Back

HIGH

wget: files rejected by access list are kept on the disk for the duration of HTTP connection

Published Sep 26, 2016

Description

Race condition in wget 1.17 and earlier, when used in recursive or mirroring mode to download a single file, might allow remote servers to bypass intended access list restrictions by keeping an HTTP connection open.

Affected products

Remediation

Red Hat statement

Red Hat Product Security determined that this flaw was not a security vulnerability. See the Bugzilla link for more details.

Metrics

Weaknesses (1)

References (12)

Change history (0)

No recorded changes yet.

Sources
CVE.org / MITRE
Status PUBLISHED
Assigner redhat
Published Sep 26, 2016
Updated Aug 6, 2024
Reserved Aug 26, 2016
NVD
Status Modified
Modified Jun 17, 2026
Red Hat
Severity n/a
Public date Aug 11, 2016