Bug 2538445 (CVE-2026-54354)
| Summary: | CVE-2026-54354 MapServer: MapServer: SQL Injection via unvalidated PostGIS numeric filter input | ||
|---|---|---|---|
| Product: | [Other] Security Response | Reporter: | OSIDB Bzimport <bzimport> |
| Component: | vulnerability | Assignee: | Product Security DevOps Team <prodsec-dev> |
| Status: | NEW --- | QA Contact: | |
| Severity: | high | Docs Contact: | |
| Priority: | high | ||
| Version: | unspecified | Keywords: | Security |
| Target Milestone: | --- | ||
| Target Release: | --- | ||
| Hardware: | All | ||
| OS: | Linux | ||
| Whiteboard: | |||
| Fixed In Version: | Doc Type: | --- | |
| Doc Text: |
A flaw was found in MapServer, a system for developing web-based Geographic Information System (GIS) applications. The PostGIS runtime filter translation incorrectly processes attacker-controlled input as numeric without proper validation. This allows an unauthenticated remote attacker, with access to an affected query endpoint, to inject malicious SQL commands. Successful exploitation can lead to bypassing security predicates, accessing unintended database records, and increasing database load.
|
Story Points: | --- |
| Clone Of: | Environment: | ||
| Last Closed: | Type: | --- | |
| Regression: | --- | Mount Type: | --- |
| Documentation: | --- | CRM: | |
| Verified Versions: | Category: | --- | |
| oVirt Team: | --- | RHEL 7.3 requirements from Atomic Host: | |
| Cloudforms Team: | --- | Target Upstream Version: | |
| Embargoed: | |||
|
Description
OSIDB Bzimport
2026-09-22 18:34:18 UTC
|