CVE-2011-2176

Severity
2.1LOW
EPSS
0.1%
top 83.15%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedSep 2
Latest updateMay 17

Description

GNOME NetworkManager before 0.8.6 does not properly enforce the auth_admin element in PolicyKit, which allows local users to bypass intended wireless network sharing restrictions via unspecified vectors.

CVSS vector

AV:L/AC:L/C:N/I:P/A:NExploitability: 3.9 | Impact: 2.9

Affected Packages2 packages

NVDgnome/networkmanager0.8.4+15
Debiannetwork-manager< 0.9.0-1+3

🔴Vulnerability Details

3
GHSA
GHSA-56gg-mvcc-wv2j: GNOME NetworkManager before 02022-05-17
OSV
CVE-2011-2176: GNOME NetworkManager before 02011-09-02
CVEList
CVE-2011-2176: GNOME NetworkManager before 02011-09-02

📋Vendor Advisories

2
Red Hat
NetworkManager: Did not honour PolicyKit auth_admin action element by creation of Ad-Hoc wireless networks2011-06-08
Debian
CVE-2011-2176: network-manager - GNOME NetworkManager before 0.8.6 does not properly enforce the auth_admin eleme...2011

💬Community

2
Bugzilla
CVE-2011-2176 NetworkManager: Did not honour PolicyKit auth_admin action element by creation of Ad-Hoc wireless networks [fedora-all]2011-06-23
Bugzilla
CVE-2011-2176 NetworkManager: Did not honour PolicyKit auth_admin action element by creation of Ad-Hoc wireless networks2011-06-01
CVE-2011-2176 (LOW CVSS 2.1) | GNOME NetworkManager before 0.8.6 d | cvebase.io