Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

oracle-oval логотип

ELSA-2024-6192

Опубликовано: 03 сент. 2024
Источник: oracle-oval
Платформа: Oracle Linux 9

Описание

ELSA-2024-6192: wget security update (MODERATE)

[1.21.1-8]

  • Resolves: RHEL-43226 - Misinterpretation of input may lead to improper behavior

Обновленные пакеты

Oracle Linux 9

Oracle Linux aarch64

wget

1.21.1-8.el9_4

Oracle Linux x86_64

wget

1.21.1-8.el9_4

Связанные CVE

Связанные уязвимости

CVSS3: 9.1
ubuntu
около 1 года назад

url.c in GNU Wget through 1.24.5 mishandles semicolons in the userinfo subcomponent of a URI, and thus there may be insecure behavior in which data that was supposed to be in the userinfo subcomponent is misinterpreted to be part of the host subcomponent.

CVSS3: 5.5
redhat
около 1 года назад

url.c in GNU Wget through 1.24.5 mishandles semicolons in the userinfo subcomponent of a URI, and thus there may be insecure behavior in which data that was supposed to be in the userinfo subcomponent is misinterpreted to be part of the host subcomponent.

CVSS3: 9.1
nvd
около 1 года назад

url.c in GNU Wget through 1.24.5 mishandles semicolons in the userinfo subcomponent of a URI, and thus there may be insecure behavior in which data that was supposed to be in the userinfo subcomponent is misinterpreted to be part of the host subcomponent.

CVSS3: 9.1
msrc
около 1 года назад

Описание отсутствует

CVSS3: 9.1
debian
около 1 года назад

url.c in GNU Wget through 1.24.5 mishandles semicolons in the userinfo ...