CVE-2012-2736

Severity
4.4MEDIUM
EPSS
0.1%
top 76.13%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedDec 26
Latest updateApr 23

Description

In NetworkManager 0.9.2.0, when a new wireless network was created with WPA/WPA2 security in AdHoc mode, it created an open/insecure network.

CVSS vector

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:NExploitability: 1.8 | Impact: 2.5

Affected Packages4 packages

Debiannetwork-manager< 0.9.4.0-1+3

Also affects: Debian Linux 10.0, 8.0, 9.0, Ubuntu Linux 10.04, 11.04, 11.10

Patches

🔴Vulnerability Details

3
GHSA
GHSA-j857-gcqp-8fmp: In NetworkManager 02022-04-23
CVEList
CVE-2012-2736: In NetworkManager 02019-12-26
OSV
CVE-2012-2736: In NetworkManager 02019-12-26

📋Vendor Advisories

4
Ubuntu
network-manager-applet vulnerability2012-06-27
Ubuntu
NetworkManager vulnerability2012-06-27
Red Hat
NetworkManager: creating new WPA-secured wireless network results in insecure network being created instead2012-01-15
Debian
CVE-2012-2736: network-manager - In NetworkManager 0.9.2.0, when a new wireless network was created with WPA/WPA2...2012

💬Community

1
Bugzilla
CVE-2012-2736 NetworkManager: creating new WPA-secured wireless network results in insecure network being created instead2012-01-18
CVE-2012-2736 (MEDIUM CVSS 4.4) | In NetworkManager 0.9.2.0 | cvebase.io