Lucene search

K
debiancveDebian Security Bug TrackerDEBIANCVE:CVE-2009-0365
HistoryMar 05, 2009 - 2:30 a.m.

CVE-2009-0365

2009-03-0502:30:00
Debian Security Bug Tracker
security-tracker.debian.org
13

CVSS2

4.6

Attack Vector

LOCAL

Attack Complexity

LOW

Authentication

SINGLE

Confidentiality Impact

COMPLETE

Integrity Impact

NONE

Availability Impact

NONE

AV:L/AC:L/Au:S/C:C/I:N/A:N

EPSS

0

Percentile

10.1%

nm-applet.conf in GNOME NetworkManager before 0.7.0.99 contains an incorrect deny setting, which allows local users to discover (1) network connection passwords and (2) pre-shared keys via calls to the GetSecrets method in the dbus request handler.

CVSS2

4.6

Attack Vector

LOCAL

Attack Complexity

LOW

Authentication

SINGLE

Confidentiality Impact

COMPLETE

Integrity Impact

NONE

Availability Impact

NONE

AV:L/AC:L/Au:S/C:C/I:N/A:N

EPSS

0

Percentile

10.1%