PT-2009-3438 · Mapserver · Mapserver
Joe Testa
·
Published
2009-03-31
·
Updated
2021-06-07
·
CVE-2009-0842
CVSS v2.0
4.3
Medium
| Vector | AV:N/AC:M/Au:N/C:P/I:N/A:N |
Name of the Vulnerable Software and Affected Versions
MapServer versions 4.x through 4.10.3
MapServer versions 5.x through 5.2.1
Description
The issue allows remote attackers to read arbitrary invalid .map files via a full pathname in the
map parameter. This triggers the display of partial file contents within an error message. For example, a /tmp/sekrut.map symlink can be used to demonstrate this issue.Recommendations
For MapServer versions 4.x through 4.10.3, update to version 4.10.4 or later.
For MapServer versions 5.x through 5.2.1, update to version 5.2.2 or later.
Exploit
Fix
Information Disclosure
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Mapserver