vulnerability

CentOS Linux: CVE-2020-13529: Moderate: NetworkManager security, bug fix, and enhancement update (CESA-2021:4361)

Severity
3
CVSS
(AV:A/AC:M/Au:N/C:N/I:N/A:P)
Published
May 10, 2021
Added
Nov 10, 2021
Modified
May 25, 2023

Description

An exploitable denial-of-service vulnerability exists in Systemd 245. A specially crafted DHCP FORCERENEW packet can cause a server running the DHCP client to be vulnerable to a DHCP ACK spoofing attack. An attacker can forge a pair of FORCERENEW and DCHP ACK packets to reconfigure the server.

Solutions

centos-upgrade-networkmanagercentos-upgrade-networkmanager-adslcentos-upgrade-networkmanager-adsl-debuginfocentos-upgrade-networkmanager-bluetoothcentos-upgrade-networkmanager-bluetooth-debuginfocentos-upgrade-networkmanager-cloud-setupcentos-upgrade-networkmanager-cloud-setup-debuginfocentos-upgrade-networkmanager-config-connectivity-centoscentos-upgrade-networkmanager-config-servercentos-upgrade-networkmanager-debuginfocentos-upgrade-networkmanager-debugsourcecentos-upgrade-networkmanager-dispatcher-routing-rulescentos-upgrade-networkmanager-libnmcentos-upgrade-networkmanager-libnm-debuginfocentos-upgrade-networkmanager-ovscentos-upgrade-networkmanager-ovs-debuginfocentos-upgrade-networkmanager-pppcentos-upgrade-networkmanager-ppp-debuginfocentos-upgrade-networkmanager-teamcentos-upgrade-networkmanager-team-debuginfocentos-upgrade-networkmanager-tuicentos-upgrade-networkmanager-tui-debuginfocentos-upgrade-networkmanager-wificentos-upgrade-networkmanager-wifi-debuginfocentos-upgrade-networkmanager-wwancentos-upgrade-networkmanager-wwan-debuginfo
Title
NEW

Explore Exposure Command

Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.