Univention Bugzilla – Bug 46980
wget: Multiple issues (4.2)
Last modified: 2018-05-09 14:46:43 CEST
New Debian wget 1.16-1+deb8u5 fixes: This update addresses the following issue: * Fix cookie injection (CVE-2018-0494) CVE-2018-0494 wget: Cookie injection allows malicious website to write arbitrary cookie entries into cookie jar
[4.2-3] 9d0b92fe34 Bug #46980: wget_1.16-1+deb8u5 doc/errata/staging/wget.yaml | 12 ++++++++++++ piuparts @ <http://10.200.17.11/4.2-3/#622077597855275389>
--- mirror/ftp/4.2/unmaintained/component/4.2-3-errata/source/wget_1.16-1+deb8u4.dsc +++ apt/ucs_4.2-0-errata4.2-3/source/wget_1.16-1+deb8u5.dsc @@ -1,3 +1,8 @@ +1.16-1+deb8u5 [Sun, 06 May 2018 21:24:51 +0200] Salvatore Bonaccorso <carnil@debian.org>: + + * Non-maintainer upload by the Security Team. + * Fix cookie injection (CVE-2018-0494) (Closes: #898076) + 1.16-1+deb8u4 [Thu, 26 Oct 2017 19:38:43 +0200] Moritz Muehlenhoff <jmm@debian.org>: * CVE-2017-13089 / CVE-2017-13090
* No UCS specific patches * Comparison to previously shipped version ok * Binary package update Ok * Advisory Ok
<http://errata.software-univention.de/ucs/4.2/417.html>