library/www_browser.pl in SWI-Prolog 7.2.3 does not validate strings before launching the program specified by the BROWSER environment variable, which might allow remote attackers to conduct argument-injection attacks via a crafted URL.
{
"binaries": [
{
"binary_name": "swi-prolog",
"binary_version": "7.2.3-2"
},
{
"binary_name": "swi-prolog-java",
"binary_version": "7.2.3-2"
},
{
"binary_name": "swi-prolog-nox",
"binary_version": "7.2.3-2"
},
{
"binary_name": "swi-prolog-odbc",
"binary_version": "7.2.3-2"
},
{
"binary_name": "swi-prolog-x",
"binary_version": "7.2.3-2"
}
]
}{
"binaries": [
{
"binary_name": "swi-prolog",
"binary_version": "7.6.4+dfsg-1build1"
},
{
"binary_name": "swi-prolog-bdb",
"binary_version": "7.6.4+dfsg-1build1"
},
{
"binary_name": "swi-prolog-java",
"binary_version": "7.6.4+dfsg-1build1"
},
{
"binary_name": "swi-prolog-nox",
"binary_version": "7.6.4+dfsg-1build1"
},
{
"binary_name": "swi-prolog-odbc",
"binary_version": "7.6.4+dfsg-1build1"
},
{
"binary_name": "swi-prolog-x",
"binary_version": "7.6.4+dfsg-1build1"
}
]
}{
"binaries": [
{
"binary_name": "swi-prolog",
"binary_version": "7.6.4+dfsg-2ubuntu2"
},
{
"binary_name": "swi-prolog-bdb",
"binary_version": "7.6.4+dfsg-2ubuntu2"
},
{
"binary_name": "swi-prolog-java",
"binary_version": "7.6.4+dfsg-2ubuntu2"
},
{
"binary_name": "swi-prolog-nox",
"binary_version": "7.6.4+dfsg-2ubuntu2"
},
{
"binary_name": "swi-prolog-odbc",
"binary_version": "7.6.4+dfsg-2ubuntu2"
},
{
"binary_name": "swi-prolog-x",
"binary_version": "7.6.4+dfsg-2ubuntu2"
}
]
}{
"binaries": [
{
"binary_name": "swi-prolog",
"binary_version": "8.4.2+dfsg-2ubuntu1"
},
{
"binary_name": "swi-prolog-bdb",
"binary_version": "8.4.2+dfsg-2ubuntu1"
},
{
"binary_name": "swi-prolog-core",
"binary_version": "8.4.2+dfsg-2ubuntu1"
},
{
"binary_name": "swi-prolog-core-packages",
"binary_version": "8.4.2+dfsg-2ubuntu1"
},
{
"binary_name": "swi-prolog-full",
"binary_version": "8.4.2+dfsg-2ubuntu1"
},
{
"binary_name": "swi-prolog-java",
"binary_version": "8.4.2+dfsg-2ubuntu1"
},
{
"binary_name": "swi-prolog-nox",
"binary_version": "8.4.2+dfsg-2ubuntu1"
},
{
"binary_name": "swi-prolog-odbc",
"binary_version": "8.4.2+dfsg-2ubuntu1"
},
{
"binary_name": "swi-prolog-test",
"binary_version": "8.4.2+dfsg-2ubuntu1"
},
{
"binary_name": "swi-prolog-x",
"binary_version": "8.4.2+dfsg-2ubuntu1"
}
]
}{
"binaries": [
{
"binary_name": "swi-prolog",
"binary_version": "9.0.4+dfsg-3.1ubuntu4"
},
{
"binary_name": "swi-prolog-bdb",
"binary_version": "9.0.4+dfsg-3.1ubuntu4"
},
{
"binary_name": "swi-prolog-core",
"binary_version": "9.0.4+dfsg-3.1ubuntu4"
},
{
"binary_name": "swi-prolog-core-packages",
"binary_version": "9.0.4+dfsg-3.1ubuntu4"
},
{
"binary_name": "swi-prolog-full",
"binary_version": "9.0.4+dfsg-3.1ubuntu4"
},
{
"binary_name": "swi-prolog-java",
"binary_version": "9.0.4+dfsg-3.1ubuntu4"
},
{
"binary_name": "swi-prolog-nox",
"binary_version": "9.0.4+dfsg-3.1ubuntu4"
},
{
"binary_name": "swi-prolog-odbc",
"binary_version": "9.0.4+dfsg-3.1ubuntu4"
},
{
"binary_name": "swi-prolog-test",
"binary_version": "9.0.4+dfsg-3.1ubuntu4"
},
{
"binary_name": "swi-prolog-x",
"binary_version": "9.0.4+dfsg-3.1ubuntu4"
}
]
}{
"binaries": [
{
"binary_name": "swi-prolog",
"binary_version": "9.2.9+dfsg-1"
},
{
"binary_name": "swi-prolog-bdb",
"binary_version": "9.2.9+dfsg-1"
},
{
"binary_name": "swi-prolog-core",
"binary_version": "9.2.9+dfsg-1"
},
{
"binary_name": "swi-prolog-core-packages",
"binary_version": "9.2.9+dfsg-1"
},
{
"binary_name": "swi-prolog-full",
"binary_version": "9.2.9+dfsg-1"
},
{
"binary_name": "swi-prolog-java",
"binary_version": "9.2.9+dfsg-1"
},
{
"binary_name": "swi-prolog-nox",
"binary_version": "9.2.9+dfsg-1"
},
{
"binary_name": "swi-prolog-odbc",
"binary_version": "9.2.9+dfsg-1"
},
{
"binary_name": "swi-prolog-test",
"binary_version": "9.2.9+dfsg-1"
},
{
"binary_name": "swi-prolog-x",
"binary_version": "9.2.9+dfsg-1"
}
]
}