ELSA-2026-62144-0

ELSA-2026-62144-0 - wget security, bug fix, and enhancement update

Type:SECURITY
Impact:MODERATE
Release Date:2026-09-03

Description


[1.19.5-16.0.1]
- SSLv3 support dropped from openssl, v3 test certificates need to be replaced [Orabug: 29613455]

[1.19.5-16]
- Resolves: RHEL-145875 - async unsafe code in signal handler context

[1.19.5-15]
- Fix CVE-2026-58469: buffer underflow in clean_metalink_string()
- Resolves: RHEL-212496

[1.19.5-14]
- Fix CVE-2026-58471: buffer overflow in convert_fname()
- Resolves: RHEL-194519

[1.19.5-13]
- Fix CVE-2026-58472: integer and buffer overflow in html_quote_string()
- Resolves: RHEL-210627


Related CVEs


CVE-2026-58469
CVE-2026-58471
CVE-2026-58472

Updated Packages


Release/ArchitectureFilenamesha256Superseded By AdvisoryChannel Label
Oracle Linux 8 (aarch64) wget-1.19.5-16.0.1.el8_10.src.rpm9acfd62b453e1c309fba23186fc7311097633f3896ba9f5c6ee22e5bfad81969-ol8_aarch64_appstream
wget-1.19.5-16.0.1.el8_10.aarch64.rpm6fd9110eb93af4a757f042e7303e9282304aa61e6121a05807b3eef917a5ad88-ol8_aarch64_appstream
Oracle Linux 8 (x86_64) wget-1.19.5-16.0.1.el8_10.src.rpm9acfd62b453e1c309fba23186fc7311097633f3896ba9f5c6ee22e5bfad81969-ol8_x86_64_appstream
wget-1.19.5-16.0.1.el8_10.x86_64.rpm4c100392644c851a68bb974b271c6db5255cc7d083c0a085bb63cddbf314052e-ol8_x86_64_appstream



This page is generated automatically and has not been checked for errors or omissions. For clarification or corrections please contact the Oracle Linux ULN team

software.hardware.complete