CVE-2005-2410: High severity Gnome NetworkManager vulnerability
Published Aug 1, 2005
·Updated
Format string vulnerability in the nminfohandler function in Network Manager may allow remote attackers to execute arbitrary code via format string specifiers in a Wireless Access Point identifier, which is not properly handled in a syslog call.
Affected Software
1 affected component
Gnome NetworkManager<0.4.1
Event History
Aug 1, 2005
CVE Published
04:00 AM
CVE Published
via MITRE·08:00 AM
Data Sourced
via MITRE·08:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2005-2410?
CVE-2005-2410 is classified as a high severity vulnerability due to the potential for remote code execution.
2
How do I fix CVE-2005-2410?
To fix CVE-2005-2410, update Network Manager to version 0.4.1 or later.
3
What type of vulnerability is CVE-2005-2410?
CVE-2005-2410 is a format string vulnerability that can lead to arbitrary code execution.
4
Which software is affected by CVE-2005-2410?
CVE-2005-2410 affects versions of Network Manager prior to 0.4.1.
5
Can CVE-2005-2410 be exploited remotely?
Yes, CVE-2005-2410 can be exploited remotely if an attacker can send crafted Wireless Access Point identifiers.