uiutil.c in FontForge through 20170731 does not validate strings before launching the program specified by the BROWSER environment variable, which might allow remote attackers to conduct argument-injection attacks via a crafted URL, a different vulnerability than CVE-2017-17534.
{ "binaries": [ { "binary_name": "fontforge", "binary_version": "20120731.b-7.1ubuntu0.1+esm1" }, { "binary_name": "fontforge-common", "binary_version": "20120731.b-7.1ubuntu0.1+esm1" }, { "binary_name": "fontforge-nox", "binary_version": "20120731.b-7.1ubuntu0.1+esm1" }, { "binary_name": "libfontforge-dev", "binary_version": "20120731.b-7.1ubuntu0.1+esm1" }, { "binary_name": "libfontforge1", "binary_version": "20120731.b-7.1ubuntu0.1+esm1" }, { "binary_name": "libgdraw4", "binary_version": "20120731.b-7.1ubuntu0.1+esm1" }, { "binary_name": "python-fontforge", "binary_version": "20120731.b-7.1ubuntu0.1+esm1" } ] }
{ "binaries": [ { "binary_name": "fontforge", "binary_version": "1:20170731~dfsg-1ubuntu0.1~esm1" }, { "binary_name": "fontforge-common", "binary_version": "1:20170731~dfsg-1ubuntu0.1~esm1" }, { "binary_name": "fontforge-nox", "binary_version": "1:20170731~dfsg-1ubuntu0.1~esm1" }, { "binary_name": "libfontforge-dev", "binary_version": "1:20170731~dfsg-1ubuntu0.1~esm1" }, { "binary_name": "libfontforge2", "binary_version": "1:20170731~dfsg-1ubuntu0.1~esm1" }, { "binary_name": "libgdraw5", "binary_version": "1:20170731~dfsg-1ubuntu0.1~esm1" }, { "binary_name": "python-fontforge", "binary_version": "1:20170731~dfsg-1ubuntu0.1~esm1" } ] }
{ "binaries": [ { "binary_name": "fontforge", "binary_version": "1:20190801~dfsg-4ubuntu0.1" }, { "binary_name": "fontforge-common", "binary_version": "1:20190801~dfsg-4ubuntu0.1" }, { "binary_name": "fontforge-extras", "binary_version": "1:20190801~dfsg-4ubuntu0.1" }, { "binary_name": "fontforge-nox", "binary_version": "1:20190801~dfsg-4ubuntu0.1" }, { "binary_name": "libfontforge-dev", "binary_version": "1:20190801~dfsg-4ubuntu0.1" }, { "binary_name": "libfontforge3", "binary_version": "1:20190801~dfsg-4ubuntu0.1" }, { "binary_name": "libgdraw6", "binary_version": "1:20190801~dfsg-4ubuntu0.1" }, { "binary_name": "python3-fontforge", "binary_version": "1:20190801~dfsg-4ubuntu0.1" } ] }
{ "binaries": [ { "binary_name": "fontforge", "binary_version": "1:20201107~dfsg-4+deb11u1build0.22.04.1" }, { "binary_name": "fontforge-common", "binary_version": "1:20201107~dfsg-4+deb11u1build0.22.04.1" }, { "binary_name": "fontforge-extras", "binary_version": "1:20201107~dfsg-4+deb11u1build0.22.04.1" }, { "binary_name": "fontforge-nox", "binary_version": "1:20201107~dfsg-4+deb11u1build0.22.04.1" }, { "binary_name": "libfontforge4", "binary_version": "1:20201107~dfsg-4+deb11u1build0.22.04.1" }, { "binary_name": "python3-fontforge", "binary_version": "1:20201107~dfsg-4+deb11u1build0.22.04.1" } ] }
{ "binaries": [ { "binary_name": "fontforge", "binary_version": "1:20230101~dfsg-1.1build1" }, { "binary_name": "fontforge-common", "binary_version": "1:20230101~dfsg-1.1build1" }, { "binary_name": "fontforge-extras", "binary_version": "1:20230101~dfsg-1.1build1" }, { "binary_name": "fontforge-nox", "binary_version": "1:20230101~dfsg-1.1build1" }, { "binary_name": "libfontforge4", "binary_version": "1:20230101~dfsg-1.1build1" }, { "binary_name": "python3-fontforge", "binary_version": "1:20230101~dfsg-1.1build1" } ] }
{ "binaries": [ { "binary_name": "fontforge", "binary_version": "1:20230101~dfsg-4build1" }, { "binary_name": "fontforge-common", "binary_version": "1:20230101~dfsg-4build1" }, { "binary_name": "fontforge-extras", "binary_version": "1:20230101~dfsg-4build1" }, { "binary_name": "fontforge-nox", "binary_version": "1:20230101~dfsg-4build1" }, { "binary_name": "libfontforge4", "binary_version": "1:20230101~dfsg-4build1" }, { "binary_name": "python3-fontforge", "binary_version": "1:20230101~dfsg-4build1" } ] }