First published: Wed Dec 26 2018(Updated: )
Last updated 24 July 2024
Credit: cve@mitre.org cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
GNU Wget | <1.20.1 | |
redhat/wget | <1.20.1 | 1.20.1 |
debian/wget | 1.21-1+deb11u1 1.21.3-1 1.24.5-2 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2018-20483 is a vulnerability in GNU Wget before version 1.20.1 that allows local users to obtain sensitive information by reading the user.xdg.origin.url metadata attribute of downloaded files.
CVE-2018-20483 affects GNU Wget versions before 1.20.1.
CVE-2018-20483 has a severity rating of 7.8, which is considered high.
To fix the CVE-2018-20483 vulnerability, update GNU Wget to version 1.20.1 or later.
You can find more information about CVE-2018-20483 at the following references: [1] http://git.savannah.gnu.org/cgit/wget.git/tree/NEWS [2] http://www.securityfocus.com/bid/106358 [3] https://access.redhat.com/errata/RHSA-2019:3701