[Forgot Password]
Login  Register Subscribe

23631

 
 

115084

 
 

97147

 
 

909

 
 

78730

 
 

109

Paid content will be excluded from the download.


Download | Alert*
OVAL

RHSA-2017:3075-01 -- Redhat wget

ID: oval:org.secpod.oval:def:502187Date: (C)2017-10-31   (M)2017-11-14
Class: PATCHFamily: unix




The wget packages provide the GNU Wget file retrieval utility for HTTP, HTTPS, and FTP protocols. Security Fix: * A stack-based and a heap-based buffer overflow flaws were found in wget when processing chunked encoded HTTP responses. By tricking an unsuspecting user into connecting to a malicious HTTP server, an attacker could exploit these flaws to potentially execute arbitrary code. Red Hat would like to thank the GNU Wget project for reporting these issues.

Platform:
Red Hat Enterprise Linux 7
Product:
wget
Reference:
RHSA-2017:3075-01
CVE-2017-13089
CVE-2017-13090
CVE    2
CVE-2017-13090
CVE-2017-13089
CPE    2
cpe:/o:redhat:enterprise_linux:7
cpe:/a:gnu:wget

© 2013 SecPod Technologies