Path to this page:
Subject: CVS commit: [pkgsrc-2009Q4] pkgsrc/databases/phpmyadmin
From: S.P.Zeidler
Date: 2010-01-26 16:10:39
Message id: 20100126151039.BB466175DD@cvs.netbsd.org
Log Message:
Pullup ticket 2972 - requested by tron
security update
Revisions pulled up:
- pkgsrc/databases/phpmyadmin/Makefile 1.81
- pkgsrc/databases/phpmyadmin/distinfo 1.43
-------------------------------------------------------------------------
Module Name: pkgsrc
Committed By: tron
Date: Tue Jan 26 12:04:37 UTC 2010
Modified Files:
pkgsrc/databases/phpmyadmin: Makefile distinfo
Log Message:
Update "phpmyadmin" package to version 2.11.10.
Changes since version 2.11.9.6:
- [core] safer handling of temporary files with open_basedir
(thanks to Thijs Kinkhorst)
- [core] do not automatically set and create TempDir, it might lead to
security issue (thanks to Thijs Kinkhorst)
- [setup] avoid usage of (un)serialize, what might be unsafe in some cases
This fixes the security vulnerabilities reported in PMASA-2010-1,
PMASA-2010-2 and PMASA-2010-3.
To generate a diff of this commit:
cvs rdiff -u -r1.80 -r1.81 pkgsrc/databases/phpmyadmin/Makefile
cvs rdiff -u -r1.42 -r1.43 pkgsrc/databases/phpmyadmin/distinfo
Files: