CVE-2022-32293
published 2022-08-03CVE-2022-32293: In ConnMan through 1.41, a man-in-the-middle attack against a WISPR HTTP query could be used to trigger a use-after-free in WISPR handling, leading to crashes…
PriorityP342high8.1CVSS 3.1
AVNACHPRNUINSUCHIHAH
EPSS
1.52%
71.6th percentile
In ConnMan through 1.41, a man-in-the-middle attack against a WISPR HTTP query could be used to trigger a use-after-free in WISPR handling, leading to crashes or code execution.
Affected
11 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| connman | connman | >= 0 < 1.36-2.2+deb11u1 | 1.36-2.2+deb11u1 |
| connman | connman | >= 0 < 1.41-2 | 1.41-2 |
| connman | connman | >= 0 < 1.41-2 | 1.41-2 |
| connman | connman | >= 0 < 1.41-2 | 1.41-2 |
| connman | connman | >= 0 < 1.36-2ubuntu0.1 | 1.36-2ubuntu0.1 |
| connman | connman | >= 0 < 1.36-2.3ubuntu0.1 | 1.36-2.3ubuntu0.1 |
| connman | connman | >= 0 < 1.21-1.2+deb8u1ubuntu0.1~esm1 | 1.21-1.2+deb8u1ubuntu0.1~esm1 |
| connman | connman | >= 0 < 1.35-6ubuntu0.1~esm1 | 1.35-6ubuntu0.1~esm1 |
| debian | connman | < connman 1.41-2 (bookworm) | connman 1.41-2 (bookworm) |
| debian | debian_linux | — | — |
| intel | connman | <= 1.41 | — |
CVSS provenance
nvdv3.18.1HIGHCVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H
osv8.8HIGH
vendor_ubuntu8.8HIGH
vendor_debian8.1HIGH
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
OSV
connman vulnerabilities
osv·2023-07-19·CVSS 8.8
CVE-2021-26675 [HIGH] connman vulnerabilities
connman vulnerabilities
It was discovered that ConnMan could be made to write out of bounds. A
remote attacker could possibly use this issue to cause ConnMan to crash,
resulting in a denial of service, or possibly execute arbitrary code. This
issue only affected Ubuntu 18.04 LTS and Ubuntu 20.04 LTS.
(CVE-2021-26675, CVE-2021-33833)
It was discovered that ConnMan could be made to leak sensitive information
via the gdhcp component. A remote attacker could possibly use this issue
to obtain information for further exploitation. This issue only affected
Ubuntu 16.04 LTS, Ubuntu 18.04 LTS, and Ubuntu 20.04 LTS. (CVE-2021-26676)
It was discovered that ConnMan could be made to read out of bounds. A
remote attacker could possibly use this issue to case ConnMan to crash,
resulting in a denial of
GHSA
GHSA-3j9x-j374-vq65: In ConnMan through 1
ghsa_unreviewed·2022-08-04
CVE-2022-32293 [HIGH] CWE-416 GHSA-3j9x-j374-vq65: In ConnMan through 1
In ConnMan through 1.41, a man-in-the-middle attack against a WISPR HTTP query could be used to trigger a use-after-free in WISPR handling, leading to crashes or code execution.
OSV
CVE-2022-32293: In ConnMan through 1
osv·2022-08-03·CVSS 8.1
CVE-2022-32293 [HIGH] CVE-2022-32293: In ConnMan through 1
In ConnMan through 1.41, a man-in-the-middle attack against a WISPR HTTP query could be used to trigger a use-after-free in WISPR handling, leading to crashes or code execution.
Ubuntu
ConnMan vulnerabilities
vendor_ubuntu·2023-07-19·CVSS 8.8
CVE-2021-26676 [HIGH] ConnMan vulnerabilities
Title: ConnMan vulnerabilities
Summary: Several security issues were fixed in ConnMan.
It was discovered that ConnMan could be made to write out of bounds. A
remote attacker could possibly use this issue to cause ConnMan to crash,
resulting in a denial of service, or possibly execute arbitrary code. This
issue only affected Ubuntu 18.04 LTS and Ubuntu 20.04 LTS.
(CVE-2021-26675, CVE-2021-33833)
It was discovered that ConnMan could be made to leak sensitive information
via the gdhcp component. A remote attacker could possibly use this issue
to obtain information for further exploitation. This issue only affected
Ubuntu 16.04 LTS, Ubuntu 18.04 LTS, and Ubuntu 20.04 LTS. (CVE-2021-26676)
It was discovered that ConnMan could be made to read out of bounds. A
remote attacker could possibly u
Debian
CVE-2022-32293: connman - In ConnMan through 1.41, a man-in-the-middle attack against a WISPR HTTP query c...
vendor_debian·2022·CVSS 8.1
CVE-2022-32293 [HIGH] CVE-2022-32293: connman - In ConnMan through 1.41, a man-in-the-middle attack against a WISPR HTTP query c...
In ConnMan through 1.41, a man-in-the-middle attack against a WISPR HTTP query could be used to trigger a use-after-free in WISPR handling, leading to crashes or code execution.
Scope: local
bookworm: resolved (fixed in 1.41-2)
bullseye: resolved (fixed in 1.36-2.2+deb11u1)
forky: resolved (fixed in 1.41-2)
sid: resolved (fixed in 1.41-2)
trixie: resolved (fixed in 1.41-2)
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
https://bugzilla.suse.com/show_bug.cgi?id=1200190https://lore.kernel.org/connman/20220801080043.4861-1-wagi%40monom.org/https://lore.kernel.org/connman/20220801080043.4861-3-wagi%40monom.org/https://security.gentoo.org/glsa/202310-21https://www.debian.org/security/2022/dsa-5231https://bugzilla.suse.com/show_bug.cgi?id=1200190https://lore.kernel.org/connman/20220801080043.4861-1-wagi%40monom.org/https://lore.kernel.org/connman/20220801080043.4861-3-wagi%40monom.org/https://security.gentoo.org/glsa/202310-21https://www.debian.org/security/2022/dsa-5231
2022-08-03
Published