Total vulnerabilities in the database
The FontManager._get_nix_font_path function in formatters/img.py in Pygments 1.2.2 through 2.0.2 allows remote attackers to execute arbitrary commands via shell metacharacters in a font name.
Software | From | Fixed in |
---|---|---|
canonical / ubuntu_linux | 12.04 | 12.04.x |
canonical / ubuntu_linux | 15.10 | 15.10.x |
canonical / ubuntu_linux | 14.04 | 14.04.x |
canonical / ubuntu_linux | 15.04 | 15.04.x |
pygments / pygments | 1.6 | 1.6.x |
pygments / pygments | 2.0-rc1 | 2.0-rc1.x |
pygments / pygments | 1.3.1 | 1.3.1.x |
pygments / pygments | 2.0.1 | 2.0.1.x |
pygments / pygments | 1.4 | 1.4.x |
pygments / pygments | 1.3 | 1.3.x |
pygments / pygments | 1.6-rc1 | 1.6-rc1.x |
pygments / pygments | 2.0 | 2.0.x |
pygments / pygments | 1.5 | 1.5.x |
pygments / pygments | 1.2.2 | 1.2.2.x |
![]() |
1.2.2 | 2.1 |