Skip to content
New issue

Have a question about this project? # for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “#”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? # to your account

update: wget #1101

Open
dongsupark opened this issue Jun 27, 2023 · 0 comments
Open

update: wget #1101

dongsupark opened this issue Jun 27, 2023 · 0 comments
Labels
advisory/upstream-blocked blocked by upstream projects advisory security advisory cvss/MEDIUM >= 4 && < 7 assessed CVSS security security concerns

Comments

@dongsupark
Copy link
Member

dongsupark commented Jun 27, 2023

Name: wget
CVEs: CVE-2021-31879
CVSSs: 6.1
Action Needed: TBD

Summary: GNU Wget through 1.21.1 does not omit the Authorization header upon a redirect to a different origin, a related issue to CVE-2018-1000007.

refmap.gentoo: https://bugs.gentoo.org/786957

@dongsupark dongsupark added security security concerns advisory security advisory cvss/MEDIUM >= 4 && < 7 assessed CVSS advisory/upstream-blocked blocked by upstream projects labels Jun 27, 2023
@dongsupark dongsupark moved this from 📝 Needs Triage to ⏳ Long Term in Flatcar tactical, release planning, and roadmap Jun 27, 2023
# for free to join this conversation on GitHub. Already have an account? # to comment
Labels
advisory/upstream-blocked blocked by upstream projects advisory security advisory cvss/MEDIUM >= 4 && < 7 assessed CVSS security security concerns
Projects
Development

No branches or pull requests

1 participant