-unstable 2.40-36 nixos-unstable-small 2.40-36 nixpkgs-unstable 2.40-36 pkgs.locale.x86_64-linux nixos-unstable ??? nixos-unstable-small 2.40-36 pkgs.locale.aarch64-linux nixos-unstable ??? nixos-unstable-small 2.40-36 pkgs.libiconv.x86_64-linux nixos-unstable ??? nixos-unstable-small 2.40 pkgs.libiconv.aarch64-linux nixos-unstable ??? nixos-unstable-small 2.40 Package maintainers: 2 @Ma27 Maximilian Bosch <maximilian@mbosch.me> @ConnorBaker Connor Baker <ConnorBaker01@gmail.com>
pkgs.glibc GNU C Library nixos-unstable 2.40-36 nixos-unstable-small 2.40-36 nixpkgs-unstable 2.40-36
pkgs.iconv GNU C Library nixos-unstable 2.40-36 nixos-unstable-small 2.40-36 nixpkgs-unstable 2.40-36
pkgs.mtrace Perl script used to interpret and provide human readable output of the trace log contained in the file mtracedata, whose contents were produced by mtrace(3) nixos-unstable 2.40-36 nixos-unstable-small 2.40-36 nixpkgs-unstable 2.40-36
pkgs.glibcInfo GNU Info manual of the GNU C Library nixos-unstable 2.40-36 nixos-unstable-small 2.40-36 nixpkgs-unstable 2.40-36
pkgs.glibcLocales Locale information for the GNU C Library nixos-unstable 2.40-36 nixos-unstable-small 2.40-36 nixpkgs-unstable 2.40-36
pkgs.glibc_memusage GNU C Library nixos-unstable 2.40-36 nixos-unstable-small 2.40-36 nixpkgs-unstable 2.40-36
pkgs.glibcLocalesUtf8 Locale information for the GNU C Library nixos-unstable 2.40-36 nixos-unstable-small 2.40-36 nixpkgs-unstable 2.40-36
CVE-2022-31631 9.1 CRITICAL CVSS version: 3.1 Attack vector (AV): NETWORK Attack complexity (AC): LOW Privileges required (PR): NONE User interaction (UI): NONE Scope (S): UNCHANGED Confidentiality impact (C): HIGH Integrity impact (I): HIGH Availability impact (A): NONE created 10 months ago PDO::quote() may return unquoted string In PHP versions 8.0.* before 8.0.27, 8.1.* before 8.1.15, 8.2.* before 8.2.2 when using PDO::quote() function to quote user-supplied data for SQLite, supplying an overly long string may cause the driver to incorrectly quote the data, which may further lead to SQL injection vulnerabilities. Affected products pdo_sqlite <8.2.2 <8.0.27 <8.1.15 Matching in nixpkgs pkgs.php81Extensions.pdo_sqlite PHP upstream extension: pdo_sqlite nixos-unstable 8.1.31 nixos-unstable-small 8.1.31 nixpkgs-unstable 8.1.31 pkgs.php82Extensions.pdo_sqlite PHP upstream extension: pdo_sqlite nixos-unstable 8.2.26 nixos-unstable-small 8.2.26 nixpkgs-unstable 8.2.26 pkgs.php83Extensions.pdo_sqlite PHP upstream extension: pdo_sqlite nixos-unstable 8.3.14 nixos-unstable-small 8.3.14 nixpkgs-unstable 8.3.14 pkgs.php84Extensions.pdo_sqlite PHP upstream extension: pdo_sqlite nixos-unstable 8.4.1 nixos-unstable-small 8.4.1 nixpkgs-unstable 8.4.1 pkgs.php81Extensions.pdo_sqlite.x86_64-linux PHP upstream extension: pdo_sqlite nixos-unstable ??? nixpkgs-unstable 8.1.31 pkgs.php82Extensions.pdo_sqlite.x86_64-linux PHP upstream extension: pdo_sqlite nixos-unstable ??? nixpkgs-unstable 8.2.26 pkgs.php83Extensions.pdo_sqlite.x86_64-linux PHP upstream extension: pdo_sqlite nixos-unstable ??? nixpkgs-unstable 8.3.14 pkgs.php84Extensions.pdo_sqlite.x86_64-linux PHP upstream extension: pdo_sqlite nixos-unstable ??? nixpkgs-unstable 8.4.1 pkgs.php81Extensions.pdo_sqlite.aarch64-linux PHP upstream extension: pdo_sqlite nixos-unstable ??? nixpkgs-unstable 8.1.31 pkgs.php81Extensions.pdo_sqlite.x86_64-darwin PHP upstream extension: pdo_sqlite nixos-unstable ??? nixpkgs-unstable 8.1.31 pkgs.php82Extensions.pdo_sqlite.aarch64-linux PHP upstream extension: pdo_sqlite