GNU Wget: Arbitrary code execution A vulnerability in GNU Wget might allow an attacker to execute arbitrary code. wget 2019-08-15 2019-08-15 682994 remote 1.20.3 1.20.3

GNU Wget is a free software package for retrieving files using HTTP, HTTPS and FTP, the most widely-used Internet protocols.

A buffer overflow was discovered in GNU’s Wget.

An attacker could possibly execute arbitrary code with the privileges of the process or cause a Denial of Service condition.

There is no known workaround at this time.

All GNU Wget users should upgrade to the latest version:

# emerge --sync # emerge --ask --oneshot --verbose ">=net-misc/wget-1.20.3"
CVE-2019-5953 b-man b-man