Описание
Security update for wget
This update for wget fixes the following issues:
- CVE-2024-10524: Fixed SSRF via shorthand HTTP URL (bsc#1233773)
Список пакетов
Container containers/pytorch:2-nvidia
wget-1.20.3-150600.19.9.1
Container containers/pytorch:2.5.0
wget-1.20.3-150600.19.9.1
Image SLES15-SP6
wget-1.20.3-150600.19.9.1
Image SLES15-SP6-Azure-Basic
wget-1.20.3-150600.19.9.1
Image SLES15-SP6-Azure-Standard
wget-1.20.3-150600.19.9.1
Image SLES15-SP6-BYOS
wget-1.20.3-150600.19.9.1
Image SLES15-SP6-BYOS-Azure
wget-1.20.3-150600.19.9.1
Image SLES15-SP6-BYOS-EC2
wget-1.20.3-150600.19.9.1
Image SLES15-SP6-BYOS-GCE
wget-1.20.3-150600.19.9.1
Image SLES15-SP6-CHOST-BYOS
wget-1.20.3-150600.19.9.1
Image SLES15-SP6-CHOST-BYOS-Aliyun
wget-1.20.3-150600.19.9.1
Image SLES15-SP6-CHOST-BYOS-Azure
wget-1.20.3-150600.19.9.1
Image SLES15-SP6-CHOST-BYOS-EC2
wget-1.20.3-150600.19.9.1
Image SLES15-SP6-CHOST-BYOS-GCE
wget-1.20.3-150600.19.9.1
Image SLES15-SP6-CHOST-BYOS-GDC
wget-1.20.3-150600.19.9.1
Image SLES15-SP6-CHOST-BYOS-SAP-CCloud
wget-1.20.3-150600.19.9.1
Image SLES15-SP6-EC2
wget-1.20.3-150600.19.9.1
Image SLES15-SP6-EC2-ECS-HVM
wget-1.20.3-150600.19.9.1
Image SLES15-SP6-GCE
wget-1.20.3-150600.19.9.1
Image SLES15-SP6-HPC
wget-1.20.3-150600.19.9.1
Image SLES15-SP6-HPC-Azure
wget-1.20.3-150600.19.9.1
Image SLES15-SP6-HPC-BYOS
wget-1.20.3-150600.19.9.1
Image SLES15-SP6-HPC-BYOS-Azure
wget-1.20.3-150600.19.9.1
Image SLES15-SP6-HPC-BYOS-EC2
wget-1.20.3-150600.19.9.1
Image SLES15-SP6-HPC-BYOS-GCE
wget-1.20.3-150600.19.9.1
Image SLES15-SP6-HPC-EC2
wget-1.20.3-150600.19.9.1
Image SLES15-SP6-HPC-GCE
wget-1.20.3-150600.19.9.1
Image SLES15-SP6-Hardened-BYOS
wget-1.20.3-150600.19.9.1
Image SLES15-SP6-Hardened-BYOS-Azure
wget-1.20.3-150600.19.9.1
Image SLES15-SP6-Hardened-BYOS-EC2
wget-1.20.3-150600.19.9.1
Image SLES15-SP6-Hardened-BYOS-GCE
wget-1.20.3-150600.19.9.1
Image SLES15-SP6-SAP
wget-1.20.3-150600.19.9.1
Image SLES15-SP6-SAP-Azure
wget-1.20.3-150600.19.9.1
Image SLES15-SP6-SAP-Azure-LI-BYOS
wget-1.20.3-150600.19.9.1
Image SLES15-SP6-SAP-Azure-LI-BYOS-Production
wget-1.20.3-150600.19.9.1
Image SLES15-SP6-SAP-Azure-VLI-BYOS
wget-1.20.3-150600.19.9.1
Image SLES15-SP6-SAP-Azure-VLI-BYOS-Production
wget-1.20.3-150600.19.9.1
Image SLES15-SP6-SAP-BYOS
wget-1.20.3-150600.19.9.1
Image SLES15-SP6-SAP-BYOS-Azure
wget-1.20.3-150600.19.9.1
Image SLES15-SP6-SAP-BYOS-EC2
wget-1.20.3-150600.19.9.1
Image SLES15-SP6-SAP-BYOS-GCE
wget-1.20.3-150600.19.9.1
Image SLES15-SP6-SAP-EC2
wget-1.20.3-150600.19.9.1
Image SLES15-SP6-SAP-GCE
wget-1.20.3-150600.19.9.1
Image SLES15-SP6-SAP-Hardened
wget-1.20.3-150600.19.9.1
Image SLES15-SP6-SAP-Hardened-Azure
wget-1.20.3-150600.19.9.1
Image SLES15-SP6-SAP-Hardened-BYOS
wget-1.20.3-150600.19.9.1
Image SLES15-SP6-SAP-Hardened-BYOS-Azure
wget-1.20.3-150600.19.9.1
Image SLES15-SP6-SAP-Hardened-BYOS-EC2
wget-1.20.3-150600.19.9.1
Image SLES15-SP6-SAP-Hardened-BYOS-GCE
wget-1.20.3-150600.19.9.1
Image SLES15-SP6-SAP-Hardened-EC2
wget-1.20.3-150600.19.9.1
Image SLES15-SP6-SAP-Hardened-GCE
wget-1.20.3-150600.19.9.1
Image SLES15-SP6-SAPCAL
wget-1.20.3-150600.19.9.1
Image SLES15-SP6-SAPCAL-Azure
wget-1.20.3-150600.19.9.1
Image SLES15-SP6-SAPCAL-EC2
wget-1.20.3-150600.19.9.1
Image SLES15-SP6-SAPCAL-GCE
wget-1.20.3-150600.19.9.1
Image ai_15_6
wget-1.20.3-150600.19.9.1
SUSE Linux Enterprise Module for Basesystem 15 SP6
wget-1.20.3-150600.19.9.1
openSUSE Leap 15.6
wget-1.20.3-150600.19.9.1
wget-lang-1.20.3-150600.19.9.1
Ссылки
- Link for SUSE-SU-2024:4145-1
- E-Mail link for SUSE-SU-2024:4145-1
- SUSE Security Ratings
- SUSE Bug 1233773
- SUSE CVE CVE-2024-10524 page
Описание
Applications that use Wget to access a remote resource using shorthand URLs and pass arbitrary user credentials in the URL are vulnerable. In these cases attackers can enter crafted credentials which will cause Wget to access an arbitrary host.
Затронутые продукты
Container containers/pytorch:2-nvidia:wget-1.20.3-150600.19.9.1
Container containers/pytorch:2.5.0:wget-1.20.3-150600.19.9.1
Image SLES15-SP6-Azure-Basic:wget-1.20.3-150600.19.9.1
Image SLES15-SP6-Azure-Standard:wget-1.20.3-150600.19.9.1
Ссылки
- CVE-2024-10524
- SUSE Bug 1233256
- SUSE Bug 1233773