bug-wget
[Top][All Lists]
Advanced

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

Re: [Bug-wget] security risk of unexpected download filenames


From: Solar Designer
Subject: Re: [Bug-wget] security risk of unexpected download filenames
Date: Sat, 12 Jun 2010 16:54:08 +0400
User-agent: Mutt/1.4.2.3i

On Fri, Jun 11, 2010 at 08:58:04PM +0300, Doruk Fisek wrote:
> Is there going to be a development in this issue?

I assume that you meant the issue with single-file downloads, not the
specific piece you quoted.

I think that Giuseppe Scrivano is the one to comment and decide on this.

Giuseppe - a response from you will be appreciated.

Here's a summary of relevant postings:
http://lists.openwall.net/bugtraq/2010/06/11/6

oCERT advisory:
http://www.ocert.org/advisories/ocert-2010-001.html

> I am the Pardus GNU/Linux maintainer of wget and the security team has a
> open security bug for this advisory.
> 
>                    Doruk

Alexander



reply via email to

[Prev in Thread] Current Thread [Next in Thread]