nixos-unstable ??? nixpkgs-unstable 8.2.26 pkgs.php82Extensions.pdo_sqlite.x86_64-darwin PHP upstream extension: pdo_sqlite nixos-unstable ??? nixpkgs-unstable 8.2.26 pkgs.php83Extensions.pdo_sqlite.aarch64-linux PHP upstream extension: pdo_sqlite nixos-unstable ??? nixpkgs-unstable 8.3.14 pkgs.php83Extensions.pdo_sqlite.x86_64-darwin PHP upstream extension: pdo_sqlite nixos-unstable ??? nixpkgs-unstable 8.3.14 pkgs.php84Extensions.pdo_sqlite.aarch64-linux PHP upstream extension: pdo_sqlite nixos-unstable ??? nixpkgs-unstable 8.4.1 pkgs.php84Extensions.pdo_sqlite.x86_64-darwin PHP upstream extension: pdo_sqlite nixos-unstable ??? nixpkgs-unstable 8.4.1 pkgs.php81Extensions.pdo_sqlite.aarch64-darwin PHP upstream extension: pdo_sqlite nixos-unstable ??? nixpkgs-unstable 8.1.31 pkgs.php82Extensions.pdo_sqlite.aarch64-darwin PHP upstream extension: pdo_sqlite nixos-unstable ??? nixpkgs-unstable 8.2.26 pkgs.php83Extensions.pdo_sqlite.aarch64-darwin PHP upstream extension: pdo_sqlite nixos-unstable ??? nixpkgs-unstable 8.3.14 pkgs.php84Extensions.pdo_sqlite.aarch64-darwin PHP upstream extension: pdo_sqlite nixos-unstable ??? nixpkgs-unstable 8.4.1 Package maintainers: 5 @talyz Kim Lindberger <kim.lindberger@gmail.com> @drupol Pol Dellaiera <pol.dellaiera@protonmail.com> @aanderse Aaron Andersen <aaron@fosslib.net> @piotrkwiecinski Piotr Kwiecinski <piokwiecinski+nixpkgs@gmail.com> @Ma27 Maximilian Bosch <maximilian@mbosch.me>
pkgs.php81Extensions.pdo_sqlite PHP upstream extension: pdo_sqlite nixos-unstable 8.1.31 nixos-unstable-small 8.1.31 nixpkgs-unstable 8.1.31
pkgs.php82Extensions.pdo_sqlite PHP upstream extension: pdo_sqlite nixos-unstable 8.2.26 nixos-unstable-small 8.2.26 nixpkgs-unstable 8.2.26
pkgs.php83Extensions.pdo_sqlite PHP upstream extension: pdo_sqlite nixos-unstable 8.3.14 nixos-unstable-small 8.3.14 nixpkgs-unstable 8.3.14
pkgs.php84Extensions.pdo_sqlite PHP upstream extension: pdo_sqlite nixos-unstable 8.4.1 nixos-unstable-small 8.4.1 nixpkgs-unstable 8.4.1
pkgs.php81Extensions.pdo_sqlite.x86_64-linux PHP upstream extension: pdo_sqlite nixos-unstable ??? nixpkgs-unstable 8.1.31
pkgs.php82Extensions.pdo_sqlite.x86_64-linux PHP upstream extension: pdo_sqlite nixos-unstable ??? nixpkgs-unstable 8.2.26
pkgs.php83Extensions.pdo_sqlite.x86_64-linux PHP upstream extension: pdo_sqlite nixos-unstable ??? nixpkgs-unstable 8.3.14
pkgs.php84Extensions.pdo_sqlite.x86_64-linux PHP upstream extension: pdo_sqlite nixos-unstable ??? nixpkgs-unstable 8.4.1
pkgs.php81Extensions.pdo_sqlite.aarch64-linux PHP upstream extension: pdo_sqlite nixos-unstable ??? nixpkgs-unstable 8.1.31
pkgs.php81Extensions.pdo_sqlite.x86_64-darwin PHP upstream extension: pdo_sqlite nixos-unstable ??? nixpkgs-unstable 8.1.31
pkgs.php82Extensions.pdo_sqlite.aarch64-linux PHP upstream extension: pdo_sqlite nixos-unstable ??? nixpkgs-unstable 8.2.26
pkgs.php82Extensions.pdo_sqlite.x86_64-darwin PHP upstream extension: pdo_sqlite nixos-unstable ??? nixpkgs-unstable 8.2.26
pkgs.php83Extensions.pdo_sqlite.aarch64-linux PHP upstream extension: pdo_sqlite nixos-unstable ??? nixpkgs-unstable 8.3.14
pkgs.php83Extensions.pdo_sqlite.x86_64-darwin PHP upstream extension: pdo_sqlite nixos-unstable ??? nixpkgs-unstable 8.3.14
pkgs.php84Extensions.pdo_sqlite.aarch64-linux PHP upstream extension: pdo_sqlite nixos-unstable ??? nixpkgs-unstable 8.4.1
pkgs.php84Extensions.pdo_sqlite.x86_64-darwin PHP upstream extension: pdo_sqlite nixos-unstable ??? nixpkgs-unstable 8.4.1
