Gentoo Websites Logo
Go to: Gentoo Home Documentation Forums Lists Bugs Planet Store Wiki Get Gentoo!

Bug 91185

Summary: GLSA #200504-30 - marks the newest phpmyadmin affected after fixing
Product: Gentoo Security Reporter: -:Szab100:- <szab100>
Component: GLSA ErrorsAssignee: Gentoo Security <security>
Status: RESOLVED FIXED    
Severity: normal    
Priority: High    
Version: unspecified   
Hardware: All   
OS: Linux   
Whiteboard:
Package list:
Runtime testing required: ---

Description -:Szab100:- 2005-05-02 09:18:53 UTC
There's a bug in phpmyadmin that creates the pma user with insecure password, the #200504-30 describes this.. But after the password has been changed, the glsa-check still shows affected.

#glsa-check -d 200504-30
Vulnerable:        <2.6.2-r1
Unaffected:        >=2.6.2-r1

I've installed 2.6.2-r1 and it's still marked with the red "[N]"

*  dev-db/phpmyadmin
      Latest version available: 2.6.2-r1
      Latest version installed: 2.6.2-r1


Reproducible: Always
Steps to Reproduce:
1.
2.
3.
Comment 1 Sune Kloppenborg Jeppesen (RETIRED) gentoo-dev 2005-05-02 09:42:36 UTC
Did you remember to unmerge the old version? (equery list phpmyadmin)
Comment 2 -:Szab100:- 2005-05-02 11:44:31 UTC
 
:) sorry, that was the problem..