Описание
Security update for wget
This update for wget fixes the following issues:
- CVE-2018-0494: Fixed a cookie injection vulnerability by checking for and joining continuation lines. (bsc#1092061)
This update was imported from the SUSE:SLE-12:Update update project.
Список пакетов
openSUSE Leap 42.3
wget-1.14-15.1
Ссылки
- E-Mail link for openSUSE-SU-2018:1383-1
- SUSE Security Ratings
Описание
GNU Wget before 1.19.5 is prone to a cookie injection vulnerability in the resp_new function in http.c via a \r\n sequence in a continuation line.
Затронутые продукты
openSUSE Leap 42.3:wget-1.14-15.1
Ссылки
- CVE-2018-0494
- SUSE Bug 1092061
- SUSE Bug 1123797
- SUSE Bug 1159418