gpp_maybe Security update for wget
SUSE-SLE-Micro-6.0-831


This update for wget fixes the following issues: - CVE-2026-15146: unvalidated IP address in an FTP PASV response can lead to server-side request forgery (bsc#1271320). - CVE-2026-58469: Metalink document containing a whitespace-only URL can cause a heap buffer underread (bsc#1271033). - CVE-2026-58470: server-controlled `Content-Range` header values can cause an integer overflow in `parse_content_range()` (bsc#1271034). - CVE-2026-58471: server-supplied filenames requiring character set conversion could lead to heap memory corruption (bsc#1271035). - CVE-2026-58472: crafted HTML attribute with a large number of characters requiring entity encoding can lead to a heap buffer overflow (bsc#1271036). - Fix metalink regression from CVE-2026-58469 fix (bsc#1272219).


cloud_download Downloads

SUSE Linux Micro 6.0 s390x
  • Packages
    wget
    A Tool for Mirroring FTP and HTTP Servers
    1.24.5-3.1 lock rpm
SUSE Linux Micro 6.0 aarch64
  • Packages
    wget
    A Tool for Mirroring FTP and HTTP Servers
    1.24.5-3.1 lock rpm
SUSE Linux Micro 6.0 x86_64
  • Packages
    wget
    A Tool for Mirroring FTP and HTTP Servers
    1.24.5-3.1 lock rpm