Commit Graph

77 Commits

Author SHA1 Message Date
giovanni
c31bb99b2a Major update to 3.5.5 release, many new improvements and many bug fixes.
ok kevlo@ (Maintainer)
2013-01-18 15:17:43 +00:00
sthen
4b7ad2646b various tweaks to phpMyAdmin packaging.
feedback/OKs from aja@ william@ jasper@ giovanni@ kevlo@

- move MESSAGE to README.

- add missing dep on php-mysqli.

- change the unpack/fake-install method to use the standard
extract infrastructure.

- @sample contrib/htaccess into .htaccess so apache can use it by
default if allowoverride is enabled. this does some basic user-agent
checks to reduce the risk of phpmyadmin sites showing up in
search engines.

- provide an @sample'd apache config file which enables use of
the .htaccess file and restricts access to localhost. talk about
this in README so people know what's going on. (phpMyAdmin has
a history of security-related bugs, but because it's rather
commonly used it's much better to have it in ports so that
it can be updated easily; these changes make the default
installation safer).
2012-08-31 16:40:38 +00:00
william
fcc19956cb Update to phpmyadmin-3.4.11.1, resolving CVE-2012-4345
and closing other security holes as well.

ok kevlo@ (MAINTAINER)
similar diff from jasper@
2012-08-30 02:47:52 +00:00
giovanni
ee4c547806 Update to 3.4.10.2, fixes local path disclosure vulnerability, see
PMASA-2012-2.
ok kevlo@ (Maintainer)
2012-04-02 09:35:20 +00:00
giovanni
b027dd16a8 Update to 3.4.10.1, fixes XSS in replication setup, see PMASA-2012-1
ok kevlo@
2012-02-21 13:50:18 +00:00
giovanni
7b588715ee Update to 3.4.10
ok kevlo@ (Maintainer)
2012-02-17 14:48:07 +00:00
giovanni
37b6451e1e Update to 3.4.9, fixes PMASA-2011-19 and PMASA-2011-20
ok kevlo@ (Maintainer)
2011-12-29 15:22:26 +00:00
sthen
7a1d0fc63f bump REVISION due to -stable commit; the php dependencies changed in
-current so this needs to have a higher version number than -stable
otherwise there will be problems moving from -stable -> -current or
-stable -> 5.1
2011-12-05 10:29:09 +00:00
sthen
daa3cd4995 update to phpMyAdmin 3.4.8, including fixes for 5 cross-site scripting bugs.
ok kevlo@
2011-12-05 09:55:12 +00:00
giovanni
bfff4d0369 Update to 3.4.7.1, fixes CVE-2011-4107
ok jasper@
2011-11-17 15:00:20 +00:00
robert
93923bd770 switch php to version 5.3 by default 2011-11-16 15:56:36 +00:00
giovanni
7efcf961be Update to 3.4.7
ok kevlo@ (Mantainer)
2011-11-08 13:44:10 +00:00
giovanni
0858a90472 Security update to 3.4.6
Fixes PMASA-2011-15 and PMASA-2011-16
ok jasper@ who provided the same diff
2011-10-18 08:21:13 +00:00
gsoares
974247e480 update to 3.4.5; fixes security issues: PMASA-2011-14
OK kevlo(maintainer)
2011-09-16 13:30:22 +00:00
espie
58fffade54 normalize pkgpath 2011-09-16 12:00:05 +00:00
jasper
3278151891 - update to 3.4.4, fixes PMASA-2011-13
maintainer kevlo@ timed-out
2011-08-30 15:04:41 +00:00
giovanni
ba1cb73380 update to 3.4.3.2, fixes from PMASA-2011-9 to PMASA-2011-12
ok kevlo@ (Maintainer)
2011-07-25 09:42:17 +00:00
sthen
6df0d68c4d Bump for PKGSPEC changes in ports/lang/php/Makefile.inc 2011-07-22 10:20:10 +00:00
robert
61d54aee81 switch to lang/php 2011-07-08 23:01:39 +00:00
sthen
2b58d250bb security fix update to phpmyadmin; CVE-2011-2505, 2506, 2507, 2508
arbitrary php code execution, see https://secunia.com/advisories/45139

