USN-883-1 -- network-manager-applet vulnerabilitiesID: oval:org.secpod.oval:def:700176 | Date: (C)2011-01-28 (M)2021-06-02 |
Class: PATCH | Family: unix |
It was discovered that NetworkManager did not ensure that the Certification Authority certificate file remained present when using WPA Enterprise or 802.1x networks. A remote attacker could use this flaw to spoof the identity of a wireless network and view sensitive information. It was discovered that the connection editor GUI would incorrectly export objects over D-Bus. A local user could read D-Bus signals to view other users" network connection passwords and pre-shared keys
Platform: |
Ubuntu 8.10 |
Ubuntu 9.04 |
Product: |
network-manager-applet |