gpp_maybe Security update for wget
SUSE-SLE-Micro-5.5-2026-3206


This update for wget fixes the following issues: - CVE-2026-15146: unvalidated IP address in an FTP PASV response can lead to server-side request forgery (bsc#1271320). - CVE-2026-58469: Metalink document containing a whitespace-only URL can cause a heap buffer underread (bsc#1271033). - CVE-2026-58470: server-controlled `Content-Range` header values can cause an integer overflow in `parse_content_range()` (bsc#1271034). - CVE-2026-58471: server-supplied filenames requiring character set conversion could lead to heap memory corruption (bsc#1271035). - CVE-2026-58472: crafted HTML attribute with a large number of characters requiring entity encoding can lead to a heap buffer overflow (bsc#1271036). - Fix metalink regression from CVE-2026-58469 fix (bsc#1272219).


cloud_download Downloads

SUSE Linux Enterprise Micro 5.5 x86_64
  • Packages
    wget
    A Tool for Mirroring FTP and HTTP Servers
    1.20.3-150000.3.34.1 lock rpm lock src
SUSE Linux Enterprise Micro 5.5 aarch64
  • Packages
    wget
    A Tool for Mirroring FTP and HTTP Servers
    1.20.3-150000.3.34.1 lock rpm lock src
SUSE Linux Enterprise Micro 5.5 ppc64le
  • Packages
    wget
    A Tool for Mirroring FTP and HTTP Servers
    1.20.3-150000.3.34.1 lock rpm lock src
SUSE Linux Enterprise Micro 5.5 s390x
  • Packages
    wget
    A Tool for Mirroring FTP and HTTP Servers
    1.20.3-150000.3.34.1 lock rpm lock src