Bug ID 1047509
Summary nm-applet does not pin WPA enterprise certificates
Classification openSUSE
Product openSUSE Distribution
Version Leap 42.3
Hardware Other
OS Other
Status NEW
Severity Normal
Priority P5 - None
Component Security
Assignee security-team@suse.de
Reporter fvogt@suse.com
QA Contact qa-bugs@suse.de
CC lnussel@suse.com
Found By ---
Blocker ---

When choosing to "Ignore CA Certificate" when connecting to a WPA enterprise
secured network, it does neither show the certificate hash nor save it.
This makes it possible for any attacker to impersonate the network.

Tested in Xfce.


You are receiving this mail because: