Double free vulnerability in the msAddImageSymbol function in mapsymbol.c in MapServer before 6.0.1 might allow remote attackers to cause a denial of service (application crash) or have unspecified other impact via crafted mapfile data.
Weaknesses in this category are related to improper management of system resources.
Link | Tags |
---|---|
http://trac.osgeo.org/mapserver/ticket/3939 | patch |
http://lists.osgeo.org/pipermail/mapserver-users/2011-July/069430.html | patch mailing list |