CVSS2
Attack Vector
LOCAL
Attack Complexity
LOW
Authentication
NONE
Confidentiality Impact
NONE
Integrity Impact
PARTIAL
Availability Impact
NONE
AV:L/AC:L/Au:N/C:N/I:P/A:N
EPSS
Percentile
5.1%
GNOME NetworkManager before 0.8.6 does not properly enforce the auth_admin
element in PolicyKit, which allows local users to bypass intended wireless
network sharing restrictions via unspecified vectors.
Author | Note |
---|---|
mdeslaur | lucid needs a backport of the whole policykit handling code, too intrusive, likely to cause regressions. |