Gentoo Websites Logo
Go to: Gentoo Home Documentation Forums Lists Bugs Planet Store Wiki Get Gentoo!
Bug 374167 - phpMyAdmin 3.4.1 in portage contains known cricital security vulnerability
Summary: phpMyAdmin 3.4.1 in portage contains known cricital security vulnerability
Status: RESOLVED DUPLICATE of bug 373951
Alias: None
Product: Gentoo Security
Classification: Unclassified
Component: Vulnerabilities (show other bugs)
Hardware: All Linux
: Normal normal (vote)
Assignee: Gentoo Security
URL: http://www.phpmyadmin.net/home_page/n...
Whiteboard:
Keywords:
Depends on:
Blocks:
 
Reported: 2011-07-05 18:35 UTC by Paul Hartman
Modified: 2011-07-05 18:43 UTC (History)
0 users

See Also:
Package list:
Runtime testing required: ---


Attachments

Note You need to log in before you can comment on or make changes to this bug.
Description Paul Hartman 2011-07-05 18:35:41 UTC
phpMyAdmin 3.4.3.1 has been released a few days ago, containing fixes for four separate vulnerabilities, including one classified as "critical" and two as "serious". Latest available version in portage (3.4.1) is vulnerable, according to the descriptions. Here are the fixed vulns:

http://www.phpmyadmin.net/home_page/security/PMASA-2011-5.php
http://www.phpmyadmin.net/home_page/security/PMASA-2011-6.php
http://www.phpmyadmin.net/home_page/security/PMASA-2011-7.php
http://www.phpmyadmin.net/home_page/security/PMASA-2011-8.php


Reproducible: Always
Comment 1 Tim Sammut (RETIRED) gentoo-dev 2011-07-05 18:43:40 UTC
Thanks for the bug, Paul. We have an open bug for these issues.

*** This bug has been marked as a duplicate of bug 373951 ***