Bugzilla – Bug 1184433
VUL-0: CVE-2021-20297: NetworkManager: fix crash in nm_wildcard_match_check()
Last modified: 2024-05-23 15:32:19 UTC
CVE-2021-20297 fix crash in nm_wildcard_match_check() Upstream commit: https://gitlab.freedesktop.org/NetworkManager/NetworkManager/-/commit/420784e342da4883f6debdfe10cde68507b10d27 References: http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2021-20297 https://access.redhat.com/security/cve/CVE-2021-20297
The code in question was introduced via commit 824ad6275df1f00daa57a002c46a87257ef218a2 and is only present since version 1.27.1. git describe --contains 824ad6275d 1.27.1-dev^2~74^2 SUSE:SLE-15-SP2 NetworkManager-1.22.10 openSUSE:Leap:15.2 NetworkManager-1.22.10 Only Factory is affected: openSUSE:Factory NetworkManager-1.30.0
NetworkManager in openSUSE:Factory has been updated to version 1.30.4 which contains the fix for this. Reassigning to security team.
All done, closing.