Multiple critical security flaws in GNU Guix could allow malicious substitute servers or network attackers to achieve remote privilege escalation, corrupt the Guix store, and potentially expose sensitive local files. The vulnerabilities affect the guix substitute helper used by guix-daemon, with separate issues also found in guix pull and guix...