10
CVSSv2

CVE-2009-0840

Published: 31/03/2009 Updated: 07/06/2021
CVSS v2 Base Score: 10 | Impact Score: 10 | Exploitability Score: 10
VMScore: 890
Vector: AV:N/AC:L/Au:N/C:C/I:C/A:C

Vulnerability Summary

Heap-based buffer underflow in the readPostBody function in cgiutil.c in mapserv in MapServer 4.x prior to 4.10.4 and 5.x prior to 5.2.2 allows remote malicious users to have an unknown impact via a negative value in the Content-Length HTTP header.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

osgeo mapserver 4.10.0

osgeo mapserver 4.6.0

osgeo mapserver 4.4.0

osgeo mapserver 4.2.0

osgeo mapserver 5.2.0

osgeo mapserver 5.0.0

osgeo mapserver 4.8.0

umn mapserver 4.0

osgeo mapserver 4.10.2

osgeo mapserver 5.2.1

osgeo mapserver 4.10.3

osgeo mapserver 4.10.1

Vendor Advisories

Debian Bug report logs - #535340 mapserver: heap-based buffer overflow because due to integer overflow in content-length handling Package: mapserver; Maintainer for mapserver is Debian GIS Project <pkg-grass-devel@listsaliothdebianorg>; Reported by: Nico Golde <nion@debianorg> Date: Wed, 1 Jul 2009 17:48:02 UTC ...
Debian Bug report logs - #523027 mapserver: multiple vulnerabilities Package: mapserver; Maintainer for mapserver is Debian GIS Project <pkg-grass-devel@listsaliothdebianorg>; Reported by: "Michael S Gilbert" <michaelsgilbert@gmailcom> Date: Tue, 7 Apr 2009 22:51:06 UTC Severity: grave Tags: security Fixed i ...
Several vulnerabilities have been discovered in mapserver, a CGI-based web framework to publish spatial data and interactive mapping applications The Common Vulnerabilities and Exposures project identifies the following problems: CVE-2009-0843 Missing input validation on a user supplied map queryfile name can be used by an attacker to check f ...