An issue in NetSurf v.3.11 allows a remote attacker to execute arbitrary code via the domnodenormalize function
{
"binaries": [
{
"binary_name": "netsurf",
"binary_version": "3.2+dfsg-2.2build1"
},
{
"binary_name": "netsurf-common",
"binary_version": "3.2+dfsg-2.2build1"
},
{
"binary_name": "netsurf-fb",
"binary_version": "3.2+dfsg-2.2build1"
},
{
"binary_name": "netsurf-gtk",
"binary_version": "3.2+dfsg-2.2build1"
}
]
}