shield Security update for wget
SUSE-SLE-Micro-6.0-11


This update for wget fixes the following issues: - CVE-2024-38428: Fix mishandled semicolons in the userinfo subcomponent of a URI. (bsc#1226419) - Update to GNU wget 1.24.5: * Fix how subdomain matches are checked for HSTS. * Wget will now also parse the srcset attribute in <source> HTML tags * Support reading fetchmail style "user" and "passwd" fields from netrc * In some cases, prevent the confusing "Cannot write to... (success)" error messages * Support extremely fast download speeds (TB/s) * Ensure that CSS URLs are corectly quoted * libproxy support is now upstream- drop wget-libproxy.patch

  • Release Date
    Feb 3 2025
  • References
    Bugzilla: 1226419
    CVEs: CVE-2024-38428
  • Type
    security
  • Severity
    moderate

cloud_download Downloads

SUSE Linux Micro 6.0 x86_64
  • Packages
    wget
    A Tool for Mirroring FTP and HTTP Servers
    1.24.5-1.1 lock rpm
SUSE Linux Micro 6.0 aarch64
  • Packages
    wget
    A Tool for Mirroring FTP and HTTP Servers
    1.24.5-1.1 lock rpm
SUSE Linux Micro 6.0 s390x
  • Packages
    wget
    A Tool for Mirroring FTP and HTTP Servers
    1.24.5-1.1 lock rpm