Alerts This Week
Warning Icon 1 677
Alerts This Week
Warning Icon 1 677

Fedora 42: Critical SQL Injection Fix for MapServer 8.4.1 in FEDORA-2025

fedora
Calendar Grey October 1, 2025
Dist Fedora Esm H88
Critical update for mapserver 8.4.1 fixing SQL injection vulnerability with advisory FEDORA-2025-38689b7760.
Update to mapserver-8.4.1, fixes CVE-2025-59431.

Summary

Mapserver is an internet mapping program that converts GIS data to

map images in real time. With appropriate interface pages,

Mapserver can provide an interactive internet map based on

custom GIS data.

Update Information:

Update to mapserver-8.4.1, fixes CVE-2025-59431.

Change Log

* Mon Sep 22 2025 Sandro Mani - 8.4.1-1 - Update to 8.4.1 * Tue Jul 29 2025 Sandro Mani - 8.4.0-5 - Rebuild (gdal) * Thu Jul 24 2025 Fedora Release Engineering - 8.4.0-4 - Rebuilt for https://fedoraproject.org/wiki/Fedora_43_Mass_Rebuild * Mon Jul 7 2025 Jitka Plesnikova - 8.4.0-3 - Perl 5.42 rebuild * Mon Jun 2 2025 Python Maint - 8.4.0-2 - Rebuilt for Python 3.14 * Sat Jan 25 2025 Sandro Mani - 8.4.0-1 - Update to 8.4.0

References


[ 1 ] Bug #2397021 - CVE-2025-59431 mapserver: MapServer SQL injection [fedora-41] https://bugzilla.redhat.com/show_bug.cgi?id=2397021 [ 2 ] Bug #2397022 - CVE-2025-59431 mapserver: MapServer SQL injection [fedora-42] https://bugzilla.redhat.com/show_bug.cgi?id=2397022

Update Instructions

This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2025-38689b7760' at the command line. For more information, refer to the dnf documentation available at http://dnf.readthedocs.io/en/latest/command_ref.html#upgrade-command-label

Severity
critical
Lowest
Low
Medium
High
Critical

Name: mapserver
Product: Fedora 42
Version: 8.4.1
Release: 1.fc42
Summary: Environment for building spatially-enabled internet applications

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Related News

Your message here