vulnerability

FreeBSD: VID-09849e71-bb12-11e7-8357-3065ec6f3643 (CVE-2017-13089): wget -- Stack overflow in HTTP protocol handling

Severity
9
CVSS
(AV:N/AC:M/Au:N/C:C/I:C/A:C)
Published
Oct 27, 2017
Added
Oct 27, 2017
Modified
Dec 10, 2025

Description

Antti Levomäki, Christian Jalio, Joonas Pihlaja: Wget contains two vulnerabilities, a stack overflow and a heap overflow, in the handling of HTTP chunked encoding. By convincing a user to download a specific link over HTTP, an attacker may be able to execute arbitrary code with the privileges of the user.

Solution

freebsd-upgrade-package-wget
Title
NEW

Explore Exposure Command

Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.