VDB

DEBIAN-CVE-2009-0365

DEBIAN-CVE-2009-0365 PUBLISHED

nm-applet.conf in GNOME NetworkManager before 0.7.0.99 contains an incorrect deny setting, which allows local users to discover (1) network connection passwords and (2) pre-shared keys via calls to the GetSecrets method in the dbus request handler.

Affected Products

VendorProductVersions
Debian:12network-manager0, 0, 0
Debian:13network-manager0, 0, 0
Debian:14network-manager-applet0, 0, 0
Debian:12network-manager-applet0, 0, 0
Debian:13network-manager-applet0, 0, 0
Debian:14network-manager0, 0, 0
Debian:11network-manager0, 0, 0
Debian:11network-manager-applet0, 0, 0

Timeline

  • Mar 5, 2009 CVE Published
  • Apr 28, 2026 CVE Updated
Open in Interactive Console →
$ Console Community · 100/wk Open console ›