You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
Copy file name to clipboardExpand all lines: en/development/changelog/changelog-7-0.txt
+3Lines changed: 3 additions & 0 deletions
Original file line number
Diff line number
Diff line change
@@ -12,6 +12,9 @@ file from the source directory.
12
12
Changes from 7.0.7 to 7.0.8
13
13
===========================
14
14
15
+
.. important::
16
+
Security release
17
+
15
18
* CVE-2021-32062: Address flaw in CGI mapfile loading that makes it possible to bypass security controls ( `#6313 <https://github.com/MapServer/MapServer/issues/6313>`__ ) ( `#6314 <https://github.com/MapServer/MapServer/issues/6314>`__ ) (Steve Lime) : `82a3eb5 <https://github.com/MapServer/MapServer/commit/82a3eb5f6c8f75cedd095b909cc4990f3d8a99e1>`__
16
19
* Use CPLSetConfigOption/CPLGetConfigOption for some CGI/FastCGI-related env vars ( `#6305 <https://github.com/MapServer/MapServer/issues/6305>`__ ) (Seth G) : `3c3c9b3 <https://github.com/MapServer/MapServer/commit/3c3c9b3934f42808c15957f9378dec904203228d>`__
Copy file name to clipboardExpand all lines: en/development/changelog/changelog-7-2.txt
+3Lines changed: 3 additions & 0 deletions
Original file line number
Diff line number
Diff line change
@@ -12,6 +12,9 @@ file from the source directory.
12
12
Changes from 7.2.2 to 7.2.3
13
13
===========================
14
14
15
+
.. important::
16
+
Security release
17
+
15
18
* CVE-2021-32062: Address flaw in CGI mapfile loading that makes it possible to bypass security controls ( `#6313 <https://github.com/MapServer/MapServer/issues/6313>`__ ) ( `#6314 <https://github.com/MapServer/MapServer/issues/6314>`__ ) (Steve Lime) : `7db7cbb <https://github.com/MapServer/MapServer/commit/7db7cbb26b6bc6e651db268e9536836a56e6825a>`__
16
19
* Use CPLSetConfigOption/CPLGetConfigOption for some CGI/FastCGI-related env vars ( `#6305 <https://github.com/MapServer/MapServer/issues/6305>`__ ) (Seth G) : `c079fb1 <https://github.com/MapServer/MapServer/commit/c079fb110b335d0ece78049ba7bc5d1d67023003>`__
Copy file name to clipboardExpand all lines: en/development/changelog/changelog-7-4.txt
+3Lines changed: 3 additions & 0 deletions
Original file line number
Diff line number
Diff line change
@@ -12,6 +12,9 @@ file from the source directory.
12
12
Changes from 7.4.4 to 7.4.5
13
13
===========================
14
14
15
+
.. important::
16
+
Security release
17
+
15
18
* CVE-2021-32062: Address flaw in CGI mapfile loading that makes it possible to bypass security controls ( `#6313 <https://github.com/MapServer/MapServer/issues/6313>`__ ) ( `#6314 <https://github.com/MapServer/MapServer/issues/6314>`__ ) (Steve Lime) : `d611782 <https://github.com/MapServer/MapServer/commit/d6117828a160feed354bce90e5ddb2874f0e306f>`__
16
19
* Use CPLSetConfigOption/CPLGetConfigOption for some CGI/FastCGI-related env vars ( `#6305 <https://github.com/MapServer/MapServer/issues/6305>`__ ) (Seth G) : `f19c8b7 <https://github.com/MapServer/MapServer/commit/f19c8b7a615fefd751056b8c1d3749f9ff31ff10>`__
17
20
* WCS 1.1 and 2.0: fix support of netCDF output (complementary fix to refs `#5968 <https://github.com/MapServer/MapServer/issues/5968>`__ ) (Even Rouault) : `6bd9301 <https://github.com/MapServer/MapServer/commit/6bd9301b6204043773ed904ced606a83659c9ca9>`__
Copy file name to clipboardExpand all lines: en/development/changelog/changelog-7-6.txt
+9Lines changed: 9 additions & 0 deletions
Original file line number
Diff line number
Diff line change
@@ -12,13 +12,19 @@ file from the source directory.
