diff options
| author | Jörg Thalheim <joerg@thalheim.io> | 2025-06-22 18:52:59 +0200 |
|---|---|---|
| committer | Jörg Thalheim <joerg@thalheim.io> | 2025-06-24 16:11:11 +0200 |
| commit | 923146e9275bd0a4331669c1c9f800fe59253b23 (patch) | |
| tree | b00cef0d09c4acb95074c4b5556c4ce6adb862e3 /pkgs/development/python-modules/python-sql | |
| parent | a1eacc0a2ce4a4de3c7fd523ddb26c2d95a01fd1 (diff) | |
nixComponents_2_29: add patch for GHSA-g948-229j-48j3
This addresses a TOCTOU (Time-of-Check to Time-of-Use) vulnerability in Nix's
build system that could potentially allow privilege escalation or unauthorized
file access during the build process.
The patch includes:
- Safe file operations using file descriptors
- Secure temporary directory handling
- Safe chown operations
- PassAsFile security improvements
- Path validation fixes
Diffstat (limited to 'pkgs/development/python-modules/python-sql')
0 files changed, 0 insertions, 0 deletions
