Red Hat Security Advisory: NetworkManager security update
🔗 CVE IDs covered (1)
📋 Description
CVE-2026-10805 — NetworkManager: NetworkManager: Local privilege escalation via malformed MUD URLs in dhclient backend
🎯 Affected products160
- Red Hat Enterprise Linux AppStream E4S (v.9.2)
- Red Hat Enterprise Linux BaseOS E4S (v.9.2)
- NetworkManager-1:1.42.2-32.el9_2.1.aarch64 as a component of Red Hat Enterprise Linux BaseOS E4S (v.9.2)
- NetworkManager-1:1.42.2-32.el9_2.1.ppc64le as a component of Red Hat Enterprise Linux BaseOS E4S (v.9.2)
- NetworkManager-1:1.42.2-32.el9_2.1.s390x as a component of Red Hat Enterprise Linux BaseOS E4S (v.9.2)
- NetworkManager-1:1.42.2-32.el9_2.1.src as a component of Red Hat Enterprise Linux BaseOS E4S (v.9.2)
- NetworkManager-1:1.42.2-32.el9_2.1.x86_64 as a component of Red Hat Enterprise Linux BaseOS E4S (v.9.2)
- NetworkManager-adsl-1:1.42.2-32.el9_2.1.aarch64 as a component of Red Hat Enterprise Linux BaseOS E4S (v.9.2)
- NetworkManager-adsl-1:1.42.2-32.el9_2.1.ppc64le as a component of Red Hat Enterprise Linux BaseOS E4S (v.9.2)
- NetworkManager-adsl-1:1.42.2-32.el9_2.1.s390x as a component of Red Hat Enterprise Linux BaseOS E4S (v.9.2)
- NetworkManager-adsl-1:1.42.2-32.el9_2.1.x86_64 as a component of Red Hat Enterprise Linux BaseOS E4S (v.9.2)
- NetworkManager-adsl-debuginfo-1:1.42.2-32.el9_2.1.aarch64 as a component of Red Hat Enterprise Linux AppStream E4S (v.9.2)
- NetworkManager-adsl-debuginfo-1:1.42.2-32.el9_2.1.aarch64 as a component of Red Hat Enterprise Linux BaseOS E4S (v.9.2)
- NetworkManager-adsl-debuginfo-1:1.42.2-32.el9_2.1.i686 as a component of Red Hat Enterprise Linux BaseOS E4S (v.9.2)
- NetworkManager-adsl-debuginfo-1:1.42.2-32.el9_2.1.ppc64le as a component of Red Hat Enterprise Linux AppStream E4S (v.9.2)
- NetworkManager-adsl-debuginfo-1:1.42.2-32.el9_2.1.ppc64le as a component of Red Hat Enterprise Linux BaseOS E4S (v.9.2)
- NetworkManager-adsl-debuginfo-1:1.42.2-32.el9_2.1.s390x as a component of Red Hat Enterprise Linux AppStream E4S (v.9.2)
- NetworkManager-adsl-debuginfo-1:1.42.2-32.el9_2.1.s390x as a component of Red Hat Enterprise Linux BaseOS E4S (v.9.2)
- NetworkManager-adsl-debuginfo-1:1.42.2-32.el9_2.1.x86_64 as a component of Red Hat Enterprise Linux AppStream E4S (v.9.2)
- NetworkManager-adsl-debuginfo-1:1.42.2-32.el9_2.1.x86_64 as a component of Red Hat Enterprise Linux BaseOS E4S (v.9.2)
- NetworkManager-bluetooth-1:1.42.2-32.el9_2.1.aarch64 as a component of Red Hat Enterprise Linux BaseOS E4S (v.9.2)
- NetworkManager-bluetooth-1:1.42.2-32.el9_2.1.ppc64le as a component of Red Hat Enterprise Linux BaseOS E4S (v.9.2)
- NetworkManager-bluetooth-1:1.42.2-32.el9_2.1.s390x as a component of Red Hat Enterprise Linux BaseOS E4S (v.9.2)
- NetworkManager-bluetooth-1:1.42.2-32.el9_2.1.x86_64 as a component of Red Hat Enterprise Linux BaseOS E4S (v.9.2)
- NetworkManager-bluetooth-debuginfo-1:1.42.2-32.el9_2.1.aarch64 as a component of Red Hat Enterprise Linux AppStream E4S (v.9.2)
- NetworkManager-bluetooth-debuginfo-1:1.42.2-32.el9_2.1.aarch64 as a component of Red Hat Enterprise Linux BaseOS E4S (v.9.2)
- NetworkManager-bluetooth-debuginfo-1:1.42.2-32.el9_2.1.i686 as a component of Red Hat Enterprise Linux BaseOS E4S (v.9.2)
- NetworkManager-bluetooth-debuginfo-1:1.42.2-32.el9_2.1.ppc64le as a component of Red Hat Enterprise Linux AppStream E4S (v.9.2)
- NetworkManager-bluetooth-debuginfo-1:1.42.2-32.el9_2.1.ppc64le as a component of Red Hat Enterprise Linux BaseOS E4S (v.9.2)
- NetworkManager-bluetooth-debuginfo-1:1.42.2-32.el9_2.1.s390x as a component of Red Hat Enterprise Linux AppStream E4S (v.9.2)
- +130 more not shown
✅ Remediation
For details on how to apply this update, which includes the changes described in this advisory, refer to: https://access.redhat.com/articles/11258 Workaround: To prevent exploitation, ensure NetworkManager is not configured to use the `dhclient` backend. The default configuration on Red Hat Enterprise Linux does not enable `dhclient`. If a custom configuration file, such as `/etc/NetworkManager/conf.d/00-dhcp.conf`, contains `[main] dhcp=dhclient`, remove or comment out this line. After modifying the configuration, restart the NetworkManager service: `sudo systemctl restart NetworkManager` Warning: Restarting the NetworkManager service will temporarily disrupt network connectivity.