Red Hat Bugzilla – Bug 157499
CAN-2004-2014 wget symlink race
Last modified: 2007-11-30 17:11:05 EST
+++ This bug was initially created as a clone of Bug #157498 +++
Wget 1.9 and 1.9.1 allows local users to overwrite arbitrary files via a symlink
attack on the name of the file being downloaded.