Overly broad permissions can turn one compromised account into a much larger security problem. Learn how to reduce unnecessary access, review privileges, and apply least privilege across modern Linux systems. Review Linux Privileges×

Alerts This Week
Warning Icon 1 511
Alerts This Week
Warning Icon 1 511

Fedora 23: Security Update for Wget Tool – Critical IP Exposure Fix

fedora
Calendar Grey November 30, 2015
Scroller Fedora
Latest security patch for wget on Fedora 23 boosts file download mechanisms and strengthens system protection capabilities.
- new version

Summary

GNU Wget is a file retrieval utility which can use either the HTTP or

FTP protocols. Wget features include the ability to work in the

background while you are logged out, recursive retrieval of

directories, file name wildcard matching, remote file timestamp

storage and comparison, use of Rest with FTP servers and Range with

HTTP servers to retrieve files over slow or unstable connections,

support for Proxy servers, and configurability.

Update Information:

- new version

Change Log

References


[ 1 ] Bug #1260925 - wget: IP address exposure via FTP PORT command [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=1260925 [ 2 ] Bug #1281829 - Harden all packages: wget should be a position-independent executable https://bugzilla.redhat.com/show_bug.cgi?id=1281829 [ 3 ] Bug #1286008 - wget-1.17 is available https://bugzilla.redhat.com/show_bug.cgi?id=1286008

Update Instructions

This update can be installed with the "yum" update program. Use su -c 'yum update wget' at the command line. For more information, refer to "Managing Software with yum", available at .

Severity
critical
Lowest
Low
Medium
High
Critical

Name: wget
Product: Fedora 23
Version: 1.17
Release: 1.fc23
URL:
Summary: A utility for retrieving files using the HTTP or FTP protocols

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.