CVE-2020-10754

Description

It was found that nmcli, a command line interface to NetworkManager did not honour 802-1x.ca-path and 802-1x.phase2-ca-path settings, when creating a new profile. When a user connects to a network using this profile, the authentication does not happen and the connection is made insecurely.

Risk Information

Base Score
4.3
MODERATE
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N
EPSS Score
Exploitation Probability
0.252

Associated Vulnerability

VulnerabilityOS Platform
Multiple Vulnerabilities are affected in IBM Security Guardium 10.5Windows
Multiple Vulnerabilities are affected in IBM Security Guardium 10.6Windows
Multiple Vulnerabilities are affected in IBM Security Guardium 11.1Windows
Multiple Vulnerabilities are affected in IBM Security Guardium 11.2Windows
Multiple Vulnerabilities are affected in IBM Security Guardium 11.3Windows
Multiple Vulnerabilities are affected in IBM Security Guardium 11.0Windows
(RHSA-2020:3011) NetworkManager security and bug fix update NetworkManager-1.22.8-5.el8_2.x86_64.rpmLinux
(RHSA-2020:3011) NetworkManager security and bug fix update NetworkManager-adsl-1.22.8-5.el8_2.x86_64.rpmLinux
(RHSA-2020:3011) NetworkManager security and bug fix update NetworkManager-bluetooth-1.22.8-5.el8_2.x86_64.rpmLinux
(RHSA-2020:3011) NetworkManager security and bug fix update NetworkManager-cloud-setup-1.22.8-5.el8_2.x86_64.rpmLinux
(RHSA-2020:3011) NetworkManager security and bug fix update NetworkManager-config-connectivity-redhat-1.22.8-5.el8_2.noarch.rpmLinux
(RHSA-2020:3011) NetworkManager security and bug fix update NetworkManager-config-server-1.22.8-5.el8_2.noarch.rpmLinux
(RHSA-2020:3011) NetworkManager security and bug fix update NetworkManager-debugsource-1.22.8-5.el8_2.i686.rpmLinux
(RHSA-2020:3011) NetworkManager security and bug fix update NetworkManager-debugsource-1.22.8-5.el8_2.x86_64.rpmLinux
(RHSA-2020:3011) NetworkManager security and bug fix update NetworkManager-dispatcher-routing-rules-1.22.8-5.el8_2.noarch.rpmLinux
(RHSA-2020:3011) NetworkManager security and bug fix update NetworkManager-libnm-1.22.8-5.el8_2.i686.rpmLinux
(RHSA-2020:3011) NetworkManager security and bug fix update NetworkManager-libnm-1.22.8-5.el8_2.x86_64.rpmLinux
(RHSA-2020:3011) NetworkManager security and bug fix update NetworkManager-ovs-1.22.8-5.el8_2.x86_64.rpmLinux
(RHSA-2020:3011) NetworkManager security and bug fix update NetworkManager-ppp-1.22.8-5.el8_2.x86_64.rpmLinux
(RHSA-2020:3011) NetworkManager security and bug fix update NetworkManager-team-1.22.8-5.el8_2.x86_64.rpmLinux
(RHSA-2020:3011) NetworkManager security and bug fix update NetworkManager-tui-1.22.8-5.el8_2.x86_64.rpmLinux
(RHSA-2020:3011) NetworkManager security and bug fix update NetworkManager-wifi-1.22.8-5.el8_2.x86_64.rpmLinux
(RHSA-2020:3011) NetworkManager security and bug fix update NetworkManager-wwan-1.22.8-5.el8_2.x86_64.rpmLinux
(RHSA-2020:4003) NetworkManager security and bug fix update NetworkManager-1.18.8-1.el7.x86_64.rpmLinux
