3.3
CVSSv2

CVE-2012-2736

Published: 26/12/2019 Updated: 18/08/2020
CVSS v2 Base Score: 3.3 | Impact Score: 4.9 | Exploitability Score: 3.4
CVSS v3 Base Score: 4.4 | Impact Score: 2.5 | Exploitability Score: 1.8
VMScore: 294
Vector: AV:L/AC:M/Au:N/C:P/I:P/A:N

Vulnerability Summary

It exists that certain wireless drivers incorrectly handled the creation of WPA-secured AdHoc connections. This could result in AdHoc wireless connections being created without any security at all. This update removes WPA as a security choice for AdHoc connections in NetworkManager.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

gnome networkmanager 0.9.2.0

debian debian linux 8.0

debian debian linux 9.0

debian debian linux 10.0

canonical ubuntu linux 10.04

canonical ubuntu linux 11.04

canonical ubuntu linux 11.10

opensuse opensuse 12.1

Vendor Advisories

Debian Bug report logs - #655972 Creating a new wireless network with WPA results in an unsecured network instead Package: network-manager; Maintainer for network-manager is Utopia Maintenance Team <pkg-utopia-maintainers@listsaliothdebianorg>; Source for network-manager is src:network-manager (PTS, buildd, popcon) Report ...
network-manager-applet could create insecure AdHoc wireless networks ...
NetworkManager could create insecure AdHoc wireless networks ...