A design flaw within phpMyAdmin allows inclusion of arbitrary files, which usually leads to remote code execution Reproducible: Always Steps to Reproduce: 1. 2. 3.
web-apps, please bump to 2.6.4_pl3
Bumped
Archs please test and mark stable 2.6.4_p3 Target KEYWORDS="alpha amd64 hppa ~mips ppc sparc x86"
x86 done
Stable on amd64.
Stable on alpha ( 2.6.4_p3 ).
stable on sparc.
Stable on ppc and hppa
Ready for GLSA
Local file inclusion only.
GLSA 200510-21