A vulnerability labeled as critical has been found in Mapnik up to 4.2.0. This issue affects the function
mapnik::dbf_file::string_value of the file plugins/input/shape/dbfile.cpp. Such manipulation leads to heap-based buffer overflow.
This vulnerability is listed as CVE-2025-15537. The attack must be carried out locally. In addition, an exploit is available.
The project was informed of the problem early through an issue report but has not responded yet.