NetworkManager 0.9.x does not pin a certificate's subject to an ESSID when 802.11X authentication is used.
The product does not validate, or incorrectly validates, a certificate.
Link | Tags |
---|---|
https://bugzilla.gnome.org/show_bug.cgi?id=341323 | issue tracking patch vendor advisory exploit |
http://www.openwall.com/lists/oss-security/2010/04/22/2 | third party advisory mailing list |
https://bugzilla.novell.com/show_bug.cgi?id=574266 | issue tracking exploit patch |
https://lwn.net/Articles/468868/ | exploit third party advisory patch |