---
title: "CVE-2011-3364\n    | Ubuntu"
description: Ubuntu is an open source software operating system that runs from the
  desktop, to the cloud, to all your internet connected things.
url: https://ubuntu.com/security/CVE-2011-3364?format=md
keywords: index, follow
---

# CVE-2011-3364

Publication date 4 November 2011

Last updated 24 July 2024

---

Ubuntu priority

**Medium**

[Why this priority?](https://ubuntu.com/security/cves/about#priority )

Toggle side navigation

## Description

Incomplete blacklist vulnerability in the svEscape function in
settings/plugins/ifcfg-rh/shvar.c in the ifcfg-rh plug-in for GNOME
NetworkManager 0.9.1, 0.9.0, 0.8.1, and possibly other versions, when
PolicyKit is configured to allow users to create new connections, allows
local users to execute arbitrary commands via a newline character in the
name for a new network connection, which is not properly handled when
writing to the ifcfg file.

[Read the notes from the security team](https://ubuntu.com/security/CVE-2011-3364?format=md#notes)

## Status

Show unmaintained releases

| Package | Ubuntu Release | Status |
| --- | --- | --- |
| network-manager | 11.10 oneiric | Not affected |
| 11.04 natty | Not affected |
| 10.10 maverick | Not affected |
| 10.04 LTS lucid | Not affected |
| 8.04 LTS hardy | Ignored end of life |

---

* [How can I get the fixes?](https://ubuntu.com/security/cves/about#security)
* [What do statuses mean?](https://ubuntu.com/security/cves/about#statuses)

## Notes

---

### [mdeslaur](https://launchpad.net/~mdeslaur)

This is for the redhat-specific plugin, but we need to check
if the debian plugin has the same flaw, as it may be based on
the same code
We don't look vulnerable to this, and embedded newline chars
seem to be handled correctly.

## References

* [MITRE](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2011-3364)
* [NVD](https://nvd.nist.gov/vuln/detail/CVE-2011-3364)
* [Launchpad](https://launchpad.net/bugs/cve/CVE-2011-3364)
* [Debian](https://security-tracker.debian.org/tracker/CVE-2011-3364)

### Other references

* <https://rhn.redhat.com/errata/RHSA-2011-1338.html>
* <https://www.cve.org/CVERecord?id=CVE-2011-3364>
