Excessive privileges In NetworkManager
Description
A flaw was found in NetworkManager. This local privilege escalation vulnerability exists in NetworkManager's dhclient backend when processing malformed Manufacturer Usage Description (MUD) URLs. A local user can exploit this flaw to escalate privileges by triggering a script via a crafted MUD URL, provided an administrator has explicitly configured NetworkManager to use dhclient. This issue does not affect default configurations of NetworkManager.
Mitigation
Update Impact
Minimal update. May introduce new vulnerabilities or breaking changes.
Ecosystem | Package |
|---|---|
rpm rhel10 | |
rpm rhel6 | |
rpm rhel7 | |
rpm rhel8 | |
rpm rhel9 | |
rpm rhel10 | |
rpm rhel7 | |
rpm rhel8 | |
rpm rhel9 | |
rpm rhel6 |
1-10 of 14
10
Aliases
1. 2. 3.