https://seclists.org/oss-sec/2026/q2/876: Local privilege escalation in Lix and Nix
Published Jun 10, 2026
·Updated
Affected Software
2 affected components
NixOS Nix>=2.24.4
Lix Lix>=2.93.0
Frequently Asked Questions
1
What is the severity of CVE-2026-44028?
CVE-2026-44028 has a CVSS score of 3.1, indicating a medium severity risk.
2
How do I fix CVE-2026-44028?
To fix CVE-2026-44028, update to the latest version of Lix as provided by the Lix team.
3
What type of vulnerability is CVE-2026-44028?
CVE-2026-44028 is a local privilege escalation vulnerability affecting Lix.
4
Which systems are affected by CVE-2026-44028?
CVE-2026-44028 affects NixOS and Lix systems.
5
What are the potential impacts of CVE-2026-44028?
The potential impacts of CVE-2026-44028 include unauthorized access to system resources or data integrity issues.