lp:debian/lenny/phpmyadmin

Created by James Westby and last modified
Get this branch:
bzr branch lp:debian/lenny/phpmyadmin
Members of Ubuntu branches can upload to this branch. Log in for directions.

Related bugs

Related blueprints

Branch information

Owner:
Ubuntu branches
Status:
Mature

Recent revisions

23. By Thijs Kinkhorst

* Upload to oldstable to fix security issues.
* CVE-2011-2642: XSS in table Print view.

22. By Thijs Kinkhorst

* Upload to stable to fix security issues (Closes: #608290).
* Fix XSS on search (PMASA-2010-8, CVE-2010-4329).
* Fix text/link injection on error (PMASA-2010-9, CVE-2010-4480).
* Phpinfo when enabled was worldaccessible (PMASA-2010-10, CVE-2010-4481).

21. By Michal Čihař

* Fixed wrong displaying of number of returned rows.
* Actually apply security patches added in previous upload.

20. By Michal Čihař

* Upload to stable to fix security issues.
* Various XSS issues [CVE-2010-3056].
* Unsafe code generation in setup script [CVE-2010-3055].

19. By Thijs Kinkhorst

* Upload to stable to fix security issues.
* Unserialize called on untrusted data [CVE-2009-4605].
* Predictable temporary file names [CVE-2008-7252].
* May create tempdir with unsafe permissions [CVE-2008-7251].

18. By Thijs Kinkhorst

Correct some documentation issues of new script.

17. By Thijs Kinkhorst

* Upload to stable to fix security issues.
* Cross site scripting in export page using cookies.
  [CVE-2009-1150, PMASA-2009-2]
* Static code injection in setup.php. This file should normally
  be protected by Apache authentication.
  [CVE-2009-1151, PMASA-2009-3]

16. By Thijs Kinkhorst

Add fix for SQL injection [PMASA-2008-10].

15. By Thijs Kinkhorst

* Add fix for cross site scripting in pmd_pdf.php.
  [PMASA-2008-9, CVE-2008-4775]
* Fix encoding of Norwegian from latin-1 to utf-8
  (Closes: #501735)

14. By Thijs Kinkhorst

Security fix: strip NUL bytes from to be sanitised strings
to prevent cross site scripting in MSIE.
[PMASA-2008-8]

Branch metadata

Branch format:
Branch format 7
Repository format:
Bazaar repository format 2a (needs bzr 1.16 or later)
Stacked on:
lp:debian/squeeze/phpmyadmin
This branch contains Public information 
Everyone can see this information.

Subscribers