CyberRota Analysis
AI-GeneratedA vulnerability exists in the iodine VPN plugin for NetworkManager, allowing local unprivileged users to exploit the 'nameserver' setting by injecting shell metacharacters. This can lead to arbitrary command execution with root privileges before the application reduces its permissions, resulting in local privilege escalation. Organizations utilizing NetworkManager with the iodine plugin should prioritize addressing this vulnerability to mitigate the risk of unauthorized access and potential system compromise.
Public Exploit Signal
A public exploit, PoC, GitHub repository or Metasploit reference was detected for this CVE.
Note: these links are listed for security research and verification purposes only.
Original NVD Description
A flaw was found in NetworkManager-iodine, the iodine VPN plugin for NetworkManager. A local unprivileged user can exploit a vulnerability in how the 'nameserver' setting is processed when establishing an iodine VPN connection. By embedding shell metacharacters (special characters that can execute commands) in the 'nameserver' value, an attacker can inject and execute arbitrary commands. These commands run with root privileges before the application drops its elevated permissions, leading to local privilege escalation.