It was discovered that Wget incorrectly handled semicolons in the userinfo subcomponent of a URI. A remote attacker could possibly trick a user into connecting to a different host than expected.
{ "binaries": [ { "binary_name": "wget", "binary_version": "1.20.3-1ubuntu2.1" }, { "binary_name": "wget-dbgsym", "binary_version": "1.20.3-1ubuntu2.1" }, { "binary_name": "wget-udeb", "binary_version": "1.20.3-1ubuntu2.1" } ], "availability": "No subscription required" }
{ "binaries": [ { "binary_name": "wget", "binary_version": "1.21.2-2ubuntu1.1" }, { "binary_name": "wget-dbgsym", "binary_version": "1.21.2-2ubuntu1.1" } ], "availability": "No subscription required" }
{ "binaries": [ { "binary_name": "wget", "binary_version": "1.21.4-1ubuntu4.1" }, { "binary_name": "wget-dbgsym", "binary_version": "1.21.4-1ubuntu4.1" } ], "availability": "No subscription required" }