Oval Definition:oval:com.redhat.rhsa:def:20162581
Revision Date:2016-11-03Version:647
Title:RHSA-2016:2581: NetworkManager security, bug fix, and enhancement update (Low)
Description:NetworkManager is a system network service that manages network devices and connections, attempting to keep active network connectivity when available. Its capabilities include managing Ethernet, wireless, mobile broadband (WWAN), and PPPoE devices, as well as providing VPN integration with a variety of different VPN services.

  • The following packages have been upgraded to a newer upstream version: NetworkManager (1.4.0), NetworkManager-libreswan (1.2.4), network-manager-applet (1.4.0), libnl3 (3.2.28). (BZ#1264552, BZ#1296058, BZ#1032717, BZ#1271581)

    Security Fix(es):

  • A race condition vulnerability was discovered in NetworkManager. Temporary files were created insecurely when saving or updating connection settings, which could allow local users to read connection secrets such as VPN passwords or WiFi keys. (CVE-2016-0764)

    Additional Changes:

    For detailed information on changes in this release, see the Red Hat Enterprise Linux 7.3 Release Notes linked from the References section.
  • Family:unixClass:patch
    Status:Reference(s):CVE-2016-0764
    RHSA-2016:2581
    RHSA-2016:2581-01
    RHSA-2016:2581-02
    RHSA-2016:2581-02
    Platform(s):Red Hat Enterprise Linux 7
    Red Hat Enterprise Linux 7 (please do not use for >= RHEL-7.5)
    Product(s):
    Definition Synopsis
  • Red Hat Enterprise Linux must be installed
  • OR Package Information
  • Red Hat Enterprise Linux 7 is installed
  • AND
  • NetworkManager-libreswan is earlier than 0:1.2.4-1.el7
  • AND NetworkManager-libreswan is signed with Red Hat redhatrelease2 key
  • NetworkManager-libreswan-gnome is earlier than 0:1.2.4-1.el7
  • AND NetworkManager-libreswan-gnome is signed with Red Hat redhatrelease2 key
  • libnl3 is earlier than 0:3.2.28-2.el7
  • AND libnl3 is signed with Red Hat redhatrelease2 key
  • libnl3-cli is earlier than 0:3.2.28-2.el7
  • AND libnl3-cli is signed with Red Hat redhatrelease2 key
  • libnl3-devel is earlier than 0:3.2.28-2.el7
  • AND libnl3-devel is signed with Red Hat redhatrelease2 key
  • libnl3-doc is earlier than 0:3.2.28-2.el7
  • AND libnl3-doc is signed with Red Hat redhatrelease2 key
  • libnm-gtk is earlier than 0:1.4.0-2.el7
  • AND libnm-gtk is signed with Red Hat redhatrelease2 key
  • libnm-gtk-devel is earlier than 0:1.4.0-2.el7
  • AND libnm-gtk-devel is signed with Red Hat redhatrelease2 key
  • libnma is earlier than 0:1.4.0-2.el7
  • AND libnma is signed with Red Hat redhatrelease2 key
  • libnma-devel is earlier than 0:1.4.0-2.el7
  • AND libnma-devel is signed with Red Hat redhatrelease2 key
  • network-manager-applet is earlier than 0:1.4.0-2.el7
  • AND network-manager-applet is signed with Red Hat redhatrelease2 key
  • nm-connection-editor is earlier than 0:1.4.0-2.el7
  • AND nm-connection-editor is signed with Red Hat redhatrelease2 key
  • NetworkManager is earlier than 1:1.4.0-12.el7
  • AND NetworkManager is signed with Red Hat redhatrelease2 key
  • NetworkManager-adsl is earlier than 1:1.4.0-12.el7
  • AND NetworkManager-adsl is signed with Red Hat redhatrelease2 key
  • NetworkManager-bluetooth is earlier than 1:1.4.0-12.el7
  • AND NetworkManager-bluetooth is signed with Red Hat redhatrelease2 key
  • NetworkManager-config-server is earlier than 1:1.4.0-12.el7
  • AND NetworkManager-config-server is signed with Red Hat redhatrelease2 key
  • NetworkManager-dispatcher-routing-rules is earlier than 1:1.4.0-12.el7
  • AND NetworkManager-dispatcher-routing-rules is signed with Red Hat redhatrelease2 key
  • NetworkManager-glib is earlier than 1:1.4.0-12.el7
  • AND NetworkManager-glib is signed with Red Hat redhatrelease2 key
  • NetworkManager-glib-devel is earlier than 1:1.4.0-12.el7
  • AND NetworkManager-glib-devel is signed with Red Hat redhatrelease2 key
  • NetworkManager-libnm is earlier than 1:1.4.0-12.el7
  • AND NetworkManager-libnm is signed with Red Hat redhatrelease2 key
  • NetworkManager-libnm-devel is earlier than 1:1.4.0-12.el7
