First published: Tue Jul 19 2011(Updated: )
Multiple SQL injection flaws and one stack based buffer overflow flaw were found in MapServer: [1] <a href="http://lists.osgeo.org/pipermail/mapserver-users/2011-July/069430.html">http://lists.osgeo.org/pipermail/mapserver-users/2011-July/069430.html</a> More from [1]: MapServer developers have discovered flaws in the OGC filter support in MapServer. That code is used in support of WFS, WMS-SLD and SOS specifications. All versions may be susceptible to SQL injection under certain circumstances. The extent of the vulnerability depends on the MapServer version, relational database and mapfile configuration being used. All users are ** strongly encouraged ** to upgrade to these latest releases. The 5.6.7 and 4.10.7 releases also address one significant potentially exploitable buffer overflow (6.0 branch is not vulneralble). References: [1] <a href="http://lists.osgeo.org/pipermail/mapserver-users/2011-July/069430.html">http://lists.osgeo.org/pipermail/mapserver-users/2011-July/069430.html</a> [2] <a href="http://trac.osgeo.org/mapserver/ticket/3903">http://trac.osgeo.org/mapserver/ticket/3903</a> [3] <a class="bz_bug_link bz_status_CLOSED bz_closed bz_public " title="CLOSED ERRATA - MapServer SQL injection vulnerabilities" href="show_bug.cgi?id=722545">https://bugzilla.redhat.com/show_bug.cgi?id=722545</a> [4] <a href="http://www.openwall.com/lists/oss-security/2011/07/19/11">http://www.openwall.com/lists/oss-security/2011/07/19/11</a> (CVE Request) Relevant upstream patches: [5] <a href="http://trac.osgeo.org/mapserver/attachment/ticket/3903/ticket3903_6.0.x.patch">http://trac.osgeo.org/mapserver/attachment/ticket/3903/ticket3903_6.0.x.patch</a> (for 6.0.x branch) [6] <a href="http://trac.osgeo.org/mapserver/attachment/ticket/3903/ticket3903_5.6.x.patch">http://trac.osgeo.org/mapserver/attachment/ticket/3903/ticket3903_5.6.x.patch</a> (for 5.6.x branch) [7] <a href="http://trac.osgeo.org/mapserver/attachment/ticket/3903/ticket3903_5.4.x.patch">http://trac.osgeo.org/mapserver/attachment/ticket/3903/ticket3903_5.4.x.patch</a> (for 5.4.x branch) [8] <a href="http://trac.osgeo.org/mapserver/attachment/ticket/3903/ticket3903_5.2.x.patch">http://trac.osgeo.org/mapserver/attachment/ticket/3903/ticket3903_5.2.x.patch</a> (for 5.2.x branch) [9] <a href="http://trac.osgeo.org/mapserver/attachment/ticket/3903/ticket3903_5.0.x.patch">http://trac.osgeo.org/mapserver/attachment/ticket/3903/ticket3903_5.0.x.patch</a> (for 5.0.x branch) [10] <a href="http://trac.osgeo.org/mapserver/attachment/ticket/3903/ticket3903_4.10.x.patch">http://trac.osgeo.org/mapserver/attachment/ticket/3903/ticket3903_4.10.x.patch</a> (for 4.10.x branch)
Credit: secalert@redhat.com
Affected Software | Affected Version | How to fix |
---|---|---|
Osgeo Mapserver | =4.2.0-beta1 | |
Osgeo Mapserver | =4.4.0-beta1 | |
Osgeo Mapserver | =4.4.0-beta2 | |
Osgeo Mapserver | =4.6.0-beta1 | |
Osgeo Mapserver | =4.6.0-beta2 | |
Osgeo Mapserver | =4.6.0-beta3 | |
Osgeo Mapserver | =4.8.0-beta2 | |
Osgeo Mapserver | =4.8.0-beta1 | |
Osgeo Mapserver | =4.8.0-beta3 | |
Osgeo Mapserver | =4.8.0-rc2 | |
Osgeo Mapserver | =4.8.0-rc1 | |
Osgeo Mapserver | =4.10.0 | |
Osgeo Mapserver | =4.10.0-beta1 | |
Osgeo Mapserver | =4.10.0-rc1 | |
Osgeo Mapserver | =4.10.0-beta3 | |
Osgeo Mapserver | =4.10.0-beta2 | |
Osgeo Mapserver | =4.10.4 | |
Osgeo Mapserver | =4.10.2 | |
Osgeo Mapserver | =4.10.1 | |
Osgeo Mapserver | =4.10.3 | |
Osgeo Mapserver | =4.10.5 | |
Osgeo Mapserver | =4.6.0 | |
Osgeo Mapserver | =4.6.0-rc1 | |
Osgeo Mapserver | <=4.10.6 | |
Osgeo Mapserver | =4.4.0 | |
Osgeo Mapserver | =4.4.0-beta3 | |
Umn Mapserver | =5.6.4 | |
Umn Mapserver | =5.2.2 | |
Umn Mapserver | =5.6.5 | |
Umn Mapserver | =5.6.6 | |
Umn Mapserver | =5.2.3 | |
Osgeo Mapserver | =5.0.0-beta5 | |
Osgeo Mapserver | =5.0.0-beta6 | |
Osgeo Mapserver | =5.0.0-beta3 | |
Osgeo Mapserver | =5.0.0-beta4 | |
Osgeo Mapserver | =5.0.0-beta1 | |
Osgeo Mapserver | =5.0.0-beta2 | |
Osgeo Mapserver | =5.0.0-rc1 | |
Osgeo Mapserver | =5.2.0 | |
Osgeo Mapserver | =5.2.0-beta2 | |
Osgeo Mapserver | =5.2.0-beta1 | |
Osgeo Mapserver | =5.2.0-beta3 | |
Osgeo Mapserver | =5.2.0-beta4 | |
Osgeo Mapserver | =5.2.0-rc1 | |
Osgeo Mapserver | =5.2.1 | |
Osgeo Mapserver | =5.4.0 | |
Osgeo Mapserver | =5.4.0-beta1 | |
Osgeo Mapserver | =5.4.0-beta2 | |
Osgeo Mapserver | =5.4.0-beta4 | |
Osgeo Mapserver | =5.4.0-beta3 | |
Osgeo Mapserver | =5.4.0-rc2 | |
Osgeo Mapserver | =5.4.0-rc1 | |
Osgeo Mapserver | =5.4.2 | |
Osgeo Mapserver | =5.4.1 | |
Osgeo Mapserver | =5.6.0 | |
Osgeo Mapserver | =5.6.1 | |
Osgeo Mapserver | =5.6.3 | |
Osgeo Mapserver | =5.0.0-rc2 | |
Osgeo Mapserver | =5.0.0 | |
Umn Mapserver | =6.0.0-rc2 | |
Umn Mapserver | =6.0.0-beta3 | |
Umn Mapserver | =6.0.0-beta5 | |
Umn Mapserver | =6.0.0-rc1 | |
Umn Mapserver | =6.0.0-beta1 | |
Umn Mapserver | =6.0.0 | |
Umn Mapserver | =6.0.0-beta7 | |
Umn Mapserver | =6.0.0-beta6 | |
Umn Mapserver | =6.0.0-beta4 | |
Umn Mapserver | =6.0.0-beta2 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.