Multiple vulnerabilities in GNU Guix and guix-daemon exposed systems to arbitrary file writes and possible privilege escalation through unsafe handling of substitutes and archive restoration. The most severe issue affected the restore-file logic used by guix substitute, where a path traversal flaw could let a malicious substitute server or a man-in-the-middle attacker write files outside the intended directory; on systems where guix-daemon runs with elevated privileges, that could lead to root compromise. Reports also cited insufficient validation of narinfo metadata and unsafe processing of attacker-controlled URLs, including file:// URIs.
The weaknesses extended beyond guix substitute to other Guix operations, including guix offload, guix archive --extract, guix challenge, guix pull, and guix time-machine, creating several paths for arbitrary overwrite or local privilege escalation depending on deployment. Updated Guix releases were issued to fix the flaws, and users were urged to upgrade both Guix and guix-daemon; where immediate patching was not possible, a temporary mitigation was to disable substitutes with:
guix --no-substitutes

Get the actors, campaigns, and ATT&CK mapping behind it.
3 events from the most recent confirmed update back to the earliest known activity.
A Guix pull request merged fixes four vulnerabilities: three in `guix substitute` and one in channel authentication affecting `guix pull` and `guix time-machine`. The issues included unsafe archive extraction before verification, attacker-influenced `file://` URI handling, narinfo/store-path validation failures, and a cache-file path flaw that could enable attacker-chosen writes; users were urged to update immediately.
The disclosed flaws were addressed in updated Guix releases, with guidance for users to upgrade guix and guix-daemon. As a temporary mitigation, users were also advised to disable substitutes with the "--no-substitutes" option where appropriate.
Multiple security flaws in GNU Guix and guix-daemon were disclosed affecting substitute handling and archive restoration. The most serious issue involved path traversal in restore-file logic that could enable arbitrary file writes and possible privilege escalation, especially when guix-daemon runs with elevated privileges.
Vulnerabilities, threat actors, malware, products, organizations, and breaches Mallory has linked to this story.
Get the adversaries, campaigns, and ATT&CK mapping behind this technique, with detections ready to deploy.
4 references tracked. Mallory keeps watching after this page renders.
codeberg.org
Open sourceopennet.me
Open sourceopennet.ru
Open sourceguix.gnu.org
Open sourceMap indicators from this story to your assets and identify affected systems in minutes.
Every observed campaign, victim, and pivot linked to actors named in this story.
Malware, exploits, and IOCs connected to the activity described here.
YARA, Sigma, and Snort rules deployed to your SIEM as soon as they’re published.
Get matching new stories delivered to your team as they break — not the next morning.
Ask questions about this story and take action on the answers.