Heap-based buffer underflow in the readPostBody function in cgiutil.c in mapserv in MapServer 4.x prior to 4.10.4 and 5.x prior to 5.2.2 allows remote malicious users to have an unknown impact via a negative value in the Content-Length HTTP header.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
osgeo mapserver 4.10.0 |
||
osgeo mapserver 4.6.0 |
||
osgeo mapserver 4.4.0 |
||
osgeo mapserver 4.2.0 |
||
osgeo mapserver 5.2.0 |
||
osgeo mapserver 5.0.0 |
||
osgeo mapserver 4.8.0 |
||
umn mapserver 4.0 |
||
osgeo mapserver 4.10.2 |
||
osgeo mapserver 5.2.1 |
||
osgeo mapserver 4.10.3 |
||
osgeo mapserver 4.10.1 |