Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

oracle-oval логотип

ELSA-2020-3011

Опубликовано: 24 июл. 2020
Источник: oracle-oval
Платформа: Oracle Linux 8

Описание

ELSA-2020-3011: NetworkManager security and bug fix update (MODERATE)

[1:1.22.8-5]

  • dhcp: fix handling IO error in nettools DHCPv4 client (rh #1843357)
  • ifcfg-rh: handle '802-1x.{,phase2-}ca-path' (rh #1843360, CVE-2020-10754)

Обновленные пакеты

Oracle Linux 8

Oracle Linux aarch64

NetworkManager

1.22.8-5.el8_2

NetworkManager-adsl

1.22.8-5.el8_2

NetworkManager-bluetooth

1.22.8-5.el8_2

NetworkManager-cloud-setup

1.22.8-5.el8_2

NetworkManager-config-connectivity-redhat

1.22.8-5.el8_2

NetworkManager-config-server

1.22.8-5.el8_2

NetworkManager-dispatcher-routing-rules

1.22.8-5.el8_2

NetworkManager-libnm

1.22.8-5.el8_2

NetworkManager-libnm-devel

1.22.8-5.el8_2

NetworkManager-ovs

1.22.8-5.el8_2

NetworkManager-ppp

1.22.8-5.el8_2

NetworkManager-team

1.22.8-5.el8_2

NetworkManager-tui

1.22.8-5.el8_2

NetworkManager-wifi

1.22.8-5.el8_2

NetworkManager-wwan

1.22.8-5.el8_2

Oracle Linux x86_64

NetworkManager

1.22.8-5.el8_2

NetworkManager-adsl

1.22.8-5.el8_2

NetworkManager-bluetooth

1.22.8-5.el8_2

NetworkManager-cloud-setup

1.22.8-5.el8_2

NetworkManager-config-connectivity-redhat

1.22.8-5.el8_2

NetworkManager-config-server

1.22.8-5.el8_2

NetworkManager-dispatcher-routing-rules

1.22.8-5.el8_2

NetworkManager-libnm

1.22.8-5.el8_2

NetworkManager-libnm-devel

1.22.8-5.el8_2

NetworkManager-ovs

1.22.8-5.el8_2

NetworkManager-ppp

1.22.8-5.el8_2

NetworkManager-team

1.22.8-5.el8_2

NetworkManager-tui

1.22.8-5.el8_2

NetworkManager-wifi

1.22.8-5.el8_2

NetworkManager-wwan

1.22.8-5.el8_2

Связанные CVE

Связанные уязвимости

CVSS3: 4.3
ubuntu
больше 5 лет назад

It was found that nmcli, a command line interface to NetworkManager did not honour 802-1x.ca-path and 802-1x.phase2-ca-path settings, when creating a new profile. When a user connects to a network using this profile, the authentication does not happen and the connection is made insecurely.

CVSS3: 4.3
redhat
больше 5 лет назад

It was found that nmcli, a command line interface to NetworkManager did not honour 802-1x.ca-path and 802-1x.phase2-ca-path settings, when creating a new profile. When a user connects to a network using this profile, the authentication does not happen and the connection is made insecurely.

CVSS3: 4.3
nvd
больше 5 лет назад

It was found that nmcli, a command line interface to NetworkManager did not honour 802-1x.ca-path and 802-1x.phase2-ca-path settings, when creating a new profile. When a user connects to a network using this profile, the authentication does not happen and the connection is made insecurely.

CVSS3: 4.3
debian
больше 5 лет назад

It was found that nmcli, a command line interface to NetworkManager di ...

github
больше 3 лет назад

It was found that nmcli, a command line interface to NetworkManager did not honour 802-1x.ca-path and 802-1x.phase2-ca-path settings, when creating a new profile. When a user connects to a network using this profile, the authentication does not happen and the connection is made insecurely.