[mapserver-commits] [MapServer/MapServer] ff5736: Workaround CodeQL false positives about sscanf() u...

Even Rouault noreply at github.com
Tue Jun 11 08:57:58 PDT 2024


  Branch: refs/heads/main
  Home:   https://github.com/MapServer/MapServer
  Commit: ff5736652f07f14be0d92cb7883784a14299c0f5
      https://github.com/MapServer/MapServer/commit/ff5736652f07f14be0d92cb7883784a14299c0f5
  Author: Even Rouault <even.rouault at spatialys.com>
  Date:   2024-05-31 (Fri, 31 May 2024)

  Changed paths:
    M src/mapchart.c

  Log Message:
  -----------
  Workaround CodeQL false positives about sscanf() usage

Fixes https://github.com/MapServer/MapServer/security/code-scanning/29
and
https://github.com/MapServer/MapServer/security/code-scanning/30


  Commit: 81be911b292a66eb551ce4ecd4a5181dbc21fdab
      https://github.com/MapServer/MapServer/commit/81be911b292a66eb551ce4ecd4a5181dbc21fdab
  Author: Even Rouault <even.rouault at spatialys.com>
  Date:   2024-05-31 (Fri, 31 May 2024)

  Changed paths:
    M src/mapogcsld.cpp
    M src/mapserver.h
    M src/maputil.c

  Log Message:
  -----------
  mapogcsld.cpp: avoid likely false-positive about use after free

Fixes https://github.com/MapServer/MapServer/security/code-scanning/18


  Commit: 87c52df7fef5f59c4c3b14b4cb59fd85acda4ce7
      https://github.com/MapServer/MapServer/commit/87c52df7fef5f59c4c3b14b4cb59fd85acda4ce7
  Author: Even Rouault <even.rouault at spatialys.com>
  Date:   2024-05-31 (Fri, 31 May 2024)

  Changed paths:
    M src/maplayer.c

  Log Message:
  -----------
  msLayerSetSort(): fix false positive about use-after-free

Fixes https://github.com/MapServer/MapServer/security/code-scanning/17
and https://github.com/MapServer/MapServer/security/code-scanning/16


  Commit: ed6be1b3bd181573cc6133fccb6d588e7e768efc
      https://github.com/MapServer/MapServer/commit/ed6be1b3bd181573cc6133fccb6d588e7e768efc
  Author: Even Rouault <even.rouault at spatialys.com>
  Date:   2024-05-31 (Fri, 31 May 2024)

  Changed paths:
    M src/mapgeomtransform.c

  Log Message:
  -----------
  msStyleSetGeomTransform(): avoid CodeQL false positive about double free

Fixes https://github.com/MapServer/MapServer/security/code-scanning/1


  Commit: 48ca6ce3126671c48c55eb230668d588401368e5
      https://github.com/MapServer/MapServer/commit/48ca6ce3126671c48c55eb230668d588401368e5
  Author: Even Rouault <even.rouault at spatialys.com>
  Date:   2024-05-31 (Fri, 31 May 2024)

  Changed paths:
    M src/mapwmslayer.c

  Log Message:
  -----------
  msDrawWMSLayerLow(): hopefully avoid false positive CodeQL warning about double free

Fixes https://github.com/MapServer/MapServer/security/code-scanning/15


  Commit: 6640a18aed94b77eb99703f5ba54be01d99d4068
      https://github.com/MapServer/MapServer/commit/6640a18aed94b77eb99703f5ba54be01d99d4068
  Author: Even Rouault <even.rouault at spatialys.com>
  Date:   2024-05-31 (Fri, 31 May 2024)

  Changed paths:
    M src/mapparser.c
    M src/mapparser.y

  Log Message:
  -----------
  mapparser.y: try to fix false positive CodeQL warning about double free


  Commit: 36af4f34465dcb7bced7dd59b565b495a3cf4675
      https://github.com/MapServer/MapServer/commit/36af4f34465dcb7bced7dd59b565b495a3cf4675
  Author: Even Rouault <even.rouault at spatialys.com>
  Date:   2024-06-11 (Tue, 11 Jun 2024)

  Changed paths:
    M src/mapchart.c
    M src/mapgeomtransform.c
    M src/maplayer.c
    M src/mapogcsld.cpp
    M src/mapparser.c
    M src/mapparser.y
    M src/mapserver.h
    M src/maputil.c
    M src/mapwmslayer.c

  Log Message:
  -----------
  Merge pull request #7068 from rouault/codeql_fixes

Try to fix (as far as I can tell) false-positive CodeQL warnings


Compare: https://github.com/MapServer/MapServer/compare/e06dda582029...36af4f34465d

To unsubscribe from these emails, change your notification settings at https://github.com/MapServer/MapServer/settings/notifications


More information about the MapServer-commits mailing list