The following advisory data is extracted from: https://security.access.redhat.com/data/csaf/v2/advisories/2025/rhsa-2025_0288.json Red Hat officially shut down their mailing list notifications October 10, 2023. Due to this, Packet Storm has recreated the below data as a reference point to raise awareness. It must be noted that due to an inability to easily track revision updates without crawling Red Hat's archive, these advisories are single notifications and we strongly suggest that you visit the Red Hat provided links to ensure you have the latest information available if the subject matter listed pertains to your environment. - Packet Storm Staff ==================================================================== Red Hat Security Advisory Synopsis: Moderate: Bug fix of NetworkManager Advisory ID: RHSA-2025:0288-03 Product: Red Hat Enterprise Linux Advisory URL: https://access.redhat.com/errata/RHSA-2025:0288 Issue date: 2025-01-14 Revision: 03 CVE Names: CVE-2024-3661 ==================================================================== Summary: Bug fix of NetworkManager Description: Security and Bug Fix(es): * NetworkManager: DHCP routing options can manipulate interface-based VPN traffic (CVE-2024-3661) * Route to VPN server not stored in routing table that is specified by ipv4.route-table (JIRA:RHEL-73051) * VPN connections do not support ipv4.routing-rules settings (JIRA:RHEL-73052) Solution: https://access.redhat.com/articles/11258 CVEs: CVE-2024-3661 References: https://access.redhat.com/security/updates/classification/#moderate https://issues.redhat.com/browse/RHEL-73052