CVE-2015-2924
Description
The receive_ra function in rdisc/nm-lndp-rdisc.c in the Neighbor Discovery (ND) protocol implementation in the IPv6 stack in NetworkManager 1.x allows remote attackers to reconfigure a hop-limit setting via a small hop_limit value in a Router Advertisement (RA) message, a similar issue to CVE-2015-2922.
Risk Information
Base Score
7.5
MODERATE
Vector
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
EPSS Score
Exploitation Probability
0.59
Associated Vulnerability
| Vulnerability | OS Platform |
|---|---|
| (RHSA-2015:2315) Moderate: NetworkManager security, bug fix, and enhancement update ModemManager-1.1.0-8.git20130913.el7.i686.rpm | Linux |
| (RHSA-2015:2315) Moderate: NetworkManager security, bug fix, and enhancement update ModemManager-1.1.0-8.git20130913.el7.x86_64.rpm | Linux |
| (RHSA-2015:2315) Moderate: NetworkManager security, bug fix, and enhancement update ModemManager-devel-1.1.0-8.git20130913.el7.i686.rpm | Linux |
| (RHSA-2015:2315) Moderate: NetworkManager security, bug fix, and enhancement update ModemManager-devel-1.1.0-8.git20130913.el7.x86_64.rpm | Linux |
| (RHSA-2015:2315) Moderate: NetworkManager security, bug fix, and enhancement update ModemManager-glib-1.1.0-8.git20130913.el7.i686.rpm | Linux |
| (RHSA-2015:2315) Moderate: NetworkManager security, bug fix, and enhancement update ModemManager-glib-1.1.0-8.git20130913.el7.x86_64.rpm | Linux |
| (RHSA-2015:2315) Moderate: NetworkManager security, bug fix, and enhancement update ModemManager-glib-devel-1.1.0-8.git20130913.el7.i686.rpm | Linux |
| (RHSA-2015:2315) Moderate: NetworkManager security, bug fix, and enhancement update ModemManager-glib-devel-1.1.0-8.git20130913.el7.x86_64.rpm | Linux |
| (RHSA-2015:2315) Moderate: NetworkManager security, bug fix, and enhancement update ModemManager-vala-1.1.0-8.git20130913.el7.x86_64.rpm | Linux |
| (RHSA-2015:2315) Moderate: NetworkManager security, bug fix, and enhancement update NetworkManager-config-routing-rules-1.0.6-27.el7.x86_64.rpm | Linux |
| (RHSA-2015:2315) Moderate: NetworkManager security, bug fix, and enhancement update NetworkManager-devel-1.0.6-27.el7.i686.rpm | Linux |
| (RHSA-2015:2315) Moderate: NetworkManager security, bug fix, and enhancement update NetworkManager-devel-1.0.6-27.el7.x86_64.rpm | Linux |
| Libnl3-cli update (ELSA-2017-2299) libnl3-cli-3.2.28-4.el7.x86_64.rpm | Linux |
| Libnl3 update (ELSA-2017-2299) libnl3-3.2.28-4.el7.i686.rpm | Linux |
| (RHSA-2015:2315)Moderate: security, bug fix, and enhancement update ModemManager-debuginfo-1.1.0-8.git20130913.el7.i686.rpm | Linux |
| (RHSA-2015:2315)Moderate: security, bug fix, and enhancement update ModemManager-debuginfo-1.1.0-8.git20130913.el7.x86_64.rpm | Linux |
| (RHSA-2015:2315)Moderate: security, bug fix, and enhancement update NetworkManager-1.0.6-27.el7.x86_64.rpm | Linux |
| (RHSA-2015:2315)Moderate: security, bug fix, and enhancement update NetworkManager-adsl-1.0.6-27.el7.x86_64.rpm | Linux |
| (RHSA-2015:2315)Moderate: security, bug fix, and enhancement update NetworkManager-bluetooth-1.0.6-27.el7.x86_64.rpm | Linux |
| (RHSA-2015:2315)Moderate: security, bug fix, and enhancement update NetworkManager-config-server-1.0.6-27.el7.x86_64.rpm | Linux |
| (RHSA-2015:2315)Moderate: security, bug fix, and enhancement update NetworkManager-debuginfo-1.0.6-27.el7.i686.rpm | Linux |
| (RHSA-2015:2315)Moderate: security, bug fix, and enhancement update NetworkManager-debuginfo-1.0.6-27.el7.x86_64.rpm | Linux |