pkgs.php81Extensions.pdo_sqlite.aarch64-darwin PHP upstream extension: pdo_sqlite nixos-unstable ??? nixpkgs-unstable 8.1.31
pkgs.php82Extensions.pdo_sqlite.aarch64-darwin PHP upstream extension: pdo_sqlite nixos-unstable ??? nixpkgs-unstable 8.2.26
pkgs.php83Extensions.pdo_sqlite.aarch64-darwin PHP upstream extension: pdo_sqlite nixos-unstable ??? nixpkgs-unstable 8.3.14
pkgs.php84Extensions.pdo_sqlite.aarch64-darwin PHP upstream extension: pdo_sqlite nixos-unstable ??? nixpkgs-unstable 8.4.1
CVE-2023-1258 5.3 MEDIUM CVSS version: 3.1 Attack vector (AV): NETWORK Attack complexity (AC): LOW Privileges required (PR): NONE User interaction (UI): NONE Scope (S): UNCHANGED Confidentiality impact (C): LOW Integrity impact (I): NONE Availability impact (A): NONE created 10 months ago Flow-X disclosure of sensitive information to unauthenticated users Exposure of Sensitive Information to an Unauthorized Actor vulnerability in ABB Flow-X firmware on Flow-X embedded hardware (web service modules) allows Footprinting.This issue affects Flow-X: before 4.0. Affected products firmware <4.0 Matching in nixpkgs pkgs.zd1211fw Firmware for the ZyDAS ZD1211(b) 802.11a/b/g USB WLAN chip nixos-unstable 1.5 nixos-unstable-small 1.5 nixpkgs-unstable 1.5 pkgs.sof-firmware Sound Open Firmware nixos-unstable 2024.09.2 nixos-unstable-small 2024.09.2 nixpkgs-unstable 2024.09 pkgs.alsa-firmware Soundcard firmwares from the alsa project nixos-unstable 1.2.4 nixos-unstable-small 1.2.4 nixpkgs-unstable 1.2.4 pkgs.ivsc-firmware Firmware binaries for the Intel Vision Sensing Controller nixos-unstable 2024-06-14 nixos-unstable-small 2024-06-14 nixpkgs-unstable 2024-06-14 pkgs.raspberrypifw Firmware for the Raspberry Pi board nixos-unstable 1.20241008 nixos-unstable-small 1.20241008 nixpkgs-unstable 1.20241008 pkgs.gnome-firmware Tool for installing firmware on devices nixos-unstable 47.0 nixos-unstable-small 47.0 nixpkgs-unstable 47.0 pkgs.linux-firmware Binary firmware collection packaged by kernel.org nixos-unstable 20241110 nixos-unstable-small 20241110 nixpkgs-unstable 20241110 pkgs.rt5677-firmware Firmware for Realtek rt5677 device nixos-unstable ??? nixos-unstable-small nixpkgs-unstable pkgs.armbian-firmware Firmware from Armbian nixos-unstable 2023-09-16 nixos-unstable-small 2023-09-16 nixpkgs-unstable 2023-09-16 pkgs.firmware-manager Graphical frontend for firmware management nixos-unstable 0.1.5 nixos-unstable-small 0.1.5 nixpkgs-unstable 0.1.5 pkgs.firmware-updater Firmware Updater for Linux nixos-unstable 0-unstable-2024-10-03 nixos-unstable-small 0-unstable-2024-10-03 nixpkgs-unstable 0-unstable-2024-10-03 pkgs.klipper-firmware Firmware part of Klipper nixos-unstable 0.12.0-unstable-2024-10-26 nixos-unstable-small 0.12.0-unstable-2024-10-26 nixpkgs-unstable 0.12.0-unstable-2024-10-26 pkgs.rtl8761b-firmware Firmware for Realtek RTL8761b nixos-unstable ??? nixos-unstable-small nixpkgs-unstable pkgs.system76-firmware Tools for managing firmware updates for system76 devices nixos-unstable 1.0.50 nixos-unstable-small 1.0.50 nixpkgs-unstable 1.0.50 pkgs.b43Firmware_5_1_138 Firmware for cards supported by the b43 kernel module nixos-unstable 5.100.138 nixos-unstable-small 5.100.138 nixpkgs-unstable 5.100.138 pkgs.facetimehd-firmware facetimehd firmware nixos-unstable 1.43_5 nixos-unstable-small 1.43_5 nixpkgs-unstable 1.43_5 pkgs.xow_dongle-firmware Xbox One wireless dongle firmware nixos-unstable 2017-07 nixos-unstable-small 2017-07 nixpkgs-unstable 2017-07 pkgs.broadcom-bt-firmware Firmware for Broadcom WIDCOMM® Bluetooth devices nixos-unstable 