Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2024-38428

Опубликовано: 01 июн. 2024
Источник: redhat
CVSS3: 5.5
EPSS Низкий

Описание

url.c in GNU Wget through 1.24.5 mishandles semicolons in the userinfo subcomponent of a URI, and thus there may be insecure behavior in which data that was supposed to be in the userinfo subcomponent is misinterpreted to be part of the host subcomponent.

A flaw was found in wget. Incorrect handling of semicolons in the userinfo subcomponent of a URI allows it to be misinterpreted as part of the host subcomponent, potentially exposing user credentials.

Отчет

Only calls to Wget using semicolons in the userinfo subcomponent of a URI are vulnerable to this issue. However, this is allowed by the standard and is supported by other similar tools. To exploit this issue, an attacker must convince a local user into running Wget with a specially crafted userinfo subcomponent, limiting the exposure of this vulnerability. For these reasons, this vulnerability has been rated with a moderate severity. Additionally, this vulnerability only affects wget 1.x, wget2 is not affected. Within regulated environments, a combination of the following controls acts as a significant barrier to successfully exploiting a CWE-115: Misinterpretation of Input vulnerability and therefore downgrades the severity of this particular CVE from Moderate to Low. Controls such as input validation and error handling mitigate input misinterpretation risks by enforcing strict validation rules and secure error management. Error handling ensures inputs are validated against predefined formats, preventing malformed data from being misinterpreted. Techniques like strong typing, allow listing, and proper encoding reduce the likelihood of injection attacks and unintended code execution. Input validation also ensures that errors do not expose sensitive system details or cause unpredictable behavior. Secure error handling prevents information leakage through detailed error messages while preserving system stability under malformed input conditions. Together, these controls reduce the attack surface by maintaining consistent input processing and preventing exploitable system states, strengthening the overall security posture.

Меры по смягчению последствий

Make sure to not add semicolons in the userinfo subcomponent of a URI.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat Enterprise Linux 10wget2Not affected
Red Hat Enterprise Linux 6wgetOut of support scope
Red Hat Enterprise Linux 7wgetOut of support scope
Red Hat Enterprise Linux 8wgetFixedRHSA-2024:529913.08.2024
Red Hat Enterprise Linux 8.6 Advanced Mission Critical Update SupportwgetFixedRHSA-2024:499806.08.2024
Red Hat Enterprise Linux 8.6 Telecommunications Update ServicewgetFixedRHSA-2024:499806.08.2024
Red Hat Enterprise Linux 8.6 Update Services for SAP SolutionswgetFixedRHSA-2024:499806.08.2024
Red Hat Enterprise Linux 8.8 Extended Update SupportwgetFixedRHSA-2024:620803.09.2024
Red Hat Enterprise Linux 9wgetFixedRHSA-2024:619203.09.2024
Red Hat Enterprise Linux 9.2 Extended Update SupportwgetFixedRHSA-2024:643805.09.2024

Показывать по

Дополнительная информация

Статус:

Moderate
Дефект:
CWE-115
https://bugzilla.redhat.com/show_bug.cgi?id=2292836wget: Misinterpretation of input may lead to improper behavior

EPSS

Процентиль: 50%
0.00265
Низкий

5.5 Medium

CVSS3

Связанные уязвимости

CVSS3: 9.1
ubuntu
около 1 года назад

url.c in GNU Wget through 1.24.5 mishandles semicolons in the userinfo subcomponent of a URI, and thus there may be insecure behavior in which data that was supposed to be in the userinfo subcomponent is misinterpreted to be part of the host subcomponent.

CVSS3: 9.1
nvd
около 1 года назад

url.c in GNU Wget through 1.24.5 mishandles semicolons in the userinfo subcomponent of a URI, and thus there may be insecure behavior in which data that was supposed to be in the userinfo subcomponent is misinterpreted to be part of the host subcomponent.

CVSS3: 9.1
msrc
12 месяцев назад

Описание отсутствует

CVSS3: 9.1
debian
около 1 года назад

url.c in GNU Wget through 1.24.5 mishandles semicolons in the userinfo ...

suse-cvrf
12 месяцев назад

Security update for wget

EPSS

Процентиль: 50%
0.00265
Низкий

5.5 Medium

CVSS3