library/www_browser.pl in SWI-Prolog 7.2.3 does not validate strings before launching the program specified by the BROWSER environment variable, which might allow remote attackers to conduct argument-injection attacks via a crafted URL.
{
"binaries": [
{
"binary_version": "7.2.3-2",
"binary_name": "swi-prolog"
},
{
"binary_version": "7.2.3-2",
"binary_name": "swi-prolog-java"
},
{
"binary_version": "7.2.3-2",
"binary_name": "swi-prolog-nox"
},
{
"binary_version": "7.2.3-2",
"binary_name": "swi-prolog-odbc"
},
{
"binary_version": "7.2.3-2",
"binary_name": "swi-prolog-x"
}
]
}{
"binaries": [
{
"binary_version": "7.6.4+dfsg-1build1",
"binary_name": "swi-prolog"
},
{
"binary_version": "7.6.4+dfsg-1build1",
"binary_name": "swi-prolog-bdb"
},
{
"binary_version": "7.6.4+dfsg-1build1",
"binary_name": "swi-prolog-java"
},
{
"binary_version": "7.6.4+dfsg-1build1",
"binary_name": "swi-prolog-nox"
},
{
"binary_version": "7.6.4+dfsg-1build1",
"binary_name": "swi-prolog-odbc"
},
{
"binary_version": "7.6.4+dfsg-1build1",
"binary_name": "swi-prolog-x"
}
]
}{
"binaries": [
{
"binary_version": "7.6.4+dfsg-2ubuntu2",
"binary_name": "swi-prolog"
},
{
"binary_version": "7.6.4+dfsg-2ubuntu2",
"binary_name": "swi-prolog-bdb"
},
{
"binary_version": "7.6.4+dfsg-2ubuntu2",
"binary_name": "swi-prolog-java"
},
{
"binary_version": "7.6.4+dfsg-2ubuntu2",
"binary_name": "swi-prolog-nox"
},
{
"binary_version": "7.6.4+dfsg-2ubuntu2",
"binary_name": "swi-prolog-odbc"
},
{
"binary_version": "7.6.4+dfsg-2ubuntu2",
"binary_name": "swi-prolog-x"
}
]
}{
"binaries": [
{
"binary_version": "8.4.2+dfsg-2ubuntu1",
"binary_name": "swi-prolog"
},
{
"binary_version": "8.4.2+dfsg-2ubuntu1",
"binary_name": "swi-prolog-bdb"
},
{
"binary_version": "8.4.2+dfsg-2ubuntu1",
"binary_name": "swi-prolog-core"
},
{
"binary_version": "8.4.2+dfsg-2ubuntu1",
"binary_name": "swi-prolog-core-packages"
},
{
"binary_version": "8.4.2+dfsg-2ubuntu1",
"binary_name": "swi-prolog-full"
},
{
"binary_version": "8.4.2+dfsg-2ubuntu1",
"binary_name": "swi-prolog-java"
},
{
"binary_version": "8.4.2+dfsg-2ubuntu1",
"binary_name": "swi-prolog-nox"
},
{
"binary_version": "8.4.2+dfsg-2ubuntu1",
"binary_name": "swi-prolog-odbc"
},
{
"binary_version": "8.4.2+dfsg-2ubuntu1",
"binary_name": "swi-prolog-test"
},
{
"binary_version": "8.4.2+dfsg-2ubuntu1",
"binary_name": "swi-prolog-x"
}
]
}{
"binaries": [
{
"binary_version": "9.0.4+dfsg-3.1ubuntu4",
"binary_name": "swi-prolog"
},
{
"binary_version": "9.0.4+dfsg-3.1ubuntu4",
"binary_name": "swi-prolog-bdb"
},
{
"binary_version": "9.0.4+dfsg-3.1ubuntu4",
"binary_name": "swi-prolog-core"
},
{
"binary_version": "9.0.4+dfsg-3.1ubuntu4",
"binary_name": "swi-prolog-core-packages"
},
{
"binary_version": "9.0.4+dfsg-3.1ubuntu4",
"binary_name": "swi-prolog-full"
},
{
"binary_version": "9.0.4+dfsg-3.1ubuntu4",
"binary_name": "swi-prolog-java"
},
{
"binary_version": "9.0.4+dfsg-3.1ubuntu4",
"binary_name": "swi-prolog-nox"
},
{
"binary_version": "9.0.4+dfsg-3.1ubuntu4",
"binary_name": "swi-prolog-odbc"
},
{
"binary_version": "9.0.4+dfsg-3.1ubuntu4",
"binary_name": "swi-prolog-test"
},
{
"binary_version": "9.0.4+dfsg-3.1ubuntu4",
"binary_name": "swi-prolog-x"
}
]
}{
"binaries": [
{
"binary_version": "9.0.4+dfsg-3.1ubuntu4",
"binary_name": "swi-prolog"
},
{
"binary_version": "9.0.4+dfsg-3.1ubuntu4",
"binary_name": "swi-prolog-bdb"
},
{
"binary_version": "9.0.4+dfsg-3.1ubuntu4",
"binary_name": "swi-prolog-core"
},
{
"binary_version": "9.0.4+dfsg-3.1ubuntu4",
"binary_name": "swi-prolog-core-packages"
},
{
"binary_version": "9.0.4+dfsg-3.1ubuntu4",
"binary_name": "swi-prolog-full"
},
{
"binary_version": "9.0.4+dfsg-3.1ubuntu4",
"binary_name": "swi-prolog-java"
},
{
"binary_version": "9.0.4+dfsg-3.1ubuntu4",
"binary_name": "swi-prolog-nox"
},
{
"binary_version": "9.0.4+dfsg-3.1ubuntu4",
"binary_name": "swi-prolog-odbc"
},
{
"binary_version": "9.0.4+dfsg-3.1ubuntu4",
"binary_name": "swi-prolog-test"
},
{
"binary_version": "9.0.4+dfsg-3.1ubuntu4",
"binary_name": "swi-prolog-x"
}
]
}{
"binaries": [
{
"binary_version": "9.2.9+dfsg-1",
"binary_name": "swi-prolog"
},
{
"binary_version": "9.2.9+dfsg-1",
"binary_name": "swi-prolog-bdb"
},
{
"binary_version": "9.2.9+dfsg-1",
"binary_name": "swi-prolog-core"
},
{
"binary_version": "9.2.9+dfsg-1",
"binary_name": "swi-prolog-core-packages"
},
{
"binary_version": "9.2.9+dfsg-1",
"binary_name": "swi-prolog-full"
},
{
"binary_version": "9.2.9+dfsg-1",
"binary_name": "swi-prolog-java"
},
{
"binary_version": "9.2.9+dfsg-1",
"binary_name": "swi-prolog-nox"
},
{
"binary_version": "9.2.9+dfsg-1",
"binary_name": "swi-prolog-odbc"
},
{
"binary_version": "9.2.9+dfsg-1",
"binary_name": "swi-prolog-test"
},
{
"binary_version": "9.2.9+dfsg-1",
"binary_name": "swi-prolog-x"
}
]
}