CVE-2009-0365
Published: 5 March 2009
nm-applet.conf in GNOME NetworkManager before 0.7.0.99 contains an incorrect deny setting, which allows local users to discover (1) network connection passwords and (2) pre-shared keys via calls to the GetSecrets method in the dbus request handler.
Priority
Status
Package | Release | Status |
---|---|---|
network-manager-applet Launchpad, Ubuntu, Debian |
upstream |
Needs triage
|
dapper |
Does not exist
|
|
gutsy |
Released
(0.6.5-0ubuntu11~7.10.1)
|
|
hardy |
Released
(0.6.6-0ubuntu3.1)
|
|
intrepid |
Released
(0.7~~svn20081020t000444-0ubuntu1.8.10.2)
|
|
network-manager Launchpad, Ubuntu, Debian |
upstream |
Needs triage
|
dapper |
Released
(0.6.2-0ubuntu7.1)
|
|
gutsy |
Not vulnerable
|
|
hardy |
Not vulnerable
|
|
intrepid |
Released
(0.7~~svn20081018t105859-0ubuntu1.8.10.2)
|