Alerts This Week
Warning Icon 1 916
Alerts This Week
Warning Icon 1 916

Fedora 11: Mapserver 5.2.3 Critical: CVE-2009-0840 Security Issue

fedora
Calendar Grey September 2, 2009
Dist Fedora Esm H88
Addresses various problems, incorporating the CVE-2009-0840 security patch for the updated MapServer software in Fedora 11.
Changing imagepath and imageurl no longer allowed via URL, New fix for incomplete CVE-2009-0840 security fix made in 5.2.2, Fixed seg fault if font not found with label ANGLE FOLLO...

Summary

Mapserver is an internet mapping program that converts GIS data to

map images in real time. With appropriate interface pages,

Mapserver can provide an interactive internet map based on

custom GIS data.

Changelog is: * Changing imagepath and imageurl no longer allowed via URL

(#1836) * New fix for incomplete CVE-2009-0840 security fix made in 5.2.2

(#2943) * Fixed seg fault if font not found with label ANGLE FOLLOW (#2973)

* Mon Aug 31 2009 Devrim GUNDUZ - 5.2.3-1

- Update to 5.2.3 which CVE-2009-0840(again) and other issues.

* Sun Apr 5 2009 Devrim GUNDUZ - 5.2.2-1

- Update to 5.2.2 which fixes :

CVE-2009-0839, CVE-2009-0840, CVE-2009-0841, CVE-2009-0842,

CVE-2009-0843, CVE-2009-1176, CVE-2009-1177.

* Wed Feb 25 2009 Fedora Release Engineering - 5.2.1-7

- Rebuilt for https://fedoraproject.org/wiki/Fedora_11_Mass_Rebuild

su -c 'yum update mapserver' at the command line.

For more information, refer to "Managing Software with yum",

available at .

All packages are signed with the Fedora Project GPG key. More details on the

GPG keys used by the Fedora Project can be found at

https://fedoraproject.org/security/

Fedora-package-announce mailing list

Fedora-package-announce@redhat.com

https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/

Change Log

References

Update Instructions

Severity
critical
Lowest
Low
Medium
High
Critical

Product: Fedora 11
Version: 5.2.3
Release: 1.fc11
URL:
Summary: Environment for building spatially-enabled internet applications

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Your message here