Low severity3.3NVD Advisory· Published Jan 26, 2026· Updated May 19, 2026
CVE-2025-9615
CVE-2025-9615
Description
A flaw was found in NetworkManager. The NetworkManager package allows access to files that may belong to other users. NetworkManager allows non-root users to configure the system's network. The daemon runs with root privileges and can access files owned by users different from the one who added the connection.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
37- osv-coords36 versionspkg:rpm/almalinux/NetworkManagerpkg:rpm/almalinux/NetworkManager-adslpkg:rpm/almalinux/NetworkManager-bluetoothpkg:rpm/almalinux/NetworkManager-cloud-setuppkg:rpm/almalinux/NetworkManager-config-connectivity-redhatpkg:rpm/almalinux/NetworkManager-config-serverpkg:rpm/almalinux/NetworkManager-dispatcher-routing-rulespkg:rpm/almalinux/NetworkManager-initscripts-updownpkg:rpm/almalinux/NetworkManager-libnmpkg:rpm/almalinux/NetworkManager-libnm-develpkg:rpm/almalinux/NetworkManager-ovspkg:rpm/almalinux/NetworkManager-ppppkg:rpm/almalinux/NetworkManager-teampkg:rpm/almalinux/NetworkManager-tuipkg:rpm/almalinux/NetworkManager-wifipkg:rpm/almalinux/NetworkManager-wwanpkg:rpm/opensuse/NetworkManager&distro=openSUSE%20Leap%2015.6pkg:rpm/opensuse/NetworkManager&distro=openSUSE%20Leap%2016.0pkg:rpm/opensuse/NetworkManager-l2tp&distro=openSUSE%20Tumbleweedpkg:rpm/opensuse/NetworkManager-openvpn&distro=openSUSE%20Tumbleweedpkg:rpm/opensuse/NetworkManager-strongswan&distro=openSUSE%20Tumbleweedpkg:rpm/opensuse/strongswan&distro=openSUSE%20Leap%2016.0pkg:rpm/opensuse/strongswan&distro=openSUSE%20Tumbleweedpkg:rpm/suse/NetworkManager&distro=SUSE%20Linux%20Enterprise%20Micro%205.3pkg:rpm/suse/NetworkManager&distro=SUSE%20Linux%20Enterprise%20Micro%205.4pkg:rpm/suse/NetworkManager&distro=SUSE%20Linux%20Enterprise%20Micro%205.5pkg:rpm/suse/NetworkManager&distro=SUSE%20Linux%20Enterprise%20Module%20for%20Basesystem%2015%20SP7pkg:rpm/suse/NetworkManager&distro=SUSE%20Linux%20Enterprise%20Module%20for%20Desktop%20Applications%2015%20SP7pkg:rpm/suse/NetworkManager&distro=SUSE%20Linux%20Enterprise%20Server%2016.0pkg:rpm/suse/NetworkManager&distro=SUSE%20Linux%20Enterprise%20Server%20for%20SAP%20applications%2016.0pkg:rpm/suse/NetworkManager&distro=SUSE%20Linux%20Enterprise%20Workstation%20Extension%2015%20SP7pkg:rpm/suse/NetworkManager&distro=SUSE%20Linux%20Micro%206.0pkg:rpm/suse/NetworkManager&distro=SUSE%20Linux%20Micro%206.1pkg:rpm/suse/NetworkManager&distro=SUSE%20Linux%20Micro%206.2pkg:rpm/suse/strongswan&distro=SUSE%20Linux%20Enterprise%20Server%2016.0pkg:rpm/suse/strongswan&distro=SUSE%20Linux%20Enterprise%20Server%20for%20SAP%20applications%2016.0
< 1:1.56.0-1.el10+ 35 more
- (no CPE)range: < 1:1.56.0-1.el10
- (no CPE)range: < 1:1.56.0-1.el10
- (no CPE)range: < 1:1.56.0-1.el10
- (no CPE)range: < 1:1.56.0-1.el10
- (no CPE)range: < 1:1.56.0-1.el10
- (no CPE)range: < 1:1.56.0-1.el10
- (no CPE)range: < 1:1.54.3-2.el9
- (no CPE)range: < 1:1.54.3-2.el9
- (no CPE)range: < 1:1.56.0-1.el10
- (no CPE)range: < 1:1.56.0-1.el10
- (no CPE)range: < 1:1.56.0-1.el10
- (no CPE)range: < 1:1.56.0-1.el10
- (no CPE)range: < 1:1.54.3-2.el9
- (no CPE)range: < 1:1.56.0-1.el10
- (no CPE)range: < 1:1.56.0-1.el10
- (no CPE)range: < 1:1.56.0-1.el10
- (no CPE)range: < 1.44.2-150600.3.7.1
- (no CPE)range: < 1.52.0-160000.4.1
- (no CPE)range: < 1.52.0-1.1
- (no CPE)range: < 1.12.5-1.1
- (no CPE)range: < 1.6.4-1.1
- (no CPE)range: < 6.0.4-160000.1.1
- (no CPE)range: < 6.0.4-1.1
- (no CPE)range: < 1.38.2-150400.3.5.1
- (no CPE)range: < 1.38.2-150400.3.6.1
- (no CPE)range: < 1.38.6-150500.3.5.1
- (no CPE)range: < 1.44.2-150600.3.7.1
- (no CPE)range: < 1.44.2-150600.3.7.1
- (no CPE)range: < 1.52.0-160000.4.1
- (no CPE)range: < 1.52.0-160000.4.1
- (no CPE)range: < 1.44.2-150600.3.7.1
- (no CPE)range: < 1.42.6-8.1
- (no CPE)range: < 1.42.6-slfo.1.1_4.1
- (no CPE)range: < 1.52.0-160000.4.1
- (no CPE)range: < 6.0.4-160000.1.1
- (no CPE)range: < 6.0.4-160000.1.1
Patches
Vulnerability mechanics
References
7- access.redhat.com/errata/RHSA-2026:18142nvd
- access.redhat.com/errata/RHSA-2026:18597nvd
- access.redhat.com/security/cve/CVE-2025-9615nvd
- bugzilla.redhat.com/show_bug.cginvd
- gitlab.freedesktop.org/NetworkManager/NetworkManager/-/issues/1809nvd
- gitlab.freedesktop.org/NetworkManager/NetworkManager/-/merge_requests/2324nvd
- gitlab.freedesktop.org/NetworkManager/NetworkManager/-/merge_requests/2327nvd
News mentions
0No linked articles in our index yet.