CVE-2016-7098 PUBLISHED

Race condition in wget 1.17 and earlier, when used in recursive or mirroring mode to download a single file, might allow remote servers to bypass intended access list restrictions by keeping an HTTP connection open.

EPSS 8.82% · 92.5th percentile

Risk Scores

EPSS Score
8.82%
92.5th percentile

Affected Products

VendorProductVersions
Ubuntu:14.04:LTSwget0, 1.14-2ubuntu1, 1.14-5ubuntu1
Ubuntu:16.04:LTSwget0, 1.16.1-1ubuntu1, 1.17.1-1ubuntu1

Timeline

References

Open in Interactive Console →