PolicyKit Enforcement Flaw in GNOME NetworkManager by Red Hat
CVE-2011-2176

Currently unrated

Key Information:

Vendor

Gnome

Vendor
CVE Published:
2 September 2011

What is CVE-2011-2176?

The GNOME NetworkManager prior to version 0.8.6 is susceptible to a PolicyKit enforcement flaw, which allows local users to circumvent restrictions on wireless network sharing. This vulnerability arises from insufficient validation of the auth_admin element, permitting unauthorized elevation of user privileges under certain unspecified conditions, potentially leading to unauthorized access to sensitive network configurations and user data.

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.