[MBT] new ticket for pkg wget "Possible remote exploitable buffer underun?"
bugs at pld-linux.org
bugs at pld-linux.org
Wed Oct 1 16:42:55 CEST 2003
Date: 2003-10-01 16:42:55+02 Author: (kreutzm) <kreutzm at itp.uni-hannover.de>
Title: Possible remote exploitable buffer underun?
Ticket ID: #749
Ticket URL: http://bugs.pld-linux.org/?bug=749
Package: wget-1:1.8.2-2
Distribution: PLD-1.0.updates.security
Category: security problem
Current state: opened
Text:
SuSE-SA:2003:032 mentions the following in the "Pending vulnerabilities" section:
- wget
When handling long URLs, a buffer underrun may occur in the wget program. This underrun may be exploitable remotely. The update packages are available now on our ftp servers.
I don't know if this applies to PLD as well.
More information about the pld-bugs
mailing list