CVE-2011-2703: SQL Injection

Published Jul 19, 2011
·
Updated

Multiple SQL injection flaws and one stack based buffer overflow flaw were found in MapServer: [1] http://lists.osgeo.org/pipermail/mapserver-users/2011-July/069430.html

More from [1]:

MapServer developers have discovered flaws in the OGC filter support in MapServer. That code is used in support of WFS, WMS-SLD and SOS specifications.

All versions may be susceptible to SQL injection under certain circumstances. The extent of the vulnerability depends on the MapServer version, relational database and mapfile configuration being used. All users are strongly encouraged to upgrade to these latest releases.

The 5.6.7 and 4.10.7 releases also address one significant potentially exploitable buffer overflow (6.0 branch is not vulneralble).

References: [1] http://lists.osgeo.org/pipermail/mapserver-users/2011-July/069430.html [2] http://trac.osgeo.org/mapserver/ticket/3903 [3] https://bugzilla.redhat.com/showbug.cgi?id=722545 [4] http://www.openwall.com/lists/oss-security/2011/07/19/11 (CVE Request)

Relevant upstream patches: [5] http://trac.osgeo.org/mapserver/attachment/ticket/3903/ticket39036.0.x.patch (for 6.0.x branch) [6] http://trac.osgeo.org/mapserver/attachment/ticket/3903/ticket39035.6.x.patch (for 5.6.x branch) [7] http://trac.osgeo.org/mapserver/attachment/ticket/3903/ticket39035.4.x.patch (for 5.4.x branch) [8] http://trac.osgeo.org/mapserver/attachment/ticket/3903/ticket39035.2.x.patch (for 5.2.x branch) [9] http://trac.osgeo.org/mapserver/attachment/ticket/3903/ticket39035.0.x.patch (for 5.0.x branch) [10] http://trac.osgeo.org/mapserver/attachment/ticket/3903/ticket39034.10.x.patch (for 4.10.x branch)

Other sources

Multiple SQL injection vulnerabilities in MapServer before 4.10.7, 5.x before 5.6.7, and 6.x before 6.0.1 allow remote attackers to execute arbitrary SQL commands via vectors related to (1) OGC filter encoding or (2) WMS time support.

MITRE

Affected Software

69 affected components
OSGeo MapServer<=4.10.6
OSGeo MapServer=4.2.0-beta1
OSGeo MapServer=4.4.0
OSGeo MapServer=4.4.0-beta1
OSGeo MapServer=4.4.0-beta2
OSGeo MapServer=4.4.0-beta3
OSGeo MapServer=4.6.0
OSGeo MapServer=4.6.0-beta1
OSGeo MapServer=4.6.0-beta2
OSGeo MapServer=4.6.0-beta3
OSGeo MapServer=4.6.0-rc1
OSGeo MapServer=4.8.0-beta1
OSGeo MapServer=4.8.0-beta2
OSGeo MapServer=4.8.0-beta3
OSGeo MapServer=4.8.0-rc1
OSGeo MapServer=4.8.0-rc2
OSGeo MapServer=4.10.0
OSGeo MapServer=4.10.0-beta1
OSGeo MapServer=4.10.0-beta2
OSGeo MapServer=4.10.0-beta3
OSGeo MapServer=4.10.0-rc1
OSGeo MapServer=4.10.1
OSGeo MapServer=4.10.2
OSGeo MapServer=4.10.3
OSGeo MapServer=4.10.4
OSGeo MapServer=4.10.5
OSGeo MapServer=5.0.0
OSGeo MapServer=5.0.0-beta1
OSGeo MapServer=5.0.0-beta2
OSGeo MapServer=5.0.0-beta3
OSGeo MapServer=5.0.0-beta4
OSGeo MapServer=5.0.0-beta5
OSGeo MapServer=5.0.0-beta6
OSGeo MapServer=5.0.0-rc1
OSGeo MapServer=5.0.0-rc2
OSGeo MapServer=5.2.0
OSGeo MapServer=5.2.0-beta1
OSGeo MapServer=5.2.0-beta2
OSGeo MapServer=5.2.0-beta3
OSGeo MapServer=5.2.0-beta4
OSGeo MapServer=5.2.0-rc1
OSGeo MapServer=5.2.1
OSGeo MapServer=5.4.0
OSGeo MapServer=5.4.0-beta1
OSGeo MapServer=5.4.0-beta2
OSGeo MapServer=5.4.0-beta3
OSGeo MapServer=5.4.0-beta4
OSGeo MapServer=5.4.0-rc1
OSGeo MapServer=5.4.0-rc2
OSGeo MapServer=5.4.1
OSGeo MapServer=5.4.2
OSGeo MapServer=5.6.0
OSGeo MapServer=5.6.1
OSGeo MapServer=5.6.3
Umn Mapserver=5.2.2
Umn Mapserver=5.2.3
Umn Mapserver=5.6.4
Umn Mapserver=5.6.5
Umn Mapserver=5.6.6
Umn Mapserver=6.0.0
Umn Mapserver=6.0.0-beta1
Umn Mapserver=6.0.0-beta2
Umn Mapserver=6.0.0-beta3
Umn Mapserver=6.0.0-beta4
Umn Mapserver=6.0.0-beta5
Umn Mapserver=6.0.0-beta6
Umn Mapserver=6.0.0-beta7
Umn Mapserver=6.0.0-rc1
Umn Mapserver=6.0.0-rc2

Event History

Jul 19, 2011
Data Sourced
via Red Hat·04:13 PM
DescriptionSeverityAffected Software
Aug 1, 2011
CVE Published
via MITRE·07:00 PM
Data Sourced
via MITRE·07:00 PM
Description
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

Frequently Asked Questions

1

What is the severity of CVE-2011-2703?

CVE-2011-2703 has a medium severity rating due to the potential exploitation through SQL injection and buffer overflow vulnerabilities.

2

How do I fix CVE-2011-2703?

To fix CVE-2011-2703, update MapServer to a version later than 4.10.6 or apply the necessary patches provided by the maintainers.

3

What are the main vulnerabilities associated with CVE-2011-2703?

CVE-2011-2703 includes multiple SQL injection flaws and a stack-based buffer overflow flaw.

4

Which versions of MapServer are affected by CVE-2011-2703?

CVE-2011-2703 affects MapServer versions up to 4.10.6, as well as specific beta versions prior to 5.0.0.

5

Is there a workaround for CVE-2011-2703 if I can't upgrade?

While upgrading is the best solution for CVE-2011-2703, implementing input validation and sanitization can serve as a temporary workaround.

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2026 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203