| (RHSA-2015:2315)Moderate: security, bug fix, and enhancement update NetworkManager-glib-1.0.6-27.el7.i686.rpm | Linux |
| (RHSA-2015:2315)Moderate: security, bug fix, and enhancement update NetworkManager-glib-1.0.6-27.el7.x86_64.rpm | Linux |
| (RHSA-2015:2315)Moderate: security, bug fix, and enhancement update NetworkManager-glib-devel-1.0.6-27.el7.i686.rpm | Linux |
| (RHSA-2015:2315)Moderate: security, bug fix, and enhancement update NetworkManager-glib-devel-1.0.6-27.el7.x86_64.rpm | Linux |
| (RHSA-2015:2315)Moderate: security, bug fix, and enhancement update NetworkManager-libnm-1.0.6-27.el7.i686.rpm | Linux |
| (RHSA-2015:2315)Moderate: security, bug fix, and enhancement update NetworkManager-libnm-1.0.6-27.el7.x86_64.rpm | Linux |
| (RHSA-2015:2315)Moderate: security, bug fix, and enhancement update NetworkManager-libnm-devel-1.0.6-27.el7.i686.rpm | Linux |
| (RHSA-2015:2315)Moderate: security, bug fix, and enhancement update NetworkManager-libnm-devel-1.0.6-27.el7.x86_64.rpm | Linux |
| (RHSA-2015:2315)Moderate: security, bug fix, and enhancement update NetworkManager-libreswan-1.0.6-3.el7.x86_64.rpm | Linux |
| (RHSA-2015:2315)Moderate: security, bug fix, and enhancement update NetworkManager-libreswan-debuginfo-1.0.6-3.el7.x86_64.rpm | Linux |
| (RHSA-2015:2315)Moderate: security, bug fix, and enhancement update NetworkManager-libreswan-gnome-1.0.6-3.el7.x86_64.rpm | Linux |
| (RHSA-2015:2315)Moderate: security, bug fix, and enhancement update NetworkManager-team-1.0.6-27.el7.x86_64.rpm | Linux |
| (RHSA-2015:2315)Moderate: security, bug fix, and enhancement update NetworkManager-tui-1.0.6-27.el7.x86_64.rpm | Linux |
| (RHSA-2015:2315)Moderate: security, bug fix, and enhancement update NetworkManager-wifi-1.0.6-27.el7.x86_64.rpm | Linux |
| (RHSA-2015:2315)Moderate: security, bug fix, and enhancement update NetworkManager-wwan-1.0.6-27.el7.x86_64.rpm | Linux |
| (RHSA-2015:2315)Moderate: security, bug fix, and enhancement update libnm-gtk-1.0.6-2.el7.i686.rpm | Linux |
| (RHSA-2015:2315)Moderate: security, bug fix, and enhancement update libnm-gtk-1.0.6-2.el7.x86_64.rpm | Linux |
| (RHSA-2015:2315)Moderate: security, bug fix, and enhancement update libnm-gtk-devel-1.0.6-2.el7.i686.rpm | Linux |
| (RHSA-2015:2315)Moderate: security, bug fix, and enhancement update libnm-gtk-devel-1.0.6-2.el7.x86_64.rpm | Linux |
| (RHSA-2015:2315)Moderate: security, bug fix, and enhancement update network-manager-applet-1.0.6-2.el7.x86_64.rpm | Linux |
| (RHSA-2015:2315)Moderate: security, bug fix, and enhancement update network-manager-applet-debuginfo-1.0.6-2.el7.i686.rpm | Linux |
| (RHSA-2015:2315)Moderate: security, bug fix, and enhancement update network-manager-applet-debuginfo-1.0.6-2.el7.x86_64.rpm | Linux |
| (RHSA-2015:2315)Moderate: security, bug fix, and enhancement update nm-connection-editor-1.0.6-2.el7.x86_64.rpm | Linux |
| NetworkManager-libreswan update (ELSA-2017-2299) NetworkManager-libreswan-1.2.4-2.el7.x86_64.rpm | Linux |
| NetworkManager-libreswan-gnome update (ELSA-2017-2299) NetworkManager-libreswan-gnome-1.2.4-2.el7.x86_64.rpm | Linux |
| Libnl3 update (ELSA-2017-2299) libnl3-3.2.28-4.el7.x86_64.rpm | Linux |
| Libnl3-cli update (ELSA-2017-2299) libnl3-cli-3.2.28-4.el7.i686.rpm | Linux |
Patch Details
No records foundReferences
https://nvd.nist.gov/vuln/detail/CVE-2023-1234
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-1234