(RHSA-2020:4003) NetworkManager security and bug fix update NetworkManager-adsl-1.18.8-1.el7.x86_64.rpmLinux
(RHSA-2020:4003) NetworkManager security and bug fix update NetworkManager-bluetooth-1.18.8-1.el7.x86_64.rpmLinux
(RHSA-2020:4003) NetworkManager security and bug fix update NetworkManager-config-server-1.18.8-1.el7.noarch.rpmLinux
(RHSA-2020:4003) NetworkManager security and bug fix update NetworkManager-dispatcher-routing-rules-1.18.8-1.el7.noarch.rpmLinux
(RHSA-2020:4003) NetworkManager security and bug fix update NetworkManager-glib-1.18.8-1.el7.i686.rpmLinux
(RHSA-2020:4003) NetworkManager security and bug fix update NetworkManager-glib-1.18.8-1.el7.x86_64.rpmLinux
(RHSA-2020:4003) NetworkManager security and bug fix update NetworkManager-glib-devel-1.18.8-1.el7.i686.rpmLinux
(RHSA-2020:4003) NetworkManager security and bug fix update NetworkManager-glib-devel-1.18.8-1.el7.x86_64.rpmLinux
(RHSA-2020:4003) NetworkManager security and bug fix update NetworkManager-libnm-1.18.8-1.el7.i686.rpmLinux
(RHSA-2020:4003) NetworkManager security and bug fix update NetworkManager-libnm-1.18.8-1.el7.x86_64.rpmLinux
(RHSA-2020:4003) NetworkManager security and bug fix update NetworkManager-libnm-devel-1.18.8-1.el7.i686.rpmLinux
(RHSA-2020:4003) NetworkManager security and bug fix update NetworkManager-libnm-devel-1.18.8-1.el7.x86_64.rpmLinux
(RHSA-2020:4003) NetworkManager security and bug fix update NetworkManager-ovs-1.18.8-1.el7.x86_64.rpmLinux
(RHSA-2020:4003) NetworkManager security and bug fix update NetworkManager-ppp-1.18.8-1.el7.x86_64.rpmLinux
(RHSA-2020:4003) NetworkManager security and bug fix update NetworkManager-team-1.18.8-1.el7.x86_64.rpmLinux
(RHSA-2020:4003) NetworkManager security and bug fix update NetworkManager-tui-1.18.8-1.el7.x86_64.rpmLinux
(RHSA-2020:4003) NetworkManager security and bug fix update NetworkManager-wifi-1.18.8-1.el7.x86_64.rpmLinux
(RHSA-2020:4003) NetworkManager security and bug fix update NetworkManager-wwan-1.18.8-1.el7.x86_64.rpmLinux
(CESA-2020:3011) NetworkManager security and bug fix update NetworkManager-1.22.8-5.el8_2.x86_64.rpmLinux
(CESA-2020:3011) NetworkManager security and bug fix update NetworkManager-adsl-1.22.8-5.el8_2.x86_64.rpmLinux
(CESA-2020:3011) NetworkManager security and bug fix update NetworkManager-bluetooth-1.22.8-5.el8_2.x86_64.rpmLinux
(CESA-2020:3011) NetworkManager security and bug fix update NetworkManager-cloud-setup-1.22.8-5.el8_2.x86_64.rpmLinux
(CESA-2020:3011) NetworkManager security and bug fix update NetworkManager-config-connectivity-redhat-1.22.8-5.el8_2.noarch.rpmLinux
(CESA-2020:3011) NetworkManager security and bug fix update NetworkManager-config-server-1.22.8-5.el8_2.noarch.rpmLinux
(CESA-2020:3011) NetworkManager security and bug fix update NetworkManager-dispatcher-routing-rules-1.22.8-5.el8_2.noarch.rpmLinux
(CESA-2020:3011) NetworkManager security and bug fix update NetworkManager-libnm-1.22.8-5.el8_2.i686.rpmLinux
(CESA-2020:3011) NetworkManager security and bug fix update NetworkManager-libnm-1.22.8-5.el8_2.x86_64.rpmLinux
