MapServer is a system for developing web-based GIS applications. Prior to 8.4.1, the XML Filter Query directive PropertyName is vulnerably to Boolean-based SQL injection. It seems like expression checking is bypassed by introducing double quote characters in the PropertyName. Allowing to manipulate backend database queries. This vulnerability is fixed in 8.4.1.
{
"binaries": [
{
"binary_name": "cgi-mapserver",
"binary_version": "7.0.0-9ubuntu3.1"
},
{
"binary_name": "libmapscript-java",
"binary_version": "7.0.0-9ubuntu3.1"
},
{
"binary_name": "libmapscript-perl",
"binary_version": "7.0.0-9ubuntu3.1"
},
{
"binary_name": "libmapserver-dev",
"binary_version": "7.0.0-9ubuntu3.1"
},
{
"binary_name": "libmapserver2",
"binary_version": "7.0.0-9ubuntu3.1"
},
{
"binary_name": "mapserver-bin",
"binary_version": "7.0.0-9ubuntu3.1"
},
{
"binary_name": "python-mapscript",
"binary_version": "7.0.0-9ubuntu3.1"
},
{
"binary_name": "ruby-mapscript",
"binary_version": "7.0.0-9ubuntu3.1"
}
]
}{
"binaries": [
{
"binary_name": "cgi-mapserver",
"binary_version": "7.0.7-1build2"
},
{
"binary_name": "libmapscript-java",
"binary_version": "7.0.7-1build2"
},
{
"binary_name": "libmapscript-perl",
"binary_version": "7.0.7-1build2"
},
{
"binary_name": "libmapserver-dev",
"binary_version": "7.0.7-1build2"
},
{
"binary_name": "libmapserver2",
"binary_version": "7.0.7-1build2"
},
{
"binary_name": "mapserver-bin",
"binary_version": "7.0.7-1build2"
},
{
"binary_name": "python-mapscript",
"binary_version": "7.0.7-1build2"
},
{
"binary_name": "ruby-mapscript",
"binary_version": "7.0.7-1build2"
}
]
}{
"binaries": [
{
"binary_name": "cgi-mapserver",
"binary_version": "7.4.3-2build1"
},
{
"binary_name": "libmapscript-java",
"binary_version": "7.4.3-2build1"
},
{
"binary_name": "libmapscript-perl",
"binary_version": "7.4.3-2build1"
},
{
"binary_name": "libmapserver-dev",
"binary_version": "7.4.3-2build1"
},
{
"binary_name": "libmapserver2",
"binary_version": "7.4.3-2build1"
},
{
"binary_name": "mapserver-bin",
"binary_version": "7.4.3-2build1"
},
{
"binary_name": "php-mapscript",
"binary_version": "7.4.3-2build1"
},
{
"binary_name": "php-mapscript-ng",
"binary_version": "7.4.3-2build1"
},
{
"binary_name": "python3-mapscript",
"binary_version": "7.4.3-2build1"
}
]
}{
"binaries": [
{
"binary_name": "cgi-mapserver",
"binary_version": "7.6.4-2build2"
},
{
"binary_name": "libmapscript-java",
"binary_version": "7.6.4-2build2"
},
{
"binary_name": "libmapscript-perl",
"binary_version": "7.6.4-2build2"
},
{
"binary_name": "libmapserver-dev",
"binary_version": "7.6.4-2build2"
},
{
"binary_name": "libmapserver2",
"binary_version": "7.6.4-2build2"
},
{
"binary_name": "mapserver-bin",
"binary_version": "7.6.4-2build2"
},
{
"binary_name": "python3-mapscript",
"binary_version": "7.6.4-2build2"
}
]
}{
"binaries": [
{
"binary_name": "cgi-mapserver",
"binary_version": "8.0.1-4ubuntu2"
},
{
"binary_name": "libmapscript-java",
"binary_version": "8.0.1-4ubuntu2"
},
{
"binary_name": "libmapscript-perl",
"binary_version": "8.0.1-4ubuntu2"
},
{
"binary_name": "libmapserver-dev",
"binary_version": "8.0.1-4ubuntu2"
},
{
"binary_name": "libmapserver2t64",
"binary_version": "8.0.1-4ubuntu2"
},
{
"binary_name": "mapserver-bin",
"binary_version": "8.0.1-4ubuntu2"
},
{
"binary_name": "php-mapscript-ng",
"binary_version": "8.0.1-4ubuntu2"
},
{
"binary_name": "python3-mapscript",
"binary_version": "8.0.1-4ubuntu2"
}
]
}{
"binaries": [
{
"binary_name": "cgi-mapserver",
"binary_version": "8.4.0-4build1"
},
{
"binary_name": "libmapscript-java",
"binary_version": "8.4.0-4build1"
},
{
"binary_name": "libmapscript-perl",
"binary_version": "8.4.0-4build1"
},
{
"binary_name": "libmapserver-dev",
"binary_version": "8.4.0-4build1"
},
{
"binary_name": "libmapserver2t64",
"binary_version": "8.4.0-4build1"
},
{
"binary_name": "mapserver-bin",
"binary_version": "8.4.0-4build1"
},
{
"binary_name": "php-mapscript-ng",
"binary_version": "8.4.0-4build1"
},
{
"binary_name": "python3-mapscript",
"binary_version": "8.4.0-4build1"
}
]
}