12.0.1.1012 nixos-unstable-small 12.0.1.1012 nixpkgs-unstable 12.0.1.1012 pkgs.uefi-firmware-parser Tool for parsing, extracting, and recreating UEFI firmware volumes nixos-unstable 1.12 nixos-unstable-small 1.12 nixpkgs-unstable 1.12 pkgs.nitrokey-pro-firmware Firmware for the Nitrokey Pro device nixos-unstable 0.15 nixos-unstable-small 0.15 nixpkgs-unstable 0.15 pkgs.armTrustedFirmwareQemu Reference implementation of secure world software for ARMv8-A nixos-unstable 2.10.0 nixos-unstable-small 2.10.0 nixpkgs-unstable 2.10.0 pkgs.armTrustedFirmwareS905 Reference implementation of secure world software for ARMv8-A nixos-unstable 2.10.0 nixos-unstable-small 2.10.0 nixpkgs-unstable 2.10.0 pkgs.libreelec-dvb-firmware DVB firmware from LibreELEC nixos-unstable 1.5.0 nixos-unstable-small 1.5.0 nixpkgs-unstable 1.5.0 pkgs.armTrustedFirmwareTools Reference implementation of secure world software for ARMv8-A nixos-unstable 2.10.0 nixos-unstable-small 2.10.0 nixpkgs-unstable 2.10.0 pkgs.b43Firmware_6_30_163_46 Firmware for cards supported by the b43 kernel module nixos-unstable 6.30.163.46 nixos-unstable-small 6.30.163.46 nixpkgs-unstable 6.30.163.46 pkgs.nitrokey-fido2-firmware Firmware for the Nitrokey FIDO2 device nixos-unstable fido2-firmware-2.4.1 nixos-unstable-small fido2-firmware-2.4.1 nixpkgs-unstable fido2-firmware-2.4.1 pkgs.nitrokey-start-firmware Firmware for the Nitrokey Start device nixos-unstable 13 nixos-unstable-small 13 nixpkgs-unstable 13 pkgs.sigrok-firmware-fx2lafw Firmware for FX2 logic analyzers nixos-unstable fx2lafw-0.1.7-unstable-2024-02-03 nixos-unstable-small fx2lafw-0.1.7-unstable-2024-02-03 nixpkgs-unstable fx2lafw-0.1.7-unstable-2024-02-03 pkgs.armTrustedFirmwareRK3328 Reference implementation of secure world software for ARMv8-A nixos-unstable rk3328-2.10.0 nixos-unstable-small rk3328-2.10.0 nixpkgs-unstable rk3328-2.10.0 pkgs.armTrustedFirmwareRK3399 Reference implementation of secure world software for ARMv8-A nixos-unstable rk3399-2.10.0 nixos-unstable-small rk3399-2.10.0 nixpkgs-unstable rk3399-2.10.0 pkgs.armTrustedFirmwareRK3588 Reference implementation of secure world software for ARMv8-A nixos-unstable rk3588-2.10.0 nixos-unstable-small rk3588-2.10.0 nixpkgs-unstable rk3588-2.10.0 pkgs.nitrokey-storage-firmware Firmware for the Nitrokey Storage device nixos-unstable 0.57 nixos-unstable-small 0.57 nixpkgs-unstable 0.57 pkgs.sof-firmware.x86_64-linux Sound Open Firmware nixos-unstable 2024.09.2 pkgs.raspberrypifw.x86_64-linux Firmware for the Raspberry Pi board nixos-unstable 1.20241008 pkgs.sof-firmware.aarch64-linux Sound Open Firmware nixos-unstable 2024.09.2 pkgs.armTrustedFirmwareAllwinner Reference implementation of secure world software for ARMv8-A nixos-unstable sun50i_a64-2.10.0 nixos-unstable-small sun50i_a64-2.10.0 nixpkgs-unstable sun50i_a64-2.10.0 pkgs.ath9k-htc-blobless-firmware Blobless, open source wifi firmware for ath9k_htc.ko nixos-unstable 1.4.0 nixos-unstable-small 1.4.0 nixpkgs-unstable 1.4.0 pkgs.linux-firmware.x86_64-linux Binary firmware collection packaged by kernel.org nixos-unstable ??? nixos-unstable-small 20241110 pkgs.raspberrypiWirelessFirmware Firmware for builtin Wifi/Bluetooth devices in the Raspberry Pi 3+ and Zero W nixos-unstable 2024-02-26 nixos-unstable-small 2024-02-26 nixpkgs-unstable 2024-02-26 pkgs.raspberrypifw.aarch64-linux Firmware for the Raspberry Pi board nixos-unstable 1.20241008 pkgs.linux-firmware.aarch64-linux Binary firmware collection packaged by kernel.org nixos-unstable ??? nixos-unstable-small 