← Terug naar overzicht

CVE-2026-19685 is an incomplete fix for CVE-2025-9615 in NetworkManager, where the private_user restriction was not applied to the 802-1x.ca-path and phase2-ca-path directory-valued connection properties. An unprivileged local user can manipulate a private WPA-Enterprise (802.1X) connection profile's CA path to point at an attacker-controlled directory. This bypasses server certificate validation, enabling credential theft through a rogue access point. The vulnerability affects WPA-Enterprise environments relying on 802.1X authentication. A patch has been committed to the NetworkManager GitLab repository and is tracked via Red Hat's security advisory and Bugzilla systems.

Affected products

  • NetworkManager

Related CVE's

  • CVE-2025-9615
  • CVE-2026-19685

Categories

  • Identity & Access
  • Network Infrastructure