在 NetworkManager-vpnc 中发现了一个漏洞。该漏洞允许本地未特权用户将权限提升为 root 权限。通过在 VPN 用户名字段中注入一个换行符,攻击者可以操纵 vpnc 配置,从而在激活恶意 VPN 连接时以 root 权限执行任意程序。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| GNOME | NetworkManager-vpnc | 0 ~ * | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-91837 | 7.8 HIGH | Networkmanager-iodine: networkmanager-iodine: local privilege escalation to root via names |
| CVE-2026-91841 | 7.8 HIGH | Networkmanager-vpnc: networkmanager-vpnc: incomplete fix for cve-2018-10900 allows root pr |
| CVE-2026-91838 | 7.8 HIGH | Networkmanager-sstp: networkmanager-sstp: local privilege escalation to root via shell inj |
| CVE-2026-91839 | 7.8 HIGH | Networkmanager-fortisslvpn: networkmanager-fortisslvpn: local privilege escalation to root |
| CVE-2026-97222 | 5.5 MEDIUM | Gnumeric: gnumeric: heap use-after-free when opening a malformed workbook |
No comments yet