# CVE-2025-46416

## Summary

- **CVE ID:** CVE-2025-46416
- **Severity:** LOW
- **CVSS Score:** 2.9 (CVSS:3.1/AV:L/AC:H/PR:N/UI:N/S:U/C:N/I:L/A:N)
- **CWE:** CWE-282
- **Published:** Jun 27, 2025
- **Last Modified:** Mar 13, 2026

## Description

The Nix, Lix, and Guix package managers allow a bypass of build isolation in which a user can elevate their privileges to the build user account (e.g., nixbld or guixbuild). This affects Nix through 2.24.15, 2.26.4, 2.28.4, and 2.29.1; Lix through 2.91.2, 2.92.2, and 2.93.1; and Guix before 1.4.0-38.0e79d5b.

## Affected Products

- NixOS — Nix (0)
- NixOS — Nix (2.25.0)
- NixOS — Nix (2.27.0)
- NixOS — Nix (2.29.0)

## References

- [CNA](https://discourse.nixos.org/t/security-advisory-privilege-escalations-in-nix-lix-and-guix/66017)
- [CNA](https://lix.systems/blog/2025-06-24-lix-cves/)
- [CNA](https://guix.gnu.org/en/blog/2025/privilege-escalation-vulnerabilities-2025/)
- [CNA](https://labs.snyk.io)
- [CNA](https://security.snyk.io/vuln/?search=CVE-2025-46416)
- [CNA](https://security-tracker.debian.org/tracker/CVE-2025-46416)

## Exploitation Prediction (EPSS)

- **EPSS Score:** 0.16%
- **EPSS Percentile:** 5.8

---
_Exported from OnDuty AI Vulnerability Intelligence on 2026-09-11._