This bug was fixed in the package mapserver - 5.0.3-3ubuntu0.2
---------------
mapserver (5.0.3-3ubuntu0.2) jaunty-security; urgency=low
* SECURITY UPDATE: buffer overflow (LP: #617489)
- debian/patches/07_mstmpfile.dpatch: Fix buffer overflow in msTmpFile
function in maputil.c.
- CVE-2010-2539
- Patch provided by Debian in Lenny (DSA-2079-1)
* SECURITY UPDATE: CGI arg passing restrictions (LP: #617489)
- debian/patches/08_cl_debug_args.dpatch: estrict the use of CGI
command-line arguments that were intended for debugging in mapserv.c.
- CVE-2010-2540
- Patch provided by Debian in Lenny (DSA-2079-1)
-- Brian Thomason <[email protected]> Fri, 13 Aug 2010 12:55:01
-0400
** Changed in: mapserver (Ubuntu Jaunty)
Status: Fix Committed => Fix Released
--
[Security] mapserver DoS vuln and CGI arg passing vuln
https://bugs.launchpad.net/bugs/617489
You received this bug notification because you are a member of Ubuntu
Bugs, which is subscribed to Ubuntu.
--
ubuntu-bugs mailing list
[email protected]
https://lists.ubuntu.com/mailman/listinfo/ubuntu-bugs