  • AND NetworkManager-libnm-devel is signed with Red Hat redhatrelease2 key
  • NetworkManager-team is earlier than 1:1.4.0-12.el7
  • AND NetworkManager-team is signed with Red Hat redhatrelease2 key
  • NetworkManager-tui is earlier than 1:1.4.0-12.el7
  • AND NetworkManager-tui is signed with Red Hat redhatrelease2 key
  • NetworkManager-wifi is earlier than 1:1.4.0-12.el7
  • AND NetworkManager-wifi is signed with Red Hat redhatrelease2 key
  • NetworkManager-wwan is earlier than 1:1.4.0-12.el7
  • AND NetworkManager-wwan is signed with Red Hat redhatrelease2 key
  • Definition Synopsis
  • Release Information
  • Red Hat Enterprise Linux 7 Client is installed
  • OR Red Hat Enterprise Linux 7 Server is installed
  • OR Red Hat Enterprise Linux 7 Workstation is installed
  • OR Red Hat Enterprise Linux 7 ComputeNode is installed
  • AND Package Information
  • NetworkManager-libreswan is earlier than 0:1.2.4-1.el7
  • AND NetworkManager-libreswan is signed with Red Hat redhatrelease2 key
  • OR
  • NetworkManager-libreswan-gnome is earlier than 0:1.2.4-1.el7
  • AND NetworkManager-libreswan-gnome is signed with Red Hat redhatrelease2 key
  • OR
  • libnl3-devel is earlier than 0:3.2.28-2.el7
  • AND libnl3-devel is signed with Red Hat redhatrelease2 key
  • OR
  • libnl3-doc is earlier than 0:3.2.28-2.el7
  • AND libnl3-doc is signed with Red Hat redhatrelease2 key
  • OR
  • libnl3 is earlier than 0:3.2.28-2.el7
  • AND libnl3 is signed with Red Hat redhatrelease2 key
  • OR
  • libnl3-cli is earlier than 0:3.2.28-2.el7
  • AND libnl3-cli is signed with Red Hat redhatrelease2 key
  • OR
  • libnma-devel is earlier than 0:1.4.0-2.el7
  • AND libnma-devel is signed with Red Hat redhatrelease2 key
  • OR
  • network-manager-applet is earlier than 0:1.4.0-2.el7
  • AND network-manager-applet is signed with Red Hat redhatrelease2 key
  • OR
  • libnm-gtk-devel is earlier than 0:1.4.0-2.el7
  • AND libnm-gtk-devel is signed with Red Hat redhatrelease2 key
  • OR
  • nm-connection-editor is earlier than 0:1.4.0-2.el7
  • AND nm-connection-editor is signed with Red Hat redhatrelease2 key
  • OR
  • libnm-gtk is earlier than 0:1.4.0-2.el7
  • AND libnm-gtk is signed with Red Hat redhatrelease2 key
  • OR
  • libnma is earlier than 0:1.4.0-2.el7
  • AND libnma is signed with Red Hat redhatrelease2 key
  • OR
  • NetworkManager-bluetooth is earlier than 1:1.4.0-12.el7
  • AND NetworkManager-bluetooth is signed with Red Hat redhatrelease2 key
  • OR
  • NetworkManager-libnm is earlier than 1:1.4.0-12.el7
  • AND NetworkManager-libnm is signed with Red Hat redhatrelease2 key
  • OR
  • NetworkManager-wifi is earlier than 1:1.4.0-12.el7
  • AND NetworkManager-wifi is signed with Red Hat redhatrelease2 key
  • OR
  • NetworkManager-adsl is earlier than 1:1.4.0-12.el7
  • AND NetworkManager-adsl is signed with Red Hat redhatrelease2 key
  • OR
  • NetworkManager-glib is earlier than 1:1.4.0-12.el7
  • AND NetworkManager-glib is signed with Red Hat redhatrelease2 key
  • OR
  • NetworkManager is earlier than 1:1.4.0-12.el7
  • AND NetworkManager is signed with Red Hat redhatrelease2 key
  • OR
  • NetworkManager-config-server is earlier than 1:1.4.0-12.el7
  • AND NetworkManager-config-server is signed with Red Hat redhatrelease2 key
  • OR
  • NetworkManager-team is earlier than 1:1.4.0-12.el7
  • AND NetworkManager-team is signed with Red Hat redhatrelease2 key
  • OR
  • NetworkManager-tui is earlier than 1:1.4.0-12.el7
  • AND NetworkManager-tui is signed with Red Hat redhatrelease2 key
  • OR
  • NetworkManager-wwan is earlier than 1:1.4.0-12.el7
  • AND NetworkManager-wwan is signed with Red Hat redhatrelease2 key
  • OR
  • NetworkManager-dispatcher-routing-rules is earlier than 1:1.4.0-12.el7
  • AND NetworkManager-dispatcher-routing-rules is signed with Red Hat redhatrelease2 key
  • OR
  • NetworkManager-libnm-devel is earlier than 1:1.4.0-12.el7
  • AND NetworkManager-libnm-devel is signed with Red Hat redhatrelease2 key
  • OR
  • NetworkManager-glib-devel is earlier than 1:1.4.0-12.el7
  • AND NetworkManager-glib-devel is signed with Red Hat redhatrelease2 key
  • BACK