summaryrefslogtreecommitdiff
path: root/pkgs/development/python-modules/rangehttpserver
diff options
context:
space:
mode:
authorJörg Thalheim <joerg@thalheim.io>2025-06-22 18:51:23 +0200
committerJörg Thalheim <joerg@thalheim.io>2025-06-24 16:11:11 +0200
commita1eacc0a2ce4a4de3c7fd523ddb26c2d95a01fd1 (patch)
treeb6e6a28c30aa1376a623a00875e0f61280d270f0 /pkgs/development/python-modules/rangehttpserver
parent639ad310605baa85093cdb0692759aedaaa02780 (diff)
nix_2_28: add patch for GHSA-g948-229j-48j3
This addresses a TOCTOU (Time-of-Check to Time-of-Use) vulnerability in Nix's build system that could potentially allow privilege escalation or unauthorized file access during the build process. The patch includes: - Safe file operations using file descriptors - Secure temporary directory handling - Safe chown operations - PassAsFile security improvements - Path validation fixes
Diffstat (limited to 'pkgs/development/python-modules/rangehttpserver')
0 files changed, 0 insertions, 0 deletions