关键漏洞信息 漏洞标题 Privilege dropping to build user broke for macOS 影响版本 Affected versions: 2.30.0 Patched versions: 2.30.1 描述与影响 Impact: Builds with Nix 2.30.0 on macOS were executed with elevated privileges (root), instead of the build users. 修复措施 Patches: The fix (e2ef2cf) was applied to Nix 2.30.1. 绕过方法 Workarounds: None 参考资料 References: - #13281 - #13455 严重性 Severity: High (7.9 / 10) CVSS v3 基本指标 Attack vector: Local Attack complexity: Low Privileges required: Low User interaction: None Scope: Changed Confidentiality: Low Integrity: High Availability: Low CVE ID CVE-2025-53819 弱点 Weaknesses: CWE-271 致谢 Credits: - gustavderdrache: Remediation developer - grahamc: Reporter