![]() |
Home ▼ Bookkeeping
Online ▼ Security
Audits ▼
Managed
DNS ▼
About
Order
FAQ
Acceptable Use Policy
Dynamic DNS Clients
Configure Domains Dyanmic DNS Update Password Network
Monitor ▼
Enterprise Package
Advanced Package
Standard Package
Free Trial
FAQ
Price/Feature Summary
Order/Renew
Examples
Configure/Status Alert Profiles | ||
CVE ID: | CAN-2004-2014 |
Description: | Wget 1.9 and 1.9.1 allows local users to overwrite arbitrary files via a symlink attack on the name of the file being downloaded. |
Test IDs: | None available |
Cross References: |
Common Vulnerability Exposure (CVE) ID: CVE-2004-2014 BugTraq ID: 10361 http://www.securityfocus.com/bid/10361 Bugtraq: 20040516 Wget race condition vulnerability (Google Search) http://marc.info/?l=bugtraq&m=108481268725276&w=2 http://www.mandriva.com/security/advisories?name=MDKSA-2005:204 http://marc.info/?l=wget&m=108483270227139&w=2 http://marc.info/?l=wget&m=108482747906833&w=2 https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A9830 RedHat Security Advisories: RHSA-2005:771 http://www.redhat.com/support/errata/RHSA-2005-771.html http://secunia.com/advisories/17399 https://usn.ubuntu.com/145-1/ XForce ISS Database: wget-lock-race-condition(16167) https://exchange.xforce.ibmcloud.com/vulnerabilities/16167 |