REDHAT-BUG-2484613: Medium severity NetworkManager NetworkManager vulnerability
A flaw was found in NetworkManager. This local privilege escalation vulnerability exists in NetworkManager's dhclient backend when processing malformed Manufacturer Usage Description (MUD) URLs. A local user can exploit this flaw to escalate privileges by triggering a script via a crafted MUD URL, provided an administrator has explicitly configured NetworkManager to use dhclient. This issue does not affect default configurations of NetworkManager.
Affected Software
Event History
Frequently Asked Questions
What is the severity of REDHAT-BUG-2484613?
The severity of REDHAT-BUG-2484613 is medium, with a risk score of 4.
How can I fix REDHAT-BUG-2484613?
To fix REDHAT-BUG-2484613, ensure you update NetworkManager to the latest version that addresses this vulnerability.
What type of vulnerability is REDHAT-BUG-2484613?
REDHAT-BUG-2484613 is a local privilege escalation vulnerability.
Who can exploit REDHAT-BUG-2484613?
A local user can exploit REDHAT-BUG-2484613 by triggering a script through a crafted Manufacturer Usage Description (MUD) URL.
In which component does REDHAT-BUG-2484613 exist?
REDHAT-BUG-2484613 exists in the dhclient backend of NetworkManager.