Vulnerabilities (CVE)

Filtered by vendor Gnome Subscribe
Filtered by product Ifcfg-rh Plug-in
Total 1 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2011-3364 1 Gnome 2 Ifcfg-rh Plug-in, Networkmanager 2023-12-10 6.9 MEDIUM N/A
Incomplete blacklist vulnerability in the svEscape function in settings/plugins/ifcfg-rh/shvar.c in the ifcfg-rh plug-in for GNOME NetworkManager 0.9.1, 0.9.0, 0.8.1, and possibly other versions, when PolicyKit is configured to allow users to create new connections, allows local users to execute arbitrary commands via a newline character in the name for a new network connection, which is not properly handled when writing to the ifcfg file.