Vulnerabilities > Nixos > NIX > 1.11.9

DATE CVE VULNERABILITY TITLE RISK
2024-03-11 CVE-2024-27297 Time-of-check Time-of-use (TOCTOU) Race Condition vulnerability in Nixos NIX
Nix is a package manager for Linux and other Unix systems.
network
high complexity
nixos CWE-367
5.9
2019-10-09 CVE-2019-17365 Incorrect Default Permissions vulnerability in Nixos NIX
Nix through 2.3 allows local users to gain access to an arbitrary user's account because the parent directory of the user-profile directories is world writable.
local
low complexity
nixos CWE-276
7.8