wget security vulnerability

Bug #7942 reported by Martin Pitt
4
Affects Status Importance Assigned to Milestone
wget (Ubuntu)
Fix Released
Low
Martin Pitt

Bug Description

Debian bug #261755 describes a vulnerability of wget, which possibly must be
fixed in Warty.

http://bugs.debian.org/261755: http://bugs.debian.org/261755

Revision history for this message
Matt Zimmerman (mdz) wrote :

I don't consider this bug to be a serious security issue (it is similar to the
Apache log sanitizing issue, and closely related to the cat(1) "vulnerability"
when copying a text file to the terminal). Lowering severity.

Revision history for this message
Martin Pitt (pitti) wrote :

Just for the records, the Debian package fixed this. So we should just sync it
after the Warty release.

Therefore I set the status to pending.

Revision history for this message
Martin Pitt (pitti) wrote :

Fixed in Hoary by syncing to Debian.

To post a comment you must log in.
This report contains Public information  
Everyone can see this information.

Other bug subscribers

Remote bug watches

Bug watches keep track of this bug in other bug trackers.