Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2016-7098

Опубликовано: 26 сент. 2016
Источник: debian

Описание

Race condition in wget 1.17 and earlier, when used in recursive or mirroring mode to download a single file, might allow remote servers to bypass intended access list restrictions by keeping an HTTP connection open.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
wgetfixed1.18-4package
wgetno-dsawheezypackage

Примечания

  • http://git.savannah.gnu.org/cgit/wget.git/commit/?id=9ffb64ba6a8121909b01e984deddce8d096c498d

  • http://git.savannah.gnu.org/cgit/wget.git/commit/?id=690c47e3b18c099843cdf557a0425d701fca4957

Связанные уязвимости

CVSS3: 8.1
ubuntu
больше 9 лет назад

Race condition in wget 1.17 and earlier, when used in recursive or mirroring mode to download a single file, might allow remote servers to bypass intended access list restrictions by keeping an HTTP connection open.

redhat
больше 9 лет назад

Race condition in wget 1.17 and earlier, when used in recursive or mirroring mode to download a single file, might allow remote servers to bypass intended access list restrictions by keeping an HTTP connection open.

CVSS3: 8.1
nvd
больше 9 лет назад

Race condition in wget 1.17 and earlier, when used in recursive or mirroring mode to download a single file, might allow remote servers to bypass intended access list restrictions by keeping an HTTP connection open.

suse-cvrf
около 9 лет назад

Security update for wget

suse-cvrf
около 9 лет назад

Security update for wget