Skip to content
Ubuntu 26.04 LTS Wget Important Denial of Service 2026

Ubuntu 26.04 LTS Wget Important Denial of Service 2026

Linuxsecurity LinuxSecurity Advisories August 20, 2026

Find practical guidance for preventing, investigating, and responding to Linux security problems. Review Linux Privileges ×

USN-8543-1 introduced a regression in Wget. Software Description: - wget: retrieves files from the web Details: USN-8543-1 fixed vulnerabilities in Wget. The update for CVE-2026-58472 was incomplete and could introduce a regression. This update fixes the problem. We apologize for the inconvenience. Original advisory details: It was discovered that Wget mishandled semicolons in the userinfo subcomponent of a URL. A remote attacker could possibly use this issue to trick a user into connecting to a different host than intended. This issue only affected Ubuntu 14.04 LTS. (CVE-2024-38428) It was discovered that Wget incorrectly handled Metalink documents containing a whitespace-only URL. A remote attacker could possibly use this issue to cause a denial of service. This issue only affected Ubuntu 18.04 LTS, Ubuntu 20.04 LTS, Ubuntu 22.04 LTS, Ubuntu 24.04 LTS, and Ubuntu 26.04 LTS. (CVE-2026-58469) It was discovered that Wget incorrectly handled Content-Range header va... Read the Full Advisory

USN-8543-1 introduced a regression in Wget.

Software Description:

- wget: retrieves files from the web

USN-8543-1 fixed vulnerabilities in Wget. The update for CVE-2026-58472

was incomplete and could introduce a regression. This update fixes the

We apologize for the inconvenience.

Original advisory details:

It was discovered that Wget mishandled semicolons in the userinfo

subcomponent of a URL. A remote attacker could possibly use this issue

to trick a user into connecting to a different host than intended. This

issue only affected Ubuntu 14.04 LTS. (CVE-2024-38428)

It was discovered that Wget incorrectly handled Metalink documents

containing a whitespace-only URL. A remote attacker could possibly use

this issue to cause a denial of service. This issue only affected Ubuntu

18.04 LTS, Ubuntu 20.04 LTS, Ubuntu 22.04 LTS, Ubuntu 24.04 LTS, and

Ubuntu 26.04 LTS. (CVE-2026-58469)

It was discovered that Wget incorrectly handled Content-Range header

The problem can be corrected by updating your system to the following package versions: Ubuntu 26.04 LTS wget 1.25.0-2ubuntu4.4 Ubuntu 24.04 LTS wget 1.21.4-1ubuntu4.5 Ubuntu 22.04 LTS wget 1.21.2-2ubuntu1.5 Ubuntu 20.04 LTS wget 1.20.3-1ubuntu2.1+esm4 Available with Ubuntu Pro Ubuntu 18.04 LTS wget 1.19.4-1ubuntu2.2+esm5 Available with Ubuntu Pro Ubuntu 16.04 LTS wget 1.17.1-1ubuntu1.5+esm5 Available with Ubuntu Pro Ubuntu 14.04 LTS wget 1.15-1ubuntu1.14.04.5+esm4 Available with Ubuntu Pro In general, a standard system update will make all the necessary changes.

Ubuntu Security Notice USN-8543-2

Get the latest Linux and open source security news straight to your inbox.

Extracted Entities

Attack Types (1)

Companies (1)

Platforms (1)