Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2026-64846

Опубликовано: 20 авг. 2026
Источник: nvd
CVSS3: 2.8
EPSS Низкий

Описание

Nix is a package manager for Linux and other Unix systems. Prior to 2.35.0, a malicious derivation executed with the recursive-nix experimental feature can exploit a time-of-check/time-of-use race involving final symlink handling in the LocalStore restore path. The race can cause writeFile to follow a substituted final symlink when opening a path with O_TRUNC instead of enforcing FinalSymlink::DontFollow, allowing the Nix process or nix-daemon to create or truncate an empty file outside the build sandbox with the daemon user's permissions. The primitive does not provide arbitrary-content writes and requires winning the race. This issue is fixed in version 2.35.0.

EPSS

Процентиль: 0%
0.00088
Низкий

2.8 Low

CVSS3

Дефекты

CWE-61

Связанные уязвимости

CVSS3: 2.8
ubuntu
12 дней назад

(Nix is a package manager for Linux and other Unix systems. Prior to 2. ...)

CVSS3: 2.8
debian
12 дней назад

Nix is a package manager for Linux and other Unix systems. Prior to 2. ...

EPSS

Процентиль: 0%
0.00088
Низкий

2.8 Low

CVSS3

Дефекты

CWE-61