CVE-2016-0764

Race condition in Network Manager before 1.0.12 as packaged in Red Hat Enterprise Linux Desktop 7, Red Hat Enterprise Linux HPC Node 7, Red Hat Enterprise Linux Server 7, and Red Hat Enterprise Linux Workstation 7 allows local users to obtain sensitive connection information by reading temporary files during ifcfg and keyfile changes.
Configurations

Configuration 1 (hide)

AND
cpe:2.3:a:redhat:networkmanager:*:*:*:*:*:*:*:*
OR cpe:2.3:o:redhat:enterprise_linux_desktop:7.0:*:*:*:*:*:*:*
cpe:2.3:o:redhat:enterprise_linux_hpc_node:7.0:*:*:*:*:*:*:*
cpe:2.3:o:redhat:enterprise_linux_server:7.0:*:*:*:*:*:*:*
cpe:2.3:o:redhat:enterprise_linux_workstation:7.0:*:*:*:*:*:*:*

History

21 Nov 2024, 02:42

Type Values Removed Values Added
References () http://rhn.redhat.com/errata/RHSA-2016-2581.html - Third Party Advisory () http://rhn.redhat.com/errata/RHSA-2016-2581.html - Third Party Advisory
References () https://bugzilla.redhat.com/show_bug.cgi?id=1324025 - Issue Tracking () https://bugzilla.redhat.com/show_bug.cgi?id=1324025 - Issue Tracking

Information

Published : 2017-07-17 13:18

Updated : 2024-11-21 02:42


NVD link : CVE-2016-0764

Mitre link : CVE-2016-0764

CVE.ORG link : CVE-2016-0764


JSON object : View

Products Affected

redhat

  • enterprise_linux_server
  • enterprise_linux_desktop
  • enterprise_linux_hpc_node
  • networkmanager
  • enterprise_linux_workstation
CWE
CWE-362

Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition')