A flaw was found in NetworkManager-vpnc, a VPN plugin for NetworkManager. A local unprivileged user can exploit this vulnerability by injecting a newline character into the CA-File path. This manipulation allows the user to execute arbitrary commands as the root user, leading to local privilege escalation.
Advisories

No advisories yet.

Fixes

Solution

No solution given by the vendor.


Workaround

To mitigate this issue, remove the `NetworkManager-vpnc` package if the vpnc VPN plugin functionality is not required on the system. This will prevent a local unprivileged user from exploiting the flaw. To remove the package, use the following command: `sudo dnf remove NetworkManager-vpnc` Note that removing this package will disable the ability to use vpnc-based VPN connections.

History

Fri, 25 Sep 2026 19:30:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'poc', 'Technical Impact': 'total'}, 'version': '2.0.3'}


Fri, 25 Sep 2026 18:00:00 +0000

Type Values Removed Values Added
Description A flaw was found in NetworkManager-vpnc, a VPN plugin for NetworkManager. A local unprivileged user can exploit this vulnerability by injecting a newline character into the CA-File path. This manipulation allows the user to execute arbitrary commands as the root user, leading to local privilege escalation.
Title Networkmanager-vpnc: networkmanager-vpnc: incomplete fix for cve-2018-10900 allows root privilege escalation via ca-file path newline injection
Weaknesses CWE-93
References
Metrics cvssV3_1

{'score': 7.8, 'vector': 'CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H'}


Projects

Sign in to view the affected projects.

cve-icon MITRE

Status: PUBLISHED

Assigner: fedora

Published:

Updated: 2026-09-25T18:14:27.661Z

Reserved: 2026-09-15T08:28:01.333Z

Link: CVE-2026-91841

cve-icon Vulnrichment

Updated: 2026-09-25T18:14:23.987Z

cve-icon NVD

Status : Received

Published: 2026-09-25T18:17:32.923

Modified: 2026-09-25T19:17:58.993

Link: CVE-2026-91841

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-09-25T20:30:17Z

Weaknesses