(CESA-2020:3011) NetworkManager security and bug fix update NetworkManager-ovs-1.22.8-5.el8_2.x86_64.rpmLinux
(CESA-2020:3011) NetworkManager security and bug fix update NetworkManager-ppp-1.22.8-5.el8_2.x86_64.rpmLinux
(CESA-2020:3011) NetworkManager security and bug fix update NetworkManager-team-1.22.8-5.el8_2.x86_64.rpmLinux
(CESA-2020:3011) NetworkManager security and bug fix update NetworkManager-tui-1.22.8-5.el8_2.x86_64.rpmLinux
(CESA-2020:3011) NetworkManager security and bug fix update NetworkManager-wifi-1.22.8-5.el8_2.x86_64.rpmLinux
(CESA-2020:3011) NetworkManager security and bug fix update NetworkManager-wwan-1.22.8-5.el8_2.x86_64.rpmLinux
(CESA-2020:4003) NetworkManager security and bug fix update NetworkManager-1.18.8-1.el7.x86_64.rpmLinux
(CESA-2020:4003) NetworkManager security and bug fix update NetworkManager-adsl-1.18.8-1.el7.x86_64.rpmLinux
(CESA-2020:4003) NetworkManager security and bug fix update NetworkManager-bluetooth-1.18.8-1.el7.x86_64.rpmLinux
(CESA-2020:4003) NetworkManager security and bug fix update NetworkManager-config-server-1.18.8-1.el7.noarch.rpmLinux
(CESA-2020:4003) NetworkManager security and bug fix update NetworkManager-dispatcher-routing-rules-1.18.8-1.el7.noarch.rpmLinux
(CESA-2020:4003) NetworkManager security and bug fix update NetworkManager-glib-1.18.8-1.el7.x86_64.rpmLinux
(CESA-2020:4003) NetworkManager security and bug fix update NetworkManager-glib-devel-1.18.8-1.el7.x86_64.rpmLinux
(CESA-2020:4003) NetworkManager security and bug fix update NetworkManager-libnm-1.18.8-1.el7.x86_64.rpmLinux
(CESA-2020:4003) NetworkManager security and bug fix update NetworkManager-libnm-devel-1.18.8-1.el7.x86_64.rpmLinux
(CESA-2020:4003) NetworkManager security and bug fix update NetworkManager-ovs-1.18.8-1.el7.x86_64.rpmLinux
(CESA-2020:4003) NetworkManager security and bug fix update NetworkManager-ppp-1.18.8-1.el7.x86_64.rpmLinux
(CESA-2020:4003) NetworkManager security and bug fix update NetworkManager-team-1.18.8-1.el7.x86_64.rpmLinux
(CESA-2020:4003) NetworkManager security and bug fix update NetworkManager-tui-1.18.8-1.el7.x86_64.rpmLinux
(CESA-2020:4003) NetworkManager security and bug fix update NetworkManager-wifi-1.18.8-1.el7.x86_64.rpmLinux
(CESA-2020:4003) NetworkManager security and bug fix update NetworkManager-wwan-1.18.8-1.el7.x86_64.rpmLinux
(RHSA-2020:4003)Moderate: security and bug fix update NetworkManager-debuginfo-1.18.8-1.el7.i686.rpmLinux
(RHSA-2020:4003)Moderate: security and bug fix update NetworkManager-debuginfo-1.18.8-1.el7.x86_64.rpmLinux
NetworkManager update (ELSA-2020-3011) NetworkManager-1.22.8-5.el8_2.x86_64.rpmLinux
NetworkManager-adsl update (ELSA-2020-3011) NetworkManager-adsl-1.22.8-5.el8_2.x86_64.rpmLinux
NetworkManager-bluetooth update (ELSA-2020-3011) NetworkManager-bluetooth-1.22.8-5.el8_2.x86_64.rpmLinux
NetworkManager-cloud-setup update (ELSA-2020-3011) NetworkManager-cloud-setup-1.22.8-5.el8_2.x86_64.rpmLinux
