DSA-1914-1

NameDSA-1914-1
SourceDebian
Descriptionmapserver - serveral vulnerabilities
ReferencesCVE-2009-0839, CVE-2009-0840, CVE-2009-0841, CVE-2009-0842, CVE-2009-0843, CVE-2009-1176, CVE-2009-2281
Debian/oldstablepackage mapserver is fixed in oldstable-security.
Debian/stablenot vulnerable
Debian/testingnot known to be vulnerable
Debian/unstablenot known to be vulnerable.

Vulnerable and fixed packages

The table below lists information on source packages.

Source PackageReleaseVersionStatus
mapserver (PTS)etch4.10.0-5.1+etch2vulnerable
etch (security)4.10.0-5.1+etch4fixed
lenny, lenny (security)5.0.3-3+lenny4fixed

The next table lists affected binary packages.

Binary PackageReleaseVersionStatusArchitecures
cgi-mapserver, libmapscript-ruby1.8, libmapscript-ruby1.9, mapserver-bin, perl-mapscript, php5-mapscript, python-mapscriptlenny, lenny (security)5.0.3-3+lenny4fixedalpha, amd64, arm, armel, hppa, i386, ia64, mips, mipsel, powerpc, s390, sparc
cgi-mapserver, mapserver-bin, perl-mapscript, php4-mapscript, php5-mapscript, python-mapscriptetch4.10.0-5.1+etch2vulnerablealpha, amd64, arm, hppa, i386, ia64, mips, mipsel, powerpc, s390, sparc
etch (security)4.10.0-5.1+etch4fixedalpha, amd64, arm, hppa, i386, ia64, mips, mipsel, powerpc, s390, sparc
libmapscript-ruby, mapserver-doclenny, lenny (security)5.0.3-3+lenny4fixedall
mapserver-docetch4.10.0-5.1+etch2vulnerableall
etch (security)4.10.0-5.1+etch4fixedall

The information above is based on the following data on fixed versions.

PackageTypeReleaseFixed VersionUrgencyOriginDebian Bugs
mapserversourceetch4.10.0-5.1+etch4unknown
mapserversourcelenny5.0.3-3+lenny4unknown

Search for package or bug name: Reporting problems

Home - Testing Security Team - Debian Security - Imprint