Path to this page:
Subject: CVS commit: [pkgsrc-2013Q2] pkgsrc/databases/phpmyadmin
From: S.P.Zeidler
Date: 2013-08-04 20:35:06
Message id: 20130804183506.2F7C596@cvs.netbsd.org
Log Message:
Pullup ticket #4191 - requested by tron
databases/phpmyadmin: security update
Revisions pulled up:
- databases/phpmyadmin/Makefile 1.117
- databases/phpmyadmin/PLIST 1.33
- databases/phpmyadmin/distinfo 1.74
-------------------------------------------------------------------
Module Name: pkgsrc
Committed By: tron
Date: Mon Jul 29 20:01:02 UTC 2013
Modified Files:
pkgsrc/databases/phpmyadmin: Makefile PLIST distinfo
Log Message:
Update "phpmyadmin" package to version 3.5.8.2. Changes since 3.5.8.1:
- [security] Fix self-XSS in "Showing rows", see PMASA-2013-8
- [security] Fix self-XSS in Display chart, see PMASA-2013-9
- [security] Fix stored XSS in Server status monitor, see PMASA-2013-9
- [security] Fix stored XSS in navigation panel logo link, see PMASA-2013-9
- [security] Fix self-XSS in setup, trusted proxies validation, see PMASA-2=
013-9
+ [security] JSON content type header for version_check.php, see PMASA-2013=
-9
+ [security] Backport fix for jQuery issue #9521 from jQuery 1.6.3, see PMA=
SA-2013-9
+ [security] Fix full path disclosure, see PMASA-2013-12
+ [security] Fix control user SQL injection in pmd_pdf.php, see PMASA-2013-=
15
+ [security] Fix control user SQL injection in schema_export.php, see PMASA=
-2013-15
- [security] Fix self-XSS in schema export, see PMASA-2013-14
- [security] Fix unencoded json object, see PMASA-2013-11
To generate a diff of this commit:
cvs rdiff -u -r1.116 -r1.117 pkgsrc/databases/phpmyadmin/Makefile
cvs rdiff -u -r1.32 -r1.33 pkgsrc/databases/phpmyadmin/PLIST
cvs rdiff -u -r1.73 -r1.74 pkgsrc/databases/phpmyadmin/distinfo
Files: