Alerts This Week
Warning Icon 1 714
Alerts This Week
Warning Icon 1 714

Fedora 43: wget2 Critical Memory Corruption and File Write Issues 2026:01

fedora
Calendar Grey January 8, 2026
Dist Fedora Esm H88
Explore critical updates for Fedora 43 wget2 version 2.2.1 addressing memory corruption and file write issues.
New version 2.2.1

Summary

GNU Wget2 is the successor of GNU Wget, a file and recursive website

downloader.

Designed and written from scratch it wraps around libwget, that provides the

basic functions needed by a web client.

Wget2 works multi-threaded and uses many features to allow fast operation.

In many cases Wget2 downloads much faster than Wget1.x due to HTTP2, HTTP

compression, parallel connections and use of If-Modified-Since HTTP header.

Update Information:

New version 2.2.1

Change Log

* Thu Jan 1 2026 LuK1337 - 2.2.1-1 - New version 2.2.1

References


[ 1 ] Bug #2425777 - CVE-2025-69195 wget2: GNU Wget2: Memory corruption and crash via filename sanitization logic with attacker-controlled URLs [fedora-42] https://bugzilla.redhat.com/show_bug.cgi?id=2425777 [ 2 ] Bug #2425778 - CVE-2025-69195 wget2: GNU Wget2: Memory corruption and crash via filename sanitization logic with attacker-controlled URLs [fedora-43] https://bugzilla.redhat.com/show_bug.cgi?id=2425778 [ 3 ] Bug #2425782 - CVE-2025-69194 wget2: Arbitrary File Write via Metalink Path Traversal in GNU Wget2 [fedora-42] https://bugzilla.redhat.com/show_bug.cgi?id=2425782 [ 4 ] Bug #2425783 - CVE-2025-69194 wget2: Arbitrary File Write via Metalink Path Traversal in GNU Wget2 [fedora-43] https://bugzilla.redhat.com/show_bug.cgi?id=2425783 [ 5 ] Bug #2426325 - wget2-2.2.1 is available https://bugzilla.redhat.com/show_bug.cgi?id=2426325

Update Instructions

This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2026-de1a91fe79' at the command line. For more information, refer to the dnf documentation available at http://dnf.readthedocs.io/en/latest/command_ref.html#upgrade-command-label

Severity
important
Lowest
Low
Medium
High
Critical

Name: wget2
Product: Fedora 43
Version: 2.2.1
Release: 1.fc43
Summary: An advanced file and recursive website downloader

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Your message here