[CLSA-2026:1786033005] Fix CVE(s): CVE-2026-15146
Type:
security
Severity:
Moderate
Release date:
2026-08-06 16:16:56 UTC
Description:
* SECURITY UPDATE: SSRF via unvalidated FTP PASV/LPSV response address - debian/patches/CVE-2026-15146.patch: validate the PASV/LPSV response address against the control connection peer in src/ftp-basic.c - CVE-2026-15146
CVEs fixed:
Updated packages:
  • wget_1.17.1-1ubuntu1.5+tuxcare.els3_amd64.deb
    sha:43ac49852b02d48fb5e8db3ae934fdb281412d15
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.