20241110 pkgs.nitrokey-trng-rs232-firmware Firmware for the Nitrokey TRNG RS232 device nixos-unstable rs232-firmware-1.0.0 nixos-unstable-small rs232-firmware-1.0.0 nixpkgs-unstable rs232-firmware-1.0.0 pkgs.rt5677-firmware.x86_64-linux Firmware for Realtek rt5677 device nixos-unstable ??? pkgs.armTrustedFirmwareAllwinnerH6 Reference implementation of secure world software for ARMv8-A nixos-unstable sun50i_h6-2.10.0 nixos-unstable-small sun50i_h6-2.10.0 nixpkgs-unstable sun50i_h6-2.10.0 pkgs.rt5677-firmware.aarch64-linux Firmware for Realtek rt5677 device nixos-unstable ??? pkgs.rtl8761b-firmware.x86_64-linux Firmware for Realtek RTL8761b nixos-unstable ??? pkgs.armTrustedFirmwareAllwinnerH616 Reference implementation of secure world software for ARMv8-A nixos-unstable sun50i_h616-2.10.0 nixos-unstable-small sun50i_h616-2.10.0 nixpkgs-unstable sun50i_h616-2.10.0 pkgs.python311Packages.virt-firmware Tools for virtual machine firmware volumes nixos-unstable 24.7 nixos-unstable-small 24.7 nixpkgs-unstable 24.7 pkgs.python312Packages.virt-firmware Tools for virtual machine firmware volumes nixos-unstable 24.7 nixos-unstable-small 24.7 nixpkgs-unstable 24.7 pkgs.rtl8761b-firmware.aarch64-linux Firmware for Realtek RTL8761b nixos-unstable ??? pkgs.libreelec-dvb-firmware.x86_64-linux DVB firmware from LibreELEC nixos-unstable ??? nixos-unstable-small 1.5.0 pkgs.ath9k-htc-blobless-firmware-unstable Blobless, open source wifi firmware for ath9k_htc.ko nixos-unstable 2022-05-22 nixos-unstable-small 2022-05-22 nixpkgs-unstable 2022-05-22 pkgs.libreelec-dvb-firmware.aarch64-linux DVB firmware from LibreELEC nixos-unstable ??? nixos-unstable-small 1.5.0 pkgs.sigrok-firmware-fx2lafw.x86_64-linux Firmware for FX2 logic analyzers nixos-unstable fx2lafw-0.1.7-unstable-2024-02-03 pkgs.azure-cli-extensions.firmwareanalysis Microsoft Azure Command-Line Tools Firmwareanalysis Extension nixos-unstable 1.0.0 nixos-unstable-small 1.0.0 nixpkgs-unstable 1.0.0 pkgs.sigrok-firmware-fx2lafw.aarch64-linux Firmware for FX2 logic analyzers nixos-unstable fx2lafw-0.1.7-unstable-2024-02-03 pkgs.sigrok-firmware-fx2lafw.x86_64-darwin Firmware for FX2 logic analyzers nixos-unstable fx2lafw-0.1.7-unstable-2024-02-03 pkgs.sigrok-firmware-fx2lafw.aarch64-darwin Firmware for FX2 logic analyzers nixos-unstable fx2lafw-0.1.7-unstable-2024-02-03 pkgs.raspberrypiWirelessFirmware.x86_64-linux Firmware for builtin Wifi/Bluetooth devices in the Raspberry Pi 3+ and Zero W nixos-unstable 2024-02-26 pkgs.raspberrypiWirelessFirmware.aarch64-linux Firmware for builtin Wifi/Bluetooth devices in the Raspberry Pi 3+ and Zero W nixos-unstable 2024-02-26 pkgs.python312Packages.virt-firmware.x86_64-linux Tools for virtual machine firmware volumes nixos-unstable 24.7 pkgs.python312Packages.virt-firmware.aarch64-linux Tools for virtual machine firmware volumes nixos-unstable 24.7 pkgs.python312Packages.virt-firmware.x86_64-darwin Tools for virtual machine firmware volumes nixos-unstable 24.7 pkgs.python312Packages.virt-firmware.aarch64-darwin Tools for virtual machine firmware volumes nixos-unstable 24.7 Package maintainers: 31 @shlevy Shea Levy <shea@shealevy.com> @kiike Enric Morales <me@enric.me> @amerinor01 Alberto Merino <amerinor01@gmail.com> @imadnyc Abdullah Imad <me@imad.nyc> @kittywitch Kat Inskip <kat@inskip.me> @womfoo Kranium Gikos Mendoza <kranium@gikos.net> @grahamc Graham Christensen <graham@grahamc.com> @zraexy David Mell <zraexy@gmail.com> @lopsided98 Ben Wolsieffer <benwolsieffer@gmail.com> @dezgeg Tuomas