12
12
Changes from 7.6.6 to 7.6.7
13
13
===========================
14
14
15
+
.. important::
16
+
Security release
17
+
15
18
* tostring() expression function: validate format string, and make sure buffer is large enough (Even Rouault) : `31bf282 <https://github.com/MapServer/MapServer/commit/31bf2825dfdd5323f9691bfd7861e97960d15da8>`__
16
19
17
20
.. _changelog-7-6-6:
18
21
19
22
Changes from 7.6.5 to 7.6.6
20
23
===========================
21
24
25
+
.. important::
26
+
Security release
27
+
22
28
* mapregex.c: fix invalid mapping of MS_REG_NOSUB and MS_REG_NEWLINE with GNU regex (Even Rouault) : `7b4f1b0 <https://github.com/MapServer/MapServer/commit/7b4f1b0df83ea1a225217226d741fa26e8654b8a>`__
23
29
* OGR output format: avoid potential stack buffer overflow on too long filename (Even Rouault) : `63ad0ab <https://github.com/MapServer/MapServer/commit/63ad0ab801cf70c1ca0a8aca69e0987f4382dcdb>`__
24
30
* update license year (Jeff McKenna) : `3bfaddb <https://github.com/MapServer/MapServer/commit/3bfaddbde45dc67d005bea9ae061c1f411a1457e>`__
@@ -125,6 +131,9 @@ Changes from 7.6.3 to 7.6.4
125
131
Changes from 7.6.2 to 7.6.3
126
132
===========================
127
133
134
+
.. important::
135
+
Security release
136
+
128
137
* CVE-2021-32062: Address flaw in CGI mapfile loading that makes it possible to bypass security controls ( `#6313 <https://github.com/MapServer/MapServer/issues/6313>`__ ) ( `#6314 <https://github.com/MapServer/MapServer/issues/6314>`__ ) ( `#6315 <https://github.com/MapServer/MapServer/issues/6315>`__ ) (Even Rouault) : `927ac97 <https://github.com/MapServer/MapServer/commit/927ac97cb9ece305306b5ab2b5600d3afe8c1732>`__
129
138
* Fix most of remaining Coverity scan warnings with high priority ( `#6307 <https://github.com/MapServer/MapServer/issues/6307>`__ ) (Even Rouault) : `f89e386 <https://github.com/MapServer/MapServer/commit/f89e386ba5e1e23160d044e1f38f094b979ad303>`__
130
139
* Use CPLSetConfigOption/CPLGetConfigOption for some CGI/FastCGI-related env vars. ( `#6304 <https://github.com/MapServer/MapServer/issues/6304>`__ ) (Steve Lime) : `b128dac <https://github.com/MapServer/MapServer/commit/b128dace3ec3e61bf063f7285d1279e9f9fd9e28>`__
Copy file name to clipboardExpand all lines: en/development/changelog/changelog-8-0.txt
+3Lines changed: 3 additions & 0 deletions
Original file line number
Diff line number
Diff line change
@@ -12,6 +12,9 @@ file from the source directory.
12
12
Changes from 8.0.1 to 8.0.2
13
13
===========================
14
14
15
+
.. important::
16
+
Security release
17
+
15
18
* mapregex.c: fix invalid mapping of MS_REG_NOSUB and MS_REG_NEWLINE with GNU regex (Even Rouault) : `18d2833 <https://github.com/MapServer/MapServer/commit/18d28333c64b7e2f0ddd102a42ba5c89311ee76b>`__
16
19
* OGR output format: avoid potential stack buffer overflow on too long filename (Even Rouault) : `33cc8c2 <https://github.com/MapServer/MapServer/commit/33cc8c25d9d052dad17324248ac66449e92e839f>`__
17
20
* mapogr.cpp: do not emit some debug messages in default debug mode ( `#7063 <https://github.com/MapServer/MapServer/issues/7063>`__ ) (github-actions[bot]) : `597d17d <https://github.com/MapServer/MapServer/commit/597d17d29cfafa335d23e1b70d69448d6ff6686c>`__
Copy file name to clipboardExpand all lines: en/development/changelog/changelog-8-2.txt
+6Lines changed: 6 additions & 0 deletions
Original file line number
Diff line number
Diff line change
@@ -25,6 +25,9 @@ Changes from 8.2.1 to 8.2.2
25
25
Changes from 8.2.0 to 8.2.1
26
26
===========================
27
27
28
+
.. important::
29
+
Security release
30
+
28
31
* tostring() expression function: validate format string, and make sure buffer is large enough (Even Rouault) : `6f26c4f <https://github.com/MapServer/MapServer/commit/6f26c4f8e419c1355d8866df00d541e622a563af>`__
29
32
* msProcessProjection(): strip epsgaxis= MapServer specific parameter that confuses PROJ < 9.5.0 (Even Rouault) : `147e7b9 <https://github.com/MapServer/MapServer/commit/147e7b97edbf7366fdf6747ebc2c21f1ed8addfe>`__
@@ -62,6 +65,9 @@ Changes from 8.2.0-beta3 to 8.2.0-rc1
62
65
Changes from 8.2.0-beta2 to 8.2.0-beta3
63
66
=======================================
64
67
68
+
.. important::
69
+
Security release
70
+
65
71
* mapregex.c: fix invalid mapping of MS_REG_NOSUB and MS_REG_NEWLINE with GNU regex (Even Rouault) : `af7fe77 <https://github.com/MapServer/MapServer/commit/af7fe7765aecf03482317778205c45c186651232>`__
66
72
* OGR output format: avoid potential stack buffer overflow on too long filename (Even Rouault) : `33381a9 <https://github.com/MapServer/MapServer/commit/33381a9ee0f9c66d7eaf339f8f6a9a90639ce56b>`__
Copy file name to clipboardExpand all lines: en/development/changelog/changelog-8-6.txt
+12Lines changed: 12 additions & 0 deletions
Original file line number
Diff line number
Diff line change
@@ -12,6 +12,9 @@ file from the source directory.
12
12
Changes from 8.6.3 to 8.6.4
13
13
===========================
14
14
15
+
.. important::
16
+
Security release
17
+
15
18
* PostGIS: make sure identifier value is numeric when the declared type is numeric too ( `#7519 <https://github.com/MapServer/MapServer/issues/7519>`__ ) (Even Rouault) : `65f1b53 <https://github.com/MapServer/MapServer/commit/65f1b53c258df2abdf6ce1f437c29e75e9976247>`__
* SLD parser: fix out of bounds access on SLD with only a Rule with a ElseFilter but without a symbolizer ( `#7497 <https://github.com/MapServer/MapServer/issues/7497>`__ ) (Even Rouault) : `0f05c57 <https://github.com/MapServer/MapServer/commit/0f05c578ce31ab1bc11a12c8a828163fc07b9320>`__
0 commit comments