First published: Fri Feb 27 2009(Updated: )
GNOME NetworkManager before 0.7.0.99 does not properly verify privileges for dbus (1) modify and (2) delete requests, which allows local users to change or remove the network connections of arbitrary users via unspecified vectors related to org.freedesktop.NetworkManagerUserSettings and at_console.
Credit: secalert@redhat.com
Affected Software | Affected Version | How to fix |
---|---|---|
Ubuntu | =8.10 | |
Ubuntu Linux | =8.10 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2009-0578 is classified as a moderate severity vulnerability.
To fix CVE-2009-0578, update GNOME NetworkManager to version 0.7.0.99 or later.
CVE-2009-0578 affects GNOME NetworkManager versions prior to 0.7.0.99 on Ubuntu Linux 8.10.
CVE-2009-0578 allows local users to change or remove the network connections of arbitrary users.
CVE-2009-0578 was reported in January 2009.