Tynkkynen <tuomas.tynkkynen@iki.fi> @KSJ2000 KSJ2000 <katsho123@outlook.com> @fpletz Franz Pletz <fpletz@fnordicwalking.de> @mkg20001 Maciej Krüger <mkg20001+nix@gmail.com> @vtuan10 Van Tuan Vo <mail@tuan-vo.de> @L-as Las Safin <las@protonmail.ch> @ulrikstrid Ulrik Strid <ulrik.strid@outlook.com> @katexochen Paul Meyer <katexochen0@gmail.com> @zohl Al Zohali <zohl@fmap.me> @hedning Tor Hedin Brønner <torhedinbronner@gmail.com> @jtojnar Jan Tojnar <jtojnar@gmail.com> @bobby285271 Bobby Rong <rjl931189261@126.com> @dasj19 Daniel Șerbănescu <daniel@serbanescu.dk> @milibopp Emilia Bopp <contact@ebopp.de> @zaldnoay Zunway Liang <zunway@outlook.com> @vifino Adrian Pistol <vifino@tty.sh> @panicgh Nicolas Benes <nbenes.gh@xandea.de> @RaitoBezarius Ryan Lahfa <ryan@lahfa.xyz> @lblasc Luka Blaskovic <lblasc@znode.net> @hmenke Henri Menke <henri@henrimenke.de> @evenbrenden Even Brenden <packages@anythingexternal.com> @rhysmdnz Rhys Davies <rhys@memes.nz>
pkgs.zd1211fw Firmware for the ZyDAS ZD1211(b) 802.11a/b/g USB WLAN chip nixos-unstable 1.5 nixos-unstable-small 1.5 nixpkgs-unstable 1.5
pkgs.sof-firmware Sound Open Firmware nixos-unstable 2024.09.2 nixos-unstable-small 2024.09.2 nixpkgs-unstable 2024.09
pkgs.alsa-firmware Soundcard firmwares from the alsa project nixos-unstable 1.2.4 nixos-unstable-small 1.2.4 nixpkgs-unstable 1.2.4
pkgs.ivsc-firmware Firmware binaries for the Intel Vision Sensing Controller nixos-unstable 2024-06-14 nixos-unstable-small 2024-06-14 nixpkgs-unstable 2024-06-14
pkgs.raspberrypifw Firmware for the Raspberry Pi board nixos-unstable 1.20241008 nixos-unstable-small 1.20241008 nixpkgs-unstable 1.20241008
pkgs.gnome-firmware Tool for installing firmware on devices nixos-unstable 47.0 nixos-unstable-small 47.0 nixpkgs-unstable 47.0
pkgs.linux-firmware Binary firmware collection packaged by kernel.org nixos-unstable 20241110 nixos-unstable-small 20241110 nixpkgs-unstable 20241110
pkgs.rt5677-firmware Firmware for Realtek rt5677 device nixos-unstable ??? nixos-unstable-small nixpkgs-unstable
pkgs.armbian-firmware Firmware from Armbian nixos-unstable 2023-09-16 nixos-unstable-small 2023-09-16 nixpkgs-unstable 2023-09-16
pkgs.firmware-manager Graphical frontend for firmware management nixos-unstable 0.1.5 nixos-unstable-small 0.1.5 nixpkgs-unstable 0.1.5
pkgs.firmware-updater Firmware Updater for Linux nixos-unstable 0-unstable-2024-10-03 nixos-unstable-small 0-unstable-2024-10-03 nixpkgs-unstable 0-unstable-2024-10-03
pkgs.klipper-firmware Firmware part of Klipper nixos-unstable 0.12.0-unstable-2024-10-26 nixos-unstable-small 0.12.0-unstable-2024-10-26 nixpkgs-unstable 0.12.0-unstable-2024-10-26
pkgs.rtl8761b-firmware Firmware for Realtek RTL8761b nixos-unstable ??? nixos-unstable-small nixpkgs-unstable
pkgs.system76-firmware Tools for managing firmware updates for system76 devices nixos-unstable 1.0.50 nixos-unstable-small 1.0.50 nixpkgs-unstable 1.0.50
pkgs.b43Firmware_5_1_138 Firmware for cards supported by the b43 kernel module nixos-unstable 5.100.138 nixos-unstable-small 5.100.138 nixpkgs-unstable 5.100.138
pkgs.facetimehd-firmware facetimehd firmware nixos-unstable 1.43_5 nixos-unstable-small 1.43_5 nixpkgs-unstable 1.43_5
pkgs.xow_dongle-firmware Xbox One wireless dongle firmware nixos-unstable 2017-07 nixos-unstable-small 2017-07 nixpkgs-unstable 2017-07
pkgs.broadcom-bt-firmware Firmware for Broadcom WIDCOMM® Bluetooth devices nixos-unstable 12.0.1.1012 nixos-unstable-small 12.0.1.1012 nixpkgs-unstable 12.0.1.1012
