Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2025-59378

Опубликовано: 15 сент. 2025
Источник: nvd
CVSS3: 5.7
EPSS Низкий

Описание

In guix-daemon in GNU Guix before 1618ca7, a content-addressed-mirrors file can be written to create a setuid program that allows a regular user to gain the privileges of the build user that runs it (even after the build has ended).

EPSS

Процентиль: 5%
0.00021
Низкий

5.7 Medium

CVSS3

Дефекты

CWE-669

Связанные уязвимости

CVSS3: 5.7
ubuntu
5 месяцев назад

In guix-daemon in GNU Guix before 1618ca7, a content-addressed-mirrors file can be written to create a setuid program that allows a regular user to gain the privileges of the build user that runs it (even after the build has ended).

CVSS3: 5.7
debian
5 месяцев назад

In guix-daemon in GNU Guix before 1618ca7, a content-addressed-mirrors ...

CVSS3: 5.7
github
5 месяцев назад

In guix-daemon in GNU Guix before 1618ca7, a content-addressed-mirrors file can be written to create a setuid program that allows a regular user to gain the privileges of the build user that runs it (even after the build has ended).

EPSS

Процентиль: 5%
0.00021
Низкий

5.7 Medium

CVSS3

Дефекты

CWE-669