[mapguide-trac] #1705: MAPAGENT call crashes webservers (IIS & Apache)

MapGuide Open Source trac_mapguide at osgeo.org
Sat May 28 07:07:40 EDT 2011


#1705: MAPAGENT call crashes webservers (IIS & Apache)
-------------------------+--------------------------------------------------
   Reporter:  zspitzer   |       Owner:       
       Type:  defect     |      Status:  new  
   Priority:  high       |   Milestone:  2.2  
  Component:  Map Agent  |     Version:  2.2.0
   Severity:  critical   |    Keywords:       
External_id:             |  
-------------------------+--------------------------------------------------
 The webserver crashes if you send a request like:

 http://yourserver/mapguide/mapagent/mapagent.fcgi?OPERATION=GETDYNAMICMAPOVERLAYIMAGE&FORMAT=PNG&VERSION=2.1.0&SESSION=70c85ffc-8760-11e0-8000-00237deca616_en_7F0000010AFC0AFB0AFA&MAPNAME=map&SEQ=0.23651071377519906&CLIENTAGENT=Ajax%20Viewer&BEHAVIOR=2&SETDISPLAYDPI=96&SETDISPLAYWIDTH=474&SETDISPLAYHEIGHT=444&SETVIEWSCALE=175421.11033589157&SETVIEWCENTERX=3549113%a5'%20having%201=1--&SETVIEWCENTERY=5805500&CLIENTAGENT=Ajax%20Viewer

 Apache crashes at the first request, IIS after 7 to 10 requests.

 We use MGOS 2.2
 Windows Server 2003 SP2
 Apache 2.2

 it's the parsing of this parameter causing the problem
 SETVIEWCENTERX=3549113%a5'%20having%201=1--&

-- 
Ticket URL: <http://trac.osgeo.org/mapguide/ticket/1705>
MapGuide Open Source <http://mapguide.osgeo.org/>
MapGuide Open Source Internals


More information about the mapguide-trac mailing list