Nix security advisory: Privilege escalation via symlink following during FOD output registration

41 points by juliethefoxcoon


accelbread

This has nothing to do with Rust. Upstream Nix and Lix used different mechanisms to address an earlier issue, and Nix's had another bug. Rust does not magically solve symlink traversal issues or abstract socket leaks.

obsoleszenz

Good moment to switch to lix ;)