ELSA-2026-62144-0 - wget security, bug fix, and enhancement update
| Type: | SECURITY |
| Impact: | MODERATE |
| Release Date: | 2026-09-03 |
Description
[1.19.5-16.0.1]
- SSLv3 support dropped from openssl, v3 test certificates need to be replaced [Orabug: 29613455]
[1.19.5-16]
- Resolves: RHEL-145875 - async unsafe code in signal handler context
[1.19.5-15]
- Fix CVE-2026-58469: buffer underflow in clean_metalink_string()
- Resolves: RHEL-212496
[1.19.5-14]
- Fix CVE-2026-58471: buffer overflow in convert_fname()
- Resolves: RHEL-194519
[1.19.5-13]
- Fix CVE-2026-58472: integer and buffer overflow in html_quote_string()
- Resolves: RHEL-210627
Related CVEs
Updated Packages
| Release/Architecture | Filename | sha256 | Superseded By Advisory | Channel Label |
|
| Oracle Linux 8 (aarch64) | wget-1.19.5-16.0.1.el8_10.src.rpm | 9acfd62b453e1c309fba23186fc7311097633f3896ba9f5c6ee22e5bfad81969 | - | ol8_aarch64_appstream |
| wget-1.19.5-16.0.1.el8_10.aarch64.rpm | 6fd9110eb93af4a757f042e7303e9282304aa61e6121a05807b3eef917a5ad88 | - | ol8_aarch64_appstream |
|
| Oracle Linux 8 (x86_64) | wget-1.19.5-16.0.1.el8_10.src.rpm | 9acfd62b453e1c309fba23186fc7311097633f3896ba9f5c6ee22e5bfad81969 | - | ol8_x86_64_appstream |
| wget-1.19.5-16.0.1.el8_10.x86_64.rpm | 4c100392644c851a68bb974b271c6db5255cc7d083c0a085bb63cddbf314052e | - | ol8_x86_64_appstream |
This page is generated automatically and has not been checked for errors or omissions. For clarification
or corrections please contact the Oracle Linux ULN team