CVE-2016-0764

Description

Race condition in Network Manager before 1.0.12 as packaged in Red Hat Enterprise Linux Desktop 7, Red Hat Enterprise Linux HPC Node 7, Red Hat Enterprise Linux Server 7, and Red Hat Enterprise Linux Workstation 7 allows local users to obtain sensitive connection information by reading temporary files during ifcfg and keyfile changes.

Risk Information

Base Score
6.2
MODERATE
Vector
CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
EPSS Score
Exploitation Probability
0.035

Associated Vulnerability

VulnerabilityOS Platform
(RHSA-2016:2581) Low: NetworkManager security, bug fix, and enhancement update NetworkManager-config-server-1.4.0-12.el7.x86_64.rpmLinux
(RHSA-2016:2581)Low: security, bug fix, and enhancement update NetworkManager-1.4.0-12.el7.x86_64.rpmLinux
(RHSA-2016:2581)Low: security, bug fix, and enhancement update NetworkManager-adsl-1.4.0-12.el7.x86_64.rpmLinux
(RHSA-2016:2581)Low: security, bug fix, and enhancement update NetworkManager-bluetooth-1.4.0-12.el7.x86_64.rpmLinux
(RHSA-2016:2581)Low: security, bug fix, and enhancement update NetworkManager-debuginfo-1.4.0-12.el7.i686.rpmLinux
(RHSA-2016:2581)Low: security, bug fix, and enhancement update NetworkManager-debuginfo-1.4.0-12.el7.x86_64.rpmLinux
(RHSA-2016:2581)Low: security, bug fix, and enhancement update NetworkManager-dispatcher-routing-rules-1.4.0-12.el7.noarch.rpmLinux
(RHSA-2016:2581)Low: security, bug fix, and enhancement update NetworkManager-glib-1.4.0-12.el7.i686.rpmLinux
(RHSA-2016:2581)Low: security, bug fix, and enhancement update NetworkManager-glib-1.4.0-12.el7.x86_64.rpmLinux
(RHSA-2016:2581)Low: security, bug fix, and enhancement update NetworkManager-glib-devel-1.4.0-12.el7.i686.rpmLinux
(RHSA-2016:2581)Low: security, bug fix, and enhancement update NetworkManager-glib-devel-1.4.0-12.el7.x86_64.rpmLinux
(RHSA-2016:2581)Low: security, bug fix, and enhancement update NetworkManager-libnm-1.4.0-12.el7.i686.rpmLinux
(RHSA-2016:2581)Low: security, bug fix, and enhancement update NetworkManager-libnm-1.4.0-12.el7.x86_64.rpmLinux
(RHSA-2016:2581)Low: security, bug fix, and enhancement update NetworkManager-libnm-devel-1.4.0-12.el7.i686.rpmLinux
(RHSA-2016:2581)Low: security, bug fix, and enhancement update NetworkManager-libnm-devel-1.4.0-12.el7.x86_64.rpmLinux
(RHSA-2016:2581)Low: security, bug fix, and enhancement update NetworkManager-libreswan-1.2.4-1.el7.x86_64.rpmLinux
(RHSA-2016:2581)Low: security, bug fix, and enhancement update NetworkManager-libreswan-debuginfo-1.2.4-1.el7.x86_64.rpmLinux
(RHSA-2016:2581)Low: security, bug fix, and enhancement update NetworkManager-libreswan-gnome-1.2.4-1.el7.x86_64.rpmLinux
(RHSA-2016:2581)Low: security, bug fix, and enhancement update NetworkManager-team-1.4.0-12.el7.x86_64.rpmLinux
(RHSA-2016:2581)Low: security, bug fix, and enhancement update NetworkManager-tui-1.4.0-12.el7.x86_64.rpmLinux
(RHSA-2016:2581)Low: security, bug fix, and enhancement update NetworkManager-wifi-1.4.0-12.el7.x86_64.rpmLinux
(RHSA-2016:2581)Low: security, bug fix, and enhancement update NetworkManager-wwan-1.4.0-12.el7.x86_64.rpmLinux
(RHSA-2016:2581)Low: security, bug fix, and enhancement update libnl3-3.2.28-2.el7.i686.rpmLinux
(RHSA-2016:2581)Low: security, bug fix, and enhancement update libnl3-3.2.28-2.el7.x86_64.rpmLinux
(RHSA-2016:2581)Low: security, bug fix, and enhancement update libnl3-cli-3.2.28-2.el7.i686.rpmLinux
(RHSA-2016:2581)Low: security, bug fix, and enhancement update libnl3-cli-3.2.28-2.el7.x86_64.rpmLinux
(RHSA-2016:2581)Low: security, bug fix, and enhancement update libnl3-debuginfo-3.2.28-2.el7.i686.rpmLinux
(RHSA-2016:2581)Low: security, bug fix, and enhancement update libnl3-debuginfo-3.2.28-2.el7.x86_64.rpmLinux
(RHSA-2016:2581)Low: security, bug fix, and enhancement update libnl3-devel-3.2.28-2.el7.i686.rpmLinux
(RHSA-2016:2581)Low: security, bug fix, and enhancement update libnl3-devel-3.2.28-2.el7.x86_64.rpmLinux
(RHSA-2016:2581)Low: security, bug fix, and enhancement update libnl3-doc-3.2.28-2.el7.x86_64.rpmLinux
(RHSA-2016:2581)Low: security, bug fix, and enhancement update libnm-gtk-1.4.0-2.el7.i686.rpmLinux
(RHSA-2016:2581)Low: security, bug fix, and enhancement update libnm-gtk-1.4.0-2.el7.x86_64.rpmLinux
(RHSA-2016:2581)Low: security, bug fix, and enhancement update libnm-gtk-devel-1.4.0-2.el7.i686.rpmLinux
(RHSA-2016:2581)Low: security, bug fix, and enhancement update libnm-gtk-devel-1.4.0-2.el7.x86_64.rpmLinux
(RHSA-2016:2581)Low: security, bug fix, and enhancement update libnma-1.4.0-2.el7.i686.rpmLinux
(RHSA-2016:2581)Low: security, bug fix, and enhancement update libnma-1.4.0-2.el7.x86_64.rpmLinux
(RHSA-2016:2581)Low: security, bug fix, and enhancement update libnma-devel-1.4.0-2.el7.i686.rpmLinux
(RHSA-2016:2581)Low: security, bug fix, and enhancement update libnma-devel-1.4.0-2.el7.x86_64.rpmLinux
(RHSA-2016:2581)Low: security, bug fix, and enhancement update network-manager-applet-1.4.0-2.el7.x86_64.rpmLinux
(RHSA-2016:2581)Low: security, bug fix, and enhancement update network-manager-applet-debuginfo-1.4.0-2.el7.i686.rpmLinux
(RHSA-2016:2581)Low: security, bug fix, and enhancement update network-manager-applet-debuginfo-1.4.0-2.el7.x86_64.rpmLinux
(RHSA-2016:2581)Low: security, bug fix, and enhancement update nm-connection-editor-1.4.0-2.el7.x86_64.rpmLinux

Patch Details

No records found

References

https://nvd.nist.gov/vuln/detail/CVE-2023-1234
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-1234