Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

suse-cvrf логотип

SUSE-SU-2026:4144-1

Опубликовано: 14 сент. 2026
Источник: suse-cvrf

Описание

Security update for NetworkManager

This update for NetworkManager fixes the following issues:

  • CVE-2026-10805: Local privilege escalation via malformed MUD URLs in dhclient backend (bsc#1267696).
  • CVE-2026-19685: missing user ownership checks for 802.1X directory properties can allow WPA-Enterprise server certificate validation bypass (bsc#1276764).

Список пакетов

SUSE Linux Enterprise High Performance Computing 15 SP4-ESPOS
NetworkManager-1.32.12-150400.3.6.1
libnm0-1.32.12-150400.3.6.1
typelib-1_0-NM-1_0-1.32.12-150400.3.6.1
SUSE Linux Enterprise High Performance Computing 15 SP4-LTSS
NetworkManager-1.32.12-150400.3.6.1
libnm0-1.32.12-150400.3.6.1
typelib-1_0-NM-1_0-1.32.12-150400.3.6.1
SUSE Linux Enterprise Server 15 SP4-LTSS
NetworkManager-1.32.12-150400.3.6.1
libnm0-1.32.12-150400.3.6.1
typelib-1_0-NM-1_0-1.32.12-150400.3.6.1
SUSE Linux Enterprise Server for SAP Applications 15 SP4
NetworkManager-1.32.12-150400.3.6.1
libnm0-1.32.12-150400.3.6.1
typelib-1_0-NM-1_0-1.32.12-150400.3.6.1

Описание

A flaw was found in NetworkManager. This local privilege escalation vulnerability exists in NetworkManager's dhclient backend when processing malformed Manufacturer Usage Description (MUD) URLs. A local user can exploit this flaw to escalate privileges by triggering a script via a crafted MUD URL, provided an administrator has explicitly configured NetworkManager to use dhclient. This issue does not affect default configurations of NetworkManager.


Затронутые продукты
SUSE Linux Enterprise High Performance Computing 15 SP4-ESPOS:NetworkManager-1.32.12-150400.3.6.1
SUSE Linux Enterprise High Performance Computing 15 SP4-ESPOS:libnm0-1.32.12-150400.3.6.1
SUSE Linux Enterprise High Performance Computing 15 SP4-ESPOS:typelib-1_0-NM-1_0-1.32.12-150400.3.6.1
SUSE Linux Enterprise High Performance Computing 15 SP4-LTSS:NetworkManager-1.32.12-150400.3.6.1

Ссылки

Описание

NetworkManager did not apply the private_user restriction to the 802-1x.ca-path and phase2-ca-path directory-valued connection properties. This incomplete fix for CVE-2025-9615 allows an unprivileged local user to point a private WPA-Enterprise (802.1X) connection profile's CA path at an attacker-controlled directory, bypassing server certificate validation and enabling credential theft via a rogue access point.


Затронутые продукты
SUSE Linux Enterprise High Performance Computing 15 SP4-ESPOS:NetworkManager-1.32.12-150400.3.6.1
SUSE Linux Enterprise High Performance Computing 15 SP4-ESPOS:libnm0-1.32.12-150400.3.6.1
SUSE Linux Enterprise High Performance Computing 15 SP4-ESPOS:typelib-1_0-NM-1_0-1.32.12-150400.3.6.1
SUSE Linux Enterprise High Performance Computing 15 SP4-LTSS:NetworkManager-1.32.12-150400.3.6.1

Ссылки