CVE-2021-20297: Input Validation
A flaw was found in NetworkManager in versions before 1.30.0. Setting match.path and activating a profile crashes NetworkManager. The highest threat from this vulnerability is to system availability.
Other sources
A flaw was found in NetworkManager. Setting match.path and activating a profiles crashes NetworkManager.
References:
https://bugzilla.redhat.com/showbug.cgi?id=1942741
— Red Hat
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is the vulnerability ID?
The vulnerability ID is CVE-2021-20297.
What is the severity of CVE-2021-20297?
The severity of CVE-2021-20297 is medium.
Which software versions are affected by CVE-2021-20297?
NetworkManager versions before 1.30.0, Redhat Openshift Container Platform 4.0, Redhat Enterprise Linux 8.0, and Fedoraproject Fedora 33 are affected by CVE-2021-20297.
How does CVE-2021-20297 impact system availability?
The highest threat from CVE-2021-20297 is to system availability.
How can I get more information about CVE-2021-20297?
You can refer to the following link for more information: https://bugzilla.redhat.com/show_bug.cgi?id=1943282