CVE-2016-7098
GNU Wget < 1.18 - Access List Bypass / Race Condition
Severity Score
Exploit Likelihood
Affected Versions
Public Exploits
3Exploited in Wild
-Decision
Descriptions
Race condition in wget 1.17 and earlier, when used in recursive or mirroring mode to download a single file, might allow remote servers to bypass intended access list restrictions by keeping an HTTP connection open.
Condición de carrera en wget1.17 y versiones anteriores, cuando es utilizado en modo recursivo o de reflejo para descargar un único archivo, podría permitir a servidores remotos eludir las restricciones de lista destinadas al acceso manteniendo una conexión HTTP abierta.
Antti Levomaki, Christian Jalio, and Joonas Pihlaja discovered that Wget incorrectly handled certain HTTP responses. A remote attacker could use this issue to cause Wget to crash, resulting in a denial of service, or possibly execute arbitrary code. Dawid Golunski discovered that Wget incorrectly handled recursive or mirroring mode. A remote attacker could possibly use this issue to bypass intended access list restrictions. Various other issues were also addressed.
CVSS Scores
SSVC
- Decision:-
Timeline
- 2016-08-26 CVE Reserved
- 2016-09-26 CVE Published
- 2016-11-24 First Exploit
- 2024-08-06 CVE Updated
- 2025-03-30 EPSS Updated
- ---------- Exploited in Wild
- ---------- KEV Due Date
CWE
- CWE-362: Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition')
CAPEC
References (9)
URL | Tag | Source |
---|---|---|
http://lists.gnu.org/archive/html/bug-wget/2016-08/msg00134.html | Mailing List | |
http://www.openwall.com/lists/oss-security/2016/08/27/2 | Mailing List |
|
http://www.securityfocus.com/bid/93157 | Vdb Entry | |
https://lists.debian.org/debian-lts-announce/2020/01/msg00031.html | Mailing List |
|
URL | Date | SRC |
---|---|---|
https://packetstorm.news/files/id/139895 | 2016-11-24 | |
https://www.exploit-db.com/exploits/40824 | 2024-08-06 | |
http://lists.gnu.org/archive/html/bug-wget/2016-08/msg00083.html | 2024-08-06 |
URL | Date | SRC |
---|
URL | Date | SRC |
---|---|---|
http://lists.opensuse.org/opensuse-updates/2016-09/msg00044.html | 2017-09-03 | |
http://lists.opensuse.org/opensuse-updates/2017-01/msg00007.html | 2017-09-03 |