pkgs.uefi-firmware-parser Tool for parsing, extracting, and recreating UEFI firmware volumes nixos-unstable 1.12 nixos-unstable-small 1.12 nixpkgs-unstable 1.12
pkgs.nitrokey-pro-firmware Firmware for the Nitrokey Pro device nixos-unstable 0.15 nixos-unstable-small 0.15 nixpkgs-unstable 0.15
pkgs.armTrustedFirmwareQemu Reference implementation of secure world software for ARMv8-A nixos-unstable 2.10.0 nixos-unstable-small 2.10.0 nixpkgs-unstable 2.10.0
pkgs.armTrustedFirmwareS905 Reference implementation of secure world software for ARMv8-A nixos-unstable 2.10.0 nixos-unstable-small 2.10.0 nixpkgs-unstable 2.10.0
pkgs.libreelec-dvb-firmware DVB firmware from LibreELEC nixos-unstable 1.5.0 nixos-unstable-small 1.5.0 nixpkgs-unstable 1.5.0
pkgs.armTrustedFirmwareTools Reference implementation of secure world software for ARMv8-A nixos-unstable 2.10.0 nixos-unstable-small 2.10.0 nixpkgs-unstable 2.10.0
pkgs.b43Firmware_6_30_163_46 Firmware for cards supported by the b43 kernel module nixos-unstable 6.30.163.46 nixos-unstable-small 6.30.163.46 nixpkgs-unstable 6.30.163.46
pkgs.nitrokey-fido2-firmware Firmware for the Nitrokey FIDO2 device nixos-unstable fido2-firmware-2.4.1 nixos-unstable-small fido2-firmware-2.4.1 nixpkgs-unstable fido2-firmware-2.4.1
pkgs.nitrokey-start-firmware Firmware for the Nitrokey Start device nixos-unstable 13 nixos-unstable-small 13 nixpkgs-unstable 13
pkgs.sigrok-firmware-fx2lafw Firmware for FX2 logic analyzers nixos-unstable fx2lafw-0.1.7-unstable-2024-02-03 nixos-unstable-small fx2lafw-0.1.7-unstable-2024-02-03 nixpkgs-unstable fx2lafw-0.1.7-unstable-2024-02-03
pkgs.armTrustedFirmwareRK3328 Reference implementation of secure world software for ARMv8-A nixos-unstable rk3328-2.10.0 nixos-unstable-small rk3328-2.10.0 nixpkgs-unstable rk3328-2.10.0
pkgs.armTrustedFirmwareRK3399 Reference implementation of secure world software for ARMv8-A nixos-unstable rk3399-2.10.0 nixos-unstable-small rk3399-2.10.0 nixpkgs-unstable rk3399-2.10.0
pkgs.armTrustedFirmwareRK3588 Reference implementation of secure world software for ARMv8-A nixos-unstable rk3588-2.10.0 nixos-unstable-small rk3588-2.10.0 nixpkgs-unstable rk3588-2.10.0
pkgs.nitrokey-storage-firmware Firmware for the Nitrokey Storage device nixos-unstable 0.57 nixos-unstable-small 0.57 nixpkgs-unstable 0.57
pkgs.armTrustedFirmwareAllwinner Reference implementation of secure world software for ARMv8-A nixos-unstable sun50i_a64-2.10.0 nixos-unstable-small sun50i_a64-2.10.0 nixpkgs-unstable sun50i_a64-2.10.0
pkgs.ath9k-htc-blobless-firmware Blobless, open source wifi firmware for ath9k_htc.ko nixos-unstable 1.4.0 nixos-unstable-small 1.4.0 nixpkgs-unstable 1.4.0
pkgs.linux-firmware.x86_64-linux Binary firmware collection packaged by kernel.org nixos-unstable ??? nixos-unstable-small 20241110
pkgs.raspberrypiWirelessFirmware Firmware for builtin Wifi/Bluetooth devices in the Raspberry Pi 3+ and Zero W nixos-unstable 2024-02-26 nixos-unstable-small 2024-02-26 nixpkgs-unstable 2024-02-26
pkgs.linux-firmware.aarch64-linux Binary firmware collection packaged by kernel.org nixos-unstable ??? nixos-unstable-small 20241110
pkgs.nitrokey-trng-rs232-firmware Firmware for the Nitrokey TRNG RS232 device nixos-unstable rs232-firmware-1.0.0 nixos-unstable-small rs232-firmware-1.0.0 nixpkgs-unstable rs232-firmware-1.0.0
pkgs.armTrustedFirmwareAllwinnerH6 Reference implementation of secure world software for ARMv8-A nixos-unstable sun50i_h6-2.10.0 nixos-unstable-small sun50i_h6-2.10.0 nixpkgs-unstable sun50i_h6-2.10.0
