NetworkManager (NM) 0.7.2 does not ensure that the configured Certification Authority (CA) certificate file for a (1) WPA Enterprise or (2) 802.1x network remains present upon a connection attempt, which might allow remote attackers to obtain sensitive information or cause a denial of service (connectivity disruption) by spoofing the identity of a wireless network.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Networkmanager | Gnome | 0.7.2 (including) | 0.7.2 (including) |
Red Hat Enterprise Linux 5 | RedHat | NetworkManager-1:0.7.0-9.el5_4 | * |
Network-manager | Ubuntu | dapper | * |
Network-manager | Ubuntu | upstream | * |
Network-manager-applet | Ubuntu | intrepid | * |
Network-manager-applet | Ubuntu | jaunty | * |
Network-manager-applet | Ubuntu | upstream | * |