RHSA-2026:58572MediumCVSS 6.7

Red Hat Security Advisory: NetworkManager security update

Published
August 24, 2026
Last Modified
August 31, 2026

🔗 CVE IDs covered (1)

📋 Description

CVE-2026-10805 — NetworkManager: NetworkManager: Local privilege escalation via malformed MUD URLs in dhclient backend

🎯 Affected products200

  • Red Hat Enterprise Linux AppStream (v. 9)
  • Red Hat Enterprise Linux BaseOS (v. 9)
  • Red Hat Enterprise Linux CodeReady Linux Builder (v. 9)
  • NetworkManager-1:1.54.3-5.el9_8.aarch64 as a component of Red Hat Enterprise Linux BaseOS (v. 9)
  • NetworkManager-1:1.54.3-5.el9_8.ppc64le as a component of Red Hat Enterprise Linux BaseOS (v. 9)
  • NetworkManager-1:1.54.3-5.el9_8.s390x as a component of Red Hat Enterprise Linux BaseOS (v. 9)
  • NetworkManager-1:1.54.3-5.el9_8.src as a component of Red Hat Enterprise Linux BaseOS (v. 9)
  • NetworkManager-1:1.54.3-5.el9_8.x86_64 as a component of Red Hat Enterprise Linux BaseOS (v. 9)
  • NetworkManager-adsl-1:1.54.3-5.el9_8.aarch64 as a component of Red Hat Enterprise Linux BaseOS (v. 9)
  • NetworkManager-adsl-1:1.54.3-5.el9_8.ppc64le as a component of Red Hat Enterprise Linux BaseOS (v. 9)
  • NetworkManager-adsl-1:1.54.3-5.el9_8.s390x as a component of Red Hat Enterprise Linux BaseOS (v. 9)
  • NetworkManager-adsl-1:1.54.3-5.el9_8.x86_64 as a component of Red Hat Enterprise Linux BaseOS (v. 9)
  • NetworkManager-adsl-debuginfo-1:1.54.3-5.el9_8.aarch64 as a component of Red Hat Enterprise Linux AppStream (v. 9)
  • NetworkManager-adsl-debuginfo-1:1.54.3-5.el9_8.aarch64 as a component of Red Hat Enterprise Linux BaseOS (v. 9)
  • NetworkManager-adsl-debuginfo-1:1.54.3-5.el9_8.aarch64 as a component of Red Hat Enterprise Linux CodeReady Linux Builder (v. 9)
  • NetworkManager-adsl-debuginfo-1:1.54.3-5.el9_8.i686 as a component of Red Hat Enterprise Linux BaseOS (v. 9)
  • NetworkManager-adsl-debuginfo-1:1.54.3-5.el9_8.i686 as a component of Red Hat Enterprise Linux CodeReady Linux Builder (v. 9)
  • NetworkManager-adsl-debuginfo-1:1.54.3-5.el9_8.ppc64le as a component of Red Hat Enterprise Linux AppStream (v. 9)
  • NetworkManager-adsl-debuginfo-1:1.54.3-5.el9_8.ppc64le as a component of Red Hat Enterprise Linux BaseOS (v. 9)
  • NetworkManager-adsl-debuginfo-1:1.54.3-5.el9_8.ppc64le as a component of Red Hat Enterprise Linux CodeReady Linux Builder (v. 9)
  • NetworkManager-adsl-debuginfo-1:1.54.3-5.el9_8.s390x as a component of Red Hat Enterprise Linux AppStream (v. 9)
  • NetworkManager-adsl-debuginfo-1:1.54.3-5.el9_8.s390x as a component of Red Hat Enterprise Linux BaseOS (v. 9)
  • NetworkManager-adsl-debuginfo-1:1.54.3-5.el9_8.s390x as a component of Red Hat Enterprise Linux CodeReady Linux Builder (v. 9)
  • NetworkManager-adsl-debuginfo-1:1.54.3-5.el9_8.x86_64 as a component of Red Hat Enterprise Linux AppStream (v. 9)
  • NetworkManager-adsl-debuginfo-1:1.54.3-5.el9_8.x86_64 as a component of Red Hat Enterprise Linux BaseOS (v. 9)
  • NetworkManager-adsl-debuginfo-1:1.54.3-5.el9_8.x86_64 as a component of Red Hat Enterprise Linux CodeReady Linux Builder (v. 9)
  • NetworkManager-bluetooth-1:1.54.3-5.el9_8.aarch64 as a component of Red Hat Enterprise Linux BaseOS (v. 9)
  • NetworkManager-bluetooth-1:1.54.3-5.el9_8.ppc64le as a component of Red Hat Enterprise Linux BaseOS (v. 9)
  • NetworkManager-bluetooth-1:1.54.3-5.el9_8.s390x as a component of Red Hat Enterprise Linux BaseOS (v. 9)
  • NetworkManager-bluetooth-1:1.54.3-5.el9_8.x86_64 as a component of Red Hat Enterprise Linux BaseOS (v. 9)
  • +170 more not shown

✅ Remediation

For details on how to apply this update, which includes the changes described in this advisory, refer to: https://access.redhat.com/articles/11258 Workaround: To prevent exploitation, ensure NetworkManager is not configured to use the `dhclient` backend. The default configuration on Red Hat Enterprise Linux does not enable `dhclient`. If a custom configuration file, such as `/etc/NetworkManager/conf.d/00-dhcp.conf`, contains `[main] dhcp=dhclient`, remove or comment out this line. After modifying the configuration, restart the NetworkManager service: `sudo systemctl restart NetworkManager` Warning: Restarting the NetworkManager service will temporarily disrupt network connectivity.

🔗 References (4)