Gentoo Websites Logo
Go to: Gentoo Home Documentation Forums Lists Bugs Planet Store Wiki Get Gentoo!

Bug 40268

Summary: phpmyadmin < 2.5.6-rc1: possible attack against export.php
Product: Gentoo Security Reporter: Carsten Lohrke (RETIRED) <carlo>
Component: VulnerabilitiesAssignee: Gentoo Security <security>
Status: RESOLVED FIXED    
Severity: major CC: php-bugs, vorlon
Priority: High    
Version: unspecified   
Hardware: All   
OS: Linux   
Whiteboard:
Package list:
Runtime testing required: ---

Description Carsten Lohrke (RETIRED) gentoo-dev 2004-02-03 06:40:49 UTC
http://www.phpmyadmin.net/home_page/relnotes.php?rel=0

Reproducible: Always
Steps to Reproduce:
1.
2.
3.
Comment 1 Martin Holzer (RETIRED) gentoo-dev 2004-02-04 03:16:37 UTC
2.5.6_rc1 is now in cvs (testing)
Comment 2 Martin Holzer (RETIRED) gentoo-dev 2004-02-09 13:06:21 UTC
just marked 2.5.6_rc1 stable

todo: send out GLSA
Comment 3 SpanKY gentoo-dev 2004-02-11 20:23:29 UTC
GLSA generated and sent to plasmaroo for processing ...

on a related note, any reason we cant include a 'send to <user inputed e-mail>' to http://dev.gentoo.org/~plasmaroo/glsa-test/frame-new.php ?

could save me from having to copy & paste it into an e-mail :P
Comment 4 Tim Yamin (RETIRED) gentoo-dev 2004-02-16 18:54:56 UTC
Closing as RESOLVED, GLSA 200402-05 sent out: http://article.gmane.org/gmane.linux.gentoo.announce/288