2.1
CVSSv2

CVE-2011-2176

Published: 02/09/2011 Updated: 19/01/2012
CVSS v2 Base Score: 2.1 | Impact Score: 2.9 | Exploitability Score: 3.9
VMScore: 187
Vector: AV:L/AC:L/Au:N/C:N/I:P/A:N

Vulnerability Summary

GNOME NetworkManager prior to 0.8.6 does not properly enforce the auth_admin element in PolicyKit, which allows local users to bypass intended wireless network sharing restrictions via unspecified vectors.

Vulnerable Product Search on Vulmon Subscribe to Product

gnome networkmanager

gnome networkmanager 0.6.2

gnome networkmanager 0.6.1

gnome networkmanager 0.2.0

gnome networkmanager 0.7.2

gnome networkmanager 0.7.1

gnome networkmanager 0.5.0

gnome networkmanager 0.4.1

gnome networkmanager 0.8.2

gnome networkmanager 0.8.1

gnome networkmanager 0.6.0

gnome networkmanager 0.5.1

gnome networkmanager 0.7.0

gnome networkmanager 0.6.6

gnome networkmanager 0.3.1

gnome networkmanager 0.3.0

Vendor Advisories

Debian Bug report logs - #631520 CVE-2011-2176: NetworkManager do not honour PolicyKit auth_admin action element by creation of Ad-Hoc wireless networks Package: network-manager; Maintainer for network-manager is Utopia Maintenance Team <pkg-utopia-maintainers@listsaliothdebianorg>; Source for network-manager is src:network-manag ...