[DebianGIS-dev] Bug#535340: mapserver: heap-based buffer overflow because due to integer overflow in content-length handling

Nico Golde nion at debian.org
Wed Jul 1 17:40:16 UTC 2009


Package: mapserver
Severity: grave
Tags: security
Justification: user security hole

Hi,
As described in http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=523027#14
the fix for CVE-2009-0840 was not correct. A new CVE id got assigned to this:
CVE-2009-2281. Please reference it in the changelog if you fix this bug.

Cheers
Nico





More information about the Pkg-grass-devel mailing list