Fedora 10 : wget-1.12-2.fc10 (2009-11739)

This script is Copyright (C) 2009-2016 Tenable Network Security, Inc.


Synopsis :

The remote Fedora host is missing a security update.

Description :

- Wed Nov 18 2009 Karsten Hopp <karsten at redhat.com>
1.12-2

- don't provide /usr/share/info/dir

- Tue Nov 17 2009 Karsten Hopp <karsten at redhat.com>
1.12-1

- update to wget-1.12

- fixes CVE-2009-3490 wget: incorrect verification of
SSL certificate with NUL in name

- Fri Aug 21 2009 Tomas Mraz <tmraz at redhat.com> -
1.11.4-5

- rebuilt with new openssl

- Mon Jul 27 2009 Fedora Release Engineering <rel-eng at
lists.fedoraproject.org> - 1.11.4-4

- Rebuilt for
https://fedoraproject.org/wiki/Fedora_12_Mass_Rebuild

- Wed Feb 25 2009 Fedora Release Engineering <rel-eng at
lists.fedoraproject.org> - 1.11.4-3

- Rebuilt for
https://fedoraproject.org/wiki/Fedora_11_Mass_Rebuild

- Sun Jan 18 2009 Tomas Mraz <tmraz at redhat.com>
1.11.4-2

- rebuild with new openssl

Note that Tenable Network Security has extracted the preceding
description block directly from the Fedora security advisory. Tenable
has attempted to automatically clean and format it as much as possible
without introducing additional issues.

See also :

https://bugzilla.redhat.com/show_bug.cgi?id=520454
https://fedoraproject.org/wiki/Fedora_11_Mass_Rebuild
https://fedoraproject.org/wiki/Fedora_12_Mass_Rebuild
http://www.nessus.org/u?4a700d8a

Solution :

Update the affected wget package.

Risk factor :

Medium / CVSS Base Score : 6.8
(CVSS2#AV:N/AC:M/Au:N/C:P/I:P/A:P)
CVSS Temporal Score : 5.9
(CVSS2#E:ND/RL:OF/RC:C)
Public Exploit Available : true

Family: Fedora Local Security Checks

Nessus Plugin ID: 42986 (fedora_2009-11739.nasl)

Bugtraq ID: 36205

CVE ID: CVE-2009-3490

Ready to Amp Up Your Nessus Experience?

Get Nessus Professional to scan unlimited IPs, run compliance checks & more

Buy Nessus Professional Now