CVE Vulnerabilities

CVE-2009-0365

Published: Mar 05, 2009 | Modified: Sep 29, 2017
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
4.6 MEDIUM
AV:L/AC:L/Au:S/C:C/I:N/A:N
RedHat/V2
RedHat/V3
Ubuntu

nm-applet.conf in GNOME NetworkManager before 0.7.0.99 contains an incorrect deny setting, which allows local users to discover (1) network connection passwords and (2) pre-shared keys via calls to the GetSecrets method in the dbus request handler.

Affected Software

Name Vendor Start Version End Version
Ubuntu_linux Ubuntu 7.10 7.10
Ubuntu_linux Ubuntu 8.10 8.10
Ubuntu_linux Ubuntu 8.04 8.04
Ubuntu_linux Ubuntu 6.06 6.06

References