pkgs.armTrustedFirmwareAllwinnerH616 Reference implementation of secure world software for ARMv8-A nixos-unstable sun50i_h616-2.10.0 nixos-unstable-small sun50i_h616-2.10.0 nixpkgs-unstable sun50i_h616-2.10.0
pkgs.python311Packages.virt-firmware Tools for virtual machine firmware volumes nixos-unstable 24.7 nixos-unstable-small 24.7 nixpkgs-unstable 24.7
pkgs.python312Packages.virt-firmware Tools for virtual machine firmware volumes nixos-unstable 24.7 nixos-unstable-small 24.7 nixpkgs-unstable 24.7
pkgs.libreelec-dvb-firmware.x86_64-linux DVB firmware from LibreELEC nixos-unstable ??? nixos-unstable-small 1.5.0
pkgs.ath9k-htc-blobless-firmware-unstable Blobless, open source wifi firmware for ath9k_htc.ko nixos-unstable 2022-05-22 nixos-unstable-small 2022-05-22 nixpkgs-unstable 2022-05-22
pkgs.libreelec-dvb-firmware.aarch64-linux DVB firmware from LibreELEC nixos-unstable ??? nixos-unstable-small 1.5.0
pkgs.sigrok-firmware-fx2lafw.x86_64-linux Firmware for FX2 logic analyzers nixos-unstable fx2lafw-0.1.7-unstable-2024-02-03
pkgs.azure-cli-extensions.firmwareanalysis Microsoft Azure Command-Line Tools Firmwareanalysis Extension nixos-unstable 1.0.0 nixos-unstable-small 1.0.0 nixpkgs-unstable 1.0.0
pkgs.sigrok-firmware-fx2lafw.aarch64-linux Firmware for FX2 logic analyzers nixos-unstable fx2lafw-0.1.7-unstable-2024-02-03
pkgs.sigrok-firmware-fx2lafw.x86_64-darwin Firmware for FX2 logic analyzers nixos-unstable fx2lafw-0.1.7-unstable-2024-02-03
pkgs.sigrok-firmware-fx2lafw.aarch64-darwin Firmware for FX2 logic analyzers nixos-unstable fx2lafw-0.1.7-unstable-2024-02-03
pkgs.raspberrypiWirelessFirmware.x86_64-linux Firmware for builtin Wifi/Bluetooth devices in the Raspberry Pi 3+ and Zero W nixos-unstable 2024-02-26
pkgs.raspberrypiWirelessFirmware.aarch64-linux Firmware for builtin Wifi/Bluetooth devices in the Raspberry Pi 3+ and Zero W nixos-unstable 2024-02-26
pkgs.python312Packages.virt-firmware.x86_64-linux Tools for virtual machine firmware volumes nixos-unstable 24.7
pkgs.python312Packages.virt-firmware.aarch64-linux Tools for virtual machine firmware volumes nixos-unstable 24.7
pkgs.python312Packages.virt-firmware.x86_64-darwin Tools for virtual machine firmware volumes nixos-unstable 24.7
pkgs.python312Packages.virt-firmware.aarch64-darwin Tools for virtual machine firmware volumes nixos-unstable 24.7
CVE-2024-43428 7.7 HIGH CVSS version: 3.1 Attack vector (AV): LOCAL Attack complexity (AC): LOW Privileges required (PR): NONE User interaction (UI): NONE Scope (S): UNCHANGED Confidentiality impact (C): HIGH Integrity impact (I): HIGH Availability impact (A): NONE created 10 months, 1 week ago Moodle: cache poisoning via injection into storage To address a cache poisoning risk in Moodle, additional validation for local storage was required. Affected products moodle <4.3.6 <4.1.12 <4.4.2 <4.2.9 Matching in nixpkgs pkgs.moodle Free and open-source learning management system (LMS) written in PHP nixos-unstable 4.4.3 nixos-unstable-small 4.4.4 nixpkgs-unstable 4.4.3 pkgs.moodle-dl Moodle downloader that downloads course content fast from Moodle nixos-unstable 2.3.12 nixos-unstable-small 2.3.12 nixpkgs-unstable 2.3.12 Package maintainers: 2 @freezeboy freezeboy @kmein Kierán Meinhardt <kmein@posteo.de>
pkgs.moodle Free and open-source learning management system (LMS) written in PHP nixos-unstable 4.4.3 nixos-unstable-small 4.4.4 nixpkgs-unstable 4.4.3
pkgs.moodle-dl Moodle downloader that downloads course content fast from Moodle nixos-unstable 2.3.12 nixos-unstable-small 2.3.12 nixpkgs-unstable 2.3.12