diff options
| author | Jörg Thalheim <joerg@thalheim.io> | 2025-06-22 18:51:23 +0200 |
|---|---|---|
| committer | Jörg Thalheim <joerg@thalheim.io> | 2025-06-24 16:11:11 +0200 |
| commit | a1eacc0a2ce4a4de3c7fd523ddb26c2d95a01fd1 (patch) | |
| tree | b6e6a28c30aa1376a623a00875e0f61280d270f0 /pkgs/development/python-modules/python-sql | |
| parent | 639ad310605baa85093cdb0692759aedaaa02780 (diff) | |
nix_2_28: add patch for GHSA-g948-229j-48j3
This addresses a TOCTOU (Time-of-Check to Time-of-Use) vulnerability in Nix's
build system that could potentially allow privilege escalation or unauthorized
file access during the build process.
The patch includes:
- Safe file operations using file descriptors
- Secure temporary directory handling
- Safe chown operations
- PassAsFile security improvements
- Path validation fixes
Diffstat (limited to 'pkgs/development/python-modules/python-sql')
0 files changed, 0 insertions, 0 deletions
