USN-727-2: NetworkManager vulnerability

03 March 2009

NetworkManager vulnerability

Releases

Packages

  • network-manager -

Details

USN-727-1 fixed vulnerabilities in network-manager-applet. This advisory
provides the corresponding updates for NetworkManager.

It was discovered that NetworkManager did not properly enforce permissions when
responding to dbus requests. A local user could perform dbus queries to view
system and user network connection passwords and pre-shared keys.

Update instructions

The problem can be corrected by updating your system to the following package versions:

Ubuntu 8.10
Ubuntu 6.06

After a standard system upgrade you need to reboot your computer to
effect the necessary changes.

References

Related notices

  • USN-727-1: network-manager-gnome, network-manager-applet