This update for mapserver fixes the following issues:
Changes in mapserver:
- Update to releasee 8.6.3
* SLD parser: fix out of bounds access on SLD with only a Rule
with a ElseFilter but without a symbolizer
[CVE-2026-33721, boo#1260869] [CVE-2026-45104, boo#1266663]
Patch instructions:
To install this openSUSE security update use the suse recommended installation methods
like YaST online_update or "zypper patch".
Alternatively you can run the command listed for your product:
- openSUSE Leap 16.0
zypper in -t patch openSUSE-Leap-16.0-packagehub-287=1
- openSUSE Leap 16.0:
libjavamapscript-8.6.3-bp160.1.1
libmapserver2-8.6.3-bp160.1.1
mapserver-8.6.3-bp160.1.1
mapserver-devel-8.6.3-bp160.1.1
perl-mapscript-8.6.3-bp160.1.1
php-mapscriptng-8.6.3-bp160.1.1
python313-mapserver-8.6.3-bp160.1.1
* bsc#1260869
* bsc#1266663
References:
* https://www.suse.com/security/cve/CVE-2026-33721.html
* https://www.suse.com/security/cve/CVE-2026-45104.html
Get the latest Linux and open source security news straight to your inbox.