RHSA-2026:61244MediumCVSS 6.7

Red Hat Security Advisory: NetworkManager security update

Published
August 31, 2026
Last Modified
August 31, 2026

🔗 CVE IDs covered (1)

📋 Description

CVE-2026-10805 — NetworkManager: NetworkManager: Local privilege escalation via malformed MUD URLs in dhclient backend

🎯 Affected products160

  • Red Hat Enterprise Linux AppStream E4S (v.9.2)
  • Red Hat Enterprise Linux BaseOS E4S (v.9.2)
  • NetworkManager-1:1.42.2-32.el9_2.1.aarch64 as a component of Red Hat Enterprise Linux BaseOS E4S (v.9.2)
  • NetworkManager-1:1.42.2-32.el9_2.1.ppc64le as a component of Red Hat Enterprise Linux BaseOS E4S (v.9.2)
  • NetworkManager-1:1.42.2-32.el9_2.1.s390x as a component of Red Hat Enterprise Linux BaseOS E4S (v.9.2)
  • NetworkManager-1:1.42.2-32.el9_2.1.src as a component of Red Hat Enterprise Linux BaseOS E4S (v.9.2)
  • NetworkManager-1:1.42.2-32.el9_2.1.x86_64 as a component of Red Hat Enterprise Linux BaseOS E4S (v.9.2)
  • NetworkManager-adsl-1:1.42.2-32.el9_2.1.aarch64 as a component of Red Hat Enterprise Linux BaseOS E4S (v.9.2)
  • NetworkManager-adsl-1:1.42.2-32.el9_2.1.ppc64le as a component of Red Hat Enterprise Linux BaseOS E4S (v.9.2)
  • NetworkManager-adsl-1:1.42.2-32.el9_2.1.s390x as a component of Red Hat Enterprise Linux BaseOS E4S (v.9.2)
  • NetworkManager-adsl-1:1.42.2-32.el9_2.1.x86_64 as a component of Red Hat Enterprise Linux BaseOS E4S (v.9.2)
  • NetworkManager-adsl-debuginfo-1:1.42.2-32.el9_2.1.aarch64 as a component of Red Hat Enterprise Linux AppStream E4S (v.9.2)
  • NetworkManager-adsl-debuginfo-1:1.42.2-32.el9_2.1.aarch64 as a component of Red Hat Enterprise Linux BaseOS E4S (v.9.2)
  • NetworkManager-adsl-debuginfo-1:1.42.2-32.el9_2.1.i686 as a component of Red Hat Enterprise Linux BaseOS E4S (v.9.2)
  • NetworkManager-adsl-debuginfo-1:1.42.2-32.el9_2.1.ppc64le as a component of Red Hat Enterprise Linux AppStream E4S (v.9.2)
  • NetworkManager-adsl-debuginfo-1:1.42.2-32.el9_2.1.ppc64le as a component of Red Hat Enterprise Linux BaseOS E4S (v.9.2)
  • NetworkManager-adsl-debuginfo-1:1.42.2-32.el9_2.1.s390x as a component of Red Hat Enterprise Linux AppStream E4S (v.9.2)
  • NetworkManager-adsl-debuginfo-1:1.42.2-32.el9_2.1.s390x as a component of Red Hat Enterprise Linux BaseOS E4S (v.9.2)
  • NetworkManager-adsl-debuginfo-1:1.42.2-32.el9_2.1.x86_64 as a component of Red Hat Enterprise Linux AppStream E4S (v.9.2)
  • NetworkManager-adsl-debuginfo-1:1.42.2-32.el9_2.1.x86_64 as a component of Red Hat Enterprise Linux BaseOS E4S (v.9.2)
  • NetworkManager-bluetooth-1:1.42.2-32.el9_2.1.aarch64 as a component of Red Hat Enterprise Linux BaseOS E4S (v.9.2)
  • NetworkManager-bluetooth-1:1.42.2-32.el9_2.1.ppc64le as a component of Red Hat Enterprise Linux BaseOS E4S (v.9.2)
  • NetworkManager-bluetooth-1:1.42.2-32.el9_2.1.s390x as a component of Red Hat Enterprise Linux BaseOS E4S (v.9.2)
  • NetworkManager-bluetooth-1:1.42.2-32.el9_2.1.x86_64 as a component of Red Hat Enterprise Linux BaseOS E4S (v.9.2)
  • NetworkManager-bluetooth-debuginfo-1:1.42.2-32.el9_2.1.aarch64 as a component of Red Hat Enterprise Linux AppStream E4S (v.9.2)
  • NetworkManager-bluetooth-debuginfo-1:1.42.2-32.el9_2.1.aarch64 as a component of Red Hat Enterprise Linux BaseOS E4S (v.9.2)
  • NetworkManager-bluetooth-debuginfo-1:1.42.2-32.el9_2.1.i686 as a component of Red Hat Enterprise Linux BaseOS E4S (v.9.2)
  • NetworkManager-bluetooth-debuginfo-1:1.42.2-32.el9_2.1.ppc64le as a component of Red Hat Enterprise Linux AppStream E4S (v.9.2)
  • NetworkManager-bluetooth-debuginfo-1:1.42.2-32.el9_2.1.ppc64le as a component of Red Hat Enterprise Linux BaseOS E4S (v.9.2)
  • NetworkManager-bluetooth-debuginfo-1:1.42.2-32.el9_2.1.s390x as a component of Red Hat Enterprise Linux AppStream E4S (v.9.2)
  • +130 more not shown

✅ Remediation

For details on how to apply this update, which includes the changes described in this advisory, refer to: https://access.redhat.com/articles/11258 Workaround: To prevent exploitation, ensure NetworkManager is not configured to use the `dhclient` backend. The default configuration on Red Hat Enterprise Linux does not enable `dhclient`. If a custom configuration file, such as `/etc/NetworkManager/conf.d/00-dhcp.conf`, contains `[main] dhcp=dhclient`, remove or comment out this line. After modifying the configuration, restart the NetworkManager service: `sudo systemctl restart NetworkManager` Warning: Restarting the NetworkManager service will temporarily disrupt network connectivity.

🔗 References (4)