Critical severity9.8NVD Advisory· Published Mar 15, 2017· Updated May 13, 2026
CVE-2017-5522
CVE-2017-5522
Description
Stack-based buffer overflow in MapServer before 6.0.6, 6.2.x before 6.2.4, 6.4.x before 6.4.5, and 7.0.x before 7.0.4 allows remote attackers to cause a denial of service (crash) or execute arbitrary code via vectors involving WFS get feature requests.
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
7- github.com/mapserver/mapserver/commit/e52a436c0e1c5e9f7ef13428dba83194a800f4dfnvdPatchThird Party Advisory
- www.debian.org/security/2017/dsa-3766nvdThird Party Advisory
- lists.osgeo.org/pipermail/mapserver-dev/2017-January/015007.htmlnvdMailing ListThird Party Advisory
- www.mapserver.org/development/changelog/changelog-6-0-6.htmlnvdRelease Notes
- www.mapserver.org/development/changelog/changelog-6-2-4.htmlnvdRelease Notes
- www.mapserver.org/development/changelog/changelog-6-4.htmlnvdRelease Notes
- www.mapserver.org/development/changelog/changelog-7-0.htmlnvdRelease Notes
News mentions
0No linked articles in our index yet.