Your submission was sent successfully! Close

You have successfully unsubscribed! Close

Thank you for signing up for our newsletter!Close

CVE-2009-0365

Published: 5 March 2009

nm-applet.conf in GNOME NetworkManager before 0.7.0.99 contains an incorrect deny setting, which allows local users to discover (1) network connection passwords and (2) pre-shared keys via calls to the GetSecrets method in the dbus request handler.

Priority

Medium

Status

Package Release Status
network-manager-applet
Launchpad, Ubuntu, Debian
upstream Needs triage

dapper Does not exist

gutsy
Released (0.6.5-0ubuntu11~7.10.1)
hardy
Released (0.6.6-0ubuntu3.1)
intrepid
Released (0.7~~svn20081020t000444-0ubuntu1.8.10.2)
network-manager
Launchpad, Ubuntu, Debian
upstream Needs triage

dapper
Released (0.6.2-0ubuntu7.1)
gutsy Not vulnerable

hardy Not vulnerable

intrepid
Released (0.7~~svn20081018t105859-0ubuntu1.8.10.2)