wget 1.8.x and 1.9.x allows a remote malicious web server to overwrite certain files via a redirection URL containing a .. that resolves to the IP address of the malicious server, which bypasses wgets filtering for .. sequences.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Wget | Gnu | 1.8.2 | 1.8.2 |
Wget | Gnu | 1.9 | 1.9 |
Wget | Gnu | 1.8 | 1.8 |
Wget | Gnu | 1.8.1 | 1.8.1 |
Wget | Gnu | 1.9.1 | 1.9.1 |
Wget | Ubuntu | dapper | * |
Wget | Ubuntu | devel | * |
Wget | Ubuntu | edgy | * |
Wget | Ubuntu | feisty | * |