Mapserver 5.2, 5.4 and 5.6 before 5.6.5-2 improperly validates symbol index values during Mapfile parsing.
References
Link | Resource |
---|---|
https://people.canonical.com/~ubuntu-security/cve/2010/CVE-2010-1678.html | Third Party Advisory |
https://security-tracker.debian.org/tracker/CVE-2010-1678 | Third Party Advisory |
https://trac.osgeo.org/mapserver/ticket/3641 | Third Party Advisory |
Configurations
Configuration 1 (hide)
|
History
01 Jun 2021, 13:57
Type | Values Removed | Values Added |
---|---|---|
CPE | cpe:2.3:a:osgeo:mapserver:5.4:*:*:*:*:*:*:* |
cpe:2.3:a:osgeo:mapserver:5.2.0:*:*:*:*:*:*:* cpe:2.3:a:osgeo:mapserver:5.4.0:*:*:*:*:*:*:* |
Information
Published : 2019-10-29 21:15
Updated : 2024-02-04 20:39
NVD link : CVE-2010-1678
Mitre link : CVE-2010-1678
CVE.ORG link : CVE-2010-1678
JSON object : View
Products Affected
osgeo
- mapserver
CWE
CWE-20
Improper Input Validation