Packages
- wget - retrieves files from the web
Details
It was discovered that Wget did not properly validate the IP address
provided in an FTP PASV response when operating in FTP passive mode. A
remote attacker controlling a malicious FTP server, or an HTTP server
that redirects to an FTP URL, could possibly use this issue to redirect
Wget's data connection to an arbitrary address and perform serv...
