Scientific Linux Security Update : wget on SL7.x x86_64
Medium Nessus Plugin ID 95865
SynopsisThe remote Scientific Linux host is missing one or more security updates.
DescriptionSecurity Fix(es) :
- It was found that wget used a file name provided by the server for the downloaded file when following an HTTP redirect to a FTP server resource. This could cause wget to create a file with a different name than expected, possibly allowing the server to execute arbitrary code on the client. (CVE-2016-4971)
SolutionUpdate the affected wget and / or wget-debuginfo packages.