Nixpkgs security tracker

Login with GitHub
⚠️ You are using a production deployment that is still only suitable for demo purposes. Any work done in this might be wiped later without notice.

Suggestions search

With package: rectangle

Found 1 matching suggestions

View:
Compact
Detailed
Untriaged
Permalink CVE-2023-1672
5.3 MEDIUM
  • CVSS version: 3.1
  • Attack vector (AV): ADJACENT_NETWORK
  • Attack complexity (AC): HIGH
  • Privileges required (PR): NONE
  • User interaction (UI): NONE
  • Scope (S): UNCHANGED
  • Confidentiality impact (C): HIGH
  • Integrity impact (I): NONE
  • Availability impact (A): NONE
created 1 year, 2 months ago
Race condition exists in the key generation and rotation functionality

A race condition exists in the Tang server functionality for key generation and key rotation. This flaw results in a small time window where Tang private keys become readable by other processes on the same host.

References

Affected products

tang

Matching in nixpkgs

pkgs.tang

Server for binding data to network presence

  • nixos-unstable 15
    • nixpkgs-unstable 15
    • nixos-unstable-small 15

pkgs.tango

Local command-line Japanese dictionary tool using yomichan's dictionary files

pkgs.tangram

Run web apps on your desktop

  • nixos-unstable 3.1
    • nixpkgs-unstable 3.1
    • nixos-unstable-small 3.1

pkgs.entangle

Tethered camera control and capture

  • nixos-unstable 3.0
    • nixpkgs-unstable 3.0
    • nixos-unstable-small 3.0

pkgs.md-tangle

Generates ("tangles") source code from Markdown documents

pkgs.rectangle

Move and resize windows in macOS using keyboard shortcuts or snap areas

  • nixos-unstable 0.85
    • nixpkgs-unstable 0.85
    • nixos-unstable-small 0.85

pkgs.tangerine

System for creating 3D models procedurally from a set of Signed Distance Function (SDF) primitive shapes and combining operators

pkgs.rectangle-pro

Move and resize windows in macOS using keyboard shortcuts or snap areas