PT-2025-29514 · Nix · Nix

Grahamc

·

Published

2025-07-14

·

Updated

2025-07-15

·

CVE-2025-53819

CVSS v3.1

7.9

High

VectorAV:L/AC:L/PR:L/UI:N/S:C/C:L/I:H/A:L
Name of the Vulnerable Software and Affected Versions: Nix versions prior to 2.30.1
Description: Nix, a package manager for Linux and other Unix systems, exhibited a privilege escalation issue on macOS. Builds executed with Nix 2.30.0 were performed with elevated privileges (root) instead of the intended build user privileges.
Recommendations: Update to Nix version 2.30.1 or later.

Exploit

Fix

LPE

Weakness Enumeration

Related Identifiers

CVE-2025-53819
GHSA-QC7J-JGF3-QMHG

Affected Products

Nix