NetworkManager-config-connectivity-redhat update (ELSA-2020-3011) NetworkManager-config-connectivity-redhat-1.22.8-5.el8_2.noarch.rpmLinux
NetworkManager-config-server update (ELSA-2020-3011) NetworkManager-config-server-1.22.8-5.el8_2.noarch.rpmLinux
NetworkManager-dispatcher-routing-rules update (ELSA-2020-3011) NetworkManager-dispatcher-routing-rules-1.22.8-5.el8_2.noarch.rpmLinux
NetworkManager-libnm update (ELSA-2020-3011) NetworkManager-libnm-1.22.8-5.el8_2.i686.rpmLinux
NetworkManager-libnm update (ELSA-2020-3011) NetworkManager-libnm-1.22.8-5.el8_2.x86_64.rpmLinux
NetworkManager-ovs update (ELSA-2020-3011) NetworkManager-ovs-1.22.8-5.el8_2.x86_64.rpmLinux
NetworkManager-ppp update (ELSA-2020-3011) NetworkManager-ppp-1.22.8-5.el8_2.x86_64.rpmLinux
NetworkManager-team update (ELSA-2020-3011) NetworkManager-team-1.22.8-5.el8_2.x86_64.rpmLinux
NetworkManager-tui update (ELSA-2020-3011) NetworkManager-tui-1.22.8-5.el8_2.x86_64.rpmLinux
NetworkManager-wifi update (ELSA-2020-3011) NetworkManager-wifi-1.22.8-5.el8_2.x86_64.rpmLinux
NetworkManager-wwan update (ELSA-2020-3011) NetworkManager-wwan-1.22.8-5.el8_2.x86_64.rpmLinux
NetworkManager Security Update (ALAS-2020-1498) NetworkManager-1.18.8-1.amzn2.0.1.x86_64.rpmLinux
NetworkManager Security Update (ALAS-2020-1498) NetworkManager-ppp-1.18.8-1.amzn2.0.1.x86_64.rpmLinux
NetworkManager Security Update (ALAS-2020-1498) NetworkManager-tui-1.18.8-1.amzn2.0.1.x86_64.rpmLinux
NetworkManager Security Update (ALAS-2020-1498) NetworkManager-adsl-1.18.8-1.amzn2.0.1.x86_64.rpmLinux
NetworkManager Security Update (ALAS-2020-1498) NetworkManager-glib-1.18.8-1.amzn2.0.1.i686.rpmLinux
NetworkManager Security Update (ALAS-2020-1498) NetworkManager-glib-1.18.8-1.amzn2.0.1.x86_64.rpmLinux
NetworkManager Security Update (ALAS-2020-1498) NetworkManager-team-1.18.8-1.amzn2.0.1.x86_64.rpmLinux
NetworkManager Security Update (ALAS-2020-1498) NetworkManager-wifi-1.18.8-1.amzn2.0.1.x86_64.rpmLinux
NetworkManager Security Update (ALAS-2020-1498) NetworkManager-wwan-1.18.8-1.amzn2.0.1.x86_64.rpmLinux
NetworkManager Security Update (ALAS-2020-1498) NetworkManager-libnm-1.18.8-1.amzn2.0.1.i686.rpmLinux
NetworkManager Security Update (ALAS-2020-1498) NetworkManager-libnm-1.18.8-1.amzn2.0.1.x86_64.rpmLinux
NetworkManager Security Update (ALAS-2020-1498) NetworkManager-bluetooth-1.18.8-1.amzn2.0.1.x86_64.rpmLinux
NetworkManager Security Update (ALAS-2020-1498) NetworkManager-glib-devel-1.18.8-1.amzn2.0.1.x86_64.rpmLinux
NetworkManager Security Update (ALAS-2020-1498) NetworkManager-libnm-devel-1.18.8-1.amzn2.0.1.x86_64.rpmLinux
NetworkManager Security Update (ALAS-2020-1498) NetworkManager-config-server-1.18.8-1.amzn2.0.1.noarch.rpmLinux
NetworkManager Security Update (ALAS-2020-1498) NetworkManager-dispatcher-routing-rules-1.18.8-1.amzn2.0.1.noarch.rpmLinux
Missing Authentication for Critical Function Vulnerability (CVE-2020-10754)NCM

Patch Details

No records found

References

https://nvd.nist.gov/vuln/detail/CVE-2023-1234
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-1234