Bug 162442 - [maintainer] databases/phpmyadmin -- security update to 3.4.7.1
Summary: [maintainer] databases/phpmyadmin -- security update to 3.4.7.1
Status: Closed FIXED
Alias: None
Product: Ports & Packages
Classification: Unclassified
Component: Individual Port(s) (show other bugs)
Version: Latest
Hardware: Any Any
: Normal Affects Only Me
Assignee: Doug Barton
URL:
Keywords:
Depends on:
Blocks:
 
Reported: 2011-11-10 15:30 UTC by Matthew Seaman
Modified: 2011-11-12 12:20 UTC (History)
1 user (show)

See Also:


Attachments
phpmyadmin.diff (1.13 KB, patch)
2011-11-10 15:30 UTC, Matthew Seaman
no flags Details | Diff

Note You need to log in before you can comment on or make changes to this bug.
Description Matthew Seaman 2011-11-10 15:30:09 UTC
Security update to version 3.4.7.1

Announcement:

"Welcome to phpMyAdmin 3.4.7.1 and 3.3.10.5, two security releases.

Please refer to the upcoming PMASA-2011-17 announcement on
http://www.phpmyadmin.net/home_page/security.

Details will appear on http://phpmyadmin.net. In a hurry? you can visit
http://sourceforge.net/projects/phpmyadmin to download.

Marc Delisle, for the team"

Release Notes:

Welcome to phpMyAdmin 3.4.7.1, a security release.

3.4.7.1 (2011-11-10)
- [security] Fixed possible local file inclusion in XML import
(CVE-2011-4107).


http://sourceforge.net/projects/phpmyadmin/files%2FphpMyAdmin%2F3.4.7.1%2FphpMyAdmin-3.4.7.1-notes.html/view
Comment 1 Edwin Groothuis freebsd_committer freebsd_triage 2011-11-10 15:30:23 UTC
Responsible Changed
From-To: freebsd-ports-bugs->dougb

dougb@ wants this port PRs (via the GNATS Auto Assign Tool)
Comment 2 dfilter service freebsd_committer freebsd_triage 2011-11-11 00:43:17 UTC
dougb       2011-11-11 00:43:08 UTC

  FreeBSD ports repository

  Modified files:
    databases/phpmyadmin Makefile distinfo 
  Log:
  Security update to version 3.4.7.1
  
  Please refer to the upcoming PMASA-2011-17 announcement on
  http://www.phpmyadmin.net/home_page/security.
  
  3.4.7.1 (2011-11-10)
  - [security] Fixed possible local file inclusion in XML import
  (CVE-2011-4107).
  
  http://sourceforge.net/projects/phpmyadmin/files%2FphpMyAdmin%2F3.4.7.1%2FphpMyAdmin-3.4.7.1-notes.html/view
  
  PR:             ports/162442
  Submitted by:   Matthew Seaman <m.seaman@infracaninophile.co.uk> (maintainer)
  
  Feature safe:   yes
  
  Revision  Changes    Path
  1.147     +1 -1      ports/databases/phpmyadmin/Makefile
  1.123     +2 -2      ports/databases/phpmyadmin/distinfo
_______________________________________________
cvs-all@freebsd.org mailing list
http://lists.freebsd.org/mailman/listinfo/cvs-all
To unsubscribe, send any mail to "cvs-all-unsubscribe@freebsd.org"
Comment 3 Doug Barton freebsd_committer freebsd_triage 2011-11-11 00:43:56 UTC
State Changed
From-To: open->closed


Committed, thanks!
Comment 4 dfilter service freebsd_committer freebsd_triage 2011-11-12 12:15:50 UTC
crees       2011-11-12 12:15:40 UTC

  FreeBSD ports repository

  Modified files:
    security/vuxml       vuln.xml 
  Log:
  Document latest phpMyAdmin vulnerability
  
  PR:             ports/162442
  Submitted by:   Matthew Seaman <m.seaman@infracaninophile.co.uk> (maintainer)
  Security:       CVE-2011-4107
  Security:       http://www.phpmyadmin.net/home_page/security/PMASA-2011-17.php
  CC:             m.seaman@infracaninophile.co.uk
  Feature safe:   yes
  
  Revision  Changes    Path
  1.2491    +30 -1     ports/security/vuxml/vuln.xml
_______________________________________________
cvs-all@freebsd.org mailing list
http://lists.freebsd.org/mailman/listinfo/cvs-all
To unsubscribe, send any mail to "cvs-all-unsubscribe@freebsd.org"