Vulnerability Description
An issue was discovered in Nix before 2.34.7. Writing to arbitrary files can occur via "nix-prefetch-url --unpack" or "nix store prefetch-file --unpack" directory traversal. The fixed versions are 2.34.7, 2.33.6, 2.32.8, 2.31.5, 2.30.5, 2.29.4, and 2.28.7 (introduced in 2.24.7);
CVSS Score
MEDIUM
Related Weaknesses (CWE)
References
- https://discourse.nixos.org/t/security-advisory-local-privilege-escalation-in-li
- https://github.com/NixOS/nix/security/advisories/GHSA-gr92-w2r5-qw5p
- https://www.openwall.com/lists/oss-security/2026/05/04/33
FAQ
What is CVE-2026-44029?
CVE-2026-44029 is a vulnerability with a CVSS score of 5.3 (MEDIUM). An issue was discovered in Nix before 2.34.7. Writing to arbitrary files can occur via "nix-prefetch-url --unpack" or "nix store prefetch-file --unpack" directory traversal. The fixed versions are 2.3...
How severe is CVE-2026-44029?
CVE-2026-44029 has been rated MEDIUM with a CVSS base score of 5.3/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2026-44029?
Check the references section above for vendor advisories and patch information. Review vendor security bulletins for remediation guidance.