Búsqueda de    
Vulnerabilidad   
    Buscar 324607 Descripciones CVE y
145615 Descripciones de Pruebas,
accesos 10,000+ referencias cruzadas.
Pruebas   CVE   Todos  

ID de Prueba:1.3.6.1.4.1.25623.1.0.69805
Categoría:Red Hat Local Security Checks
Título:RedHat Security Advisory RHSA-2011:0930
Resumen:NOSUMMARY
Descripción:Description:
The remote host is missing updates announced in
advisory RHSA-2011:0930.

NetworkManager is a network link manager that attempts to keep a wired or
wireless network connection active at all times.

It was found that NetworkManager did not properly enforce PolicyKit
settings controlling the permissions to configure wireless network sharing.
A local, unprivileged user could use this flaw to bypass intended PolicyKit
restrictions, allowing them to enable wireless network sharing.
(CVE-2011-2176)

Users of NetworkManager should upgrade to these updated packages, which
contain a backported patch to correct this issue. Running instances of
NetworkManager must be restarted (service NetworkManager restart) for
this update to take effect.

Solution:
Please note that this update is available via
Red Hat Network. To use Red Hat Network, launch the Red
Hat Update Agent with the following command: up2date

http://rhn.redhat.com/errata/RHSA-2011-0930.html

Risk factor : Medium

CVSS Score:
2.1

Referencia Cruzada: Common Vulnerability Exposure (CVE) ID: CVE-2011-2176
1025711
http://securitytracker.com/id?1025711
44858
http://secunia.com/advisories/44858
FEDORA-2011-8612
http://lists.fedoraproject.org/pipermail/package-announce/2011-August/063665.html
MDVSA-2011:171
http://www.mandriva.com/security/advisories?name=MDVSA-2011:171
RHSA-2011:0930
http://www.redhat.com/support/errata/RHSA-2011-0930.html
http://cgit.freedesktop.org/NetworkManager/NetworkManager/plain/NEWS?h=NM_0_8
https://bugzilla.redhat.com/show_bug.cgi?id=709662
CopyrightCopyright (c) 2011 E-Soft Inc. http://www.securityspace.com

Esta es sólo una de 145615 pruebas de vulnerabilidad en nuestra serie de pruebas. Encuentre más sobre cómo ejecutar una auditoría de seguridad completa.

Para ejecutar una prueba gratuita de esta vulnerabilidad contra su sistema, regístrese ahora.




© 1998-2025 E-Soft Inc. Todos los derechos reservados.