Bug#1066113: guix: CVE-2024-27297

2024-03-24 Thread pelzflorian (Florian Pelz)
On 2024-03-16, Vagrant Cascadian wrote: > For anyone with Guix or Nix installed, if I understand correctly, it > basically allows arbitrarily replacing the source code for anything that > you might build using Guix or Nix. Yes, for multi-user systems and people running untrusted code in “guix

Processed: Re: Bug#1066113: guix: CVE-2024-27297

2024-03-23 Thread Debian Bug Tracking System
Processing control commands: > severity 1066113 serious Bug #1066113 {Done: Vagrant Cascadian } [src:guix] guix: CVE-2024-27297 Severity set to 'serious' from 'important' -- 1066113: https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=1066113 Debian Bug Tracking System Contact