ok giovanni@, jasper probably has the same diff too
2011-07-06 14:28:35 +00:00
sthen
fb6bdd86de update to phpMyAdmin 3.4.3, ok kevlo@ 2011-07-01 16:08:37 +00:00
giovanni
79ed7d1737 Bugfix update to 3.4.2
Okay kevlo@ (Maintainer)
2011-06-17 15:03:45 +00:00
rpointel
cd67b186eb Update phpmyadmin to 3.4.1.
ok kevlo@ (maintainer).
2011-05-24 06:34:58 +00:00
rpointel
bf5e9e33f3 update phpmyadmin to 3.4.0.
ok kevlo@ (maintainer).
2011-05-12 05:09:00 +00:00
sthen
dbb103dd65 update phpMyAdmin to 3.3.10; bug fixes and minor security updates
PMASA-2010-9 and PMASA-2010-10.  ok kevlo@ jasper@
2011-03-21 09:21:51 +00:00
jasper
cae9a5e207 - Security update of phpmyadmin to 3.3.9.2, fixes CVE-2011-0987.
ok kevlo@ (MAINTAINER)
2011-03-04 07:57:39 +00:00
jasper
368a34f067 Security update of phpmyadmin to 3.3.9.1, addresses PMASA-2011-1.
pointed out by rpointel@
ok kevlo@ (MAINTAINER) aja@
2011-02-10 12:55:05 +00:00
jasper
4e213d3d7b - SECURITY update phpmyadmin to 3.3.9
fixes Spoofing Weakness and Information Disclosure
CVE-2010-4480 and CVE-2010-4481

ok kevlo@ (MAINTAINER)
2011-01-05 11:48:01 +00:00
jasper
5acccedf1d - SECURITY UPDATE of phpmyadmin to 3.3.8.1
Fixes CVE-2010-4329, phpMyAdmin Database Search Cross-Site Scripting Vulnerability

ok kevlo@ (MAINTAINER)
2010-12-01 09:03:31 +00:00
espie
e50b98837f new depends 2010-11-22 08:36:47 +00:00
giovanni
406bfa8e0c Update to 3.3.8
ok kevlo@ (maintainer)
2010-10-28 13:05:34 +00:00
giovanni
d4716171ab Update to version 3.3.7
ok kevlo@ (maintainer)
2010-09-14 07:09:56 +00:00
giovanni
6d608c4d2f Update to 3.3.6
ok kevlo@ (maintainer)
2010-09-02 16:18:15 +00:00
kevlo
9b317158b3 SECURITY update to 3.3.5.1; fixes insufficient output sanitizing
when generating configuration file and several XSS vulnerabilities.

from giovanni@, thanks!
2010-08-22 06:24:50 +00:00
giovanni
e178d4d14c Update to 3.3.4
ok kevlo@ (Maintainer)
2010-07-02 14:35:48 +00:00
giovanni
86cbea2870 Update to 3.3.3
ok kevlo@ (Maintainer)
2010-05-12 10:18:13 +00:00
giovanni
d92884b4b0 Update to 3.3.2
ok kevlo@ (maintainer)
2010-04-16 06:47:57 +00:00
giovanni
8608c646b3 Update to 3.3.1
ok kevlo@ (maintainer)
2010-03-23 13:30:39 +00:00
giovanni
bdb90fd3a2 Update to 3.2.4
ok kevlo@ (maintainer)
2009-12-07 08:48:42 +00:00
giovanni
bb15b91a22 Update to 3.2.3
Ok kevlo@ (maintainer)
2009-11-03 08:18:37 +00:00
jasper
4fbb73b6ad - update phpmyadmin to 3.2.2.1
ok kevlo@ (MAINTAINER)
2009-10-16 08:56:54 +00:00
giovanni
c8845dcdaf Update to 3.2.2
Fix license marker
ok kevlo@ (maintainer)
2009-09-21 07:11:32 +00:00
giovanni
61e3a0d347 Update to 3.2.1
"go ahead" kevlo@ (maintainer)
2009-08-11 08:16:10 +00:00
giovanni
1b10dcfb9e Update to 3.2.0.1
ok kevlo@ (Maintainer)
2009-07-14 07:38:58 +00:00
sthen
755a5cdf35 update to 3.2.0; bugfixes and small new features. ok kevlo@ 2009-06-21 14:51:58 +00:00
kevlo
bf5193de3c update to 3.1.5
ok giovanni@
2009-05-25 10:37:41 +00:00
giovanni
005b91c047 Update to version 3.1.4
Okay kevlo@ (maintainer)
2009-04-28 07:03:36 +00:00
kevlo
afccc2f006 update phpmyadmin to 3.1.3.2. This version addresses the following
security flaw which affects versions before 3.1.3.2.

CVE-2009-1285 Static code injection vulnerability
http://web.nvd.nist.gov/view/vuln/detail;jsessionid=6ab7cff13414b91166c7d9ed13fd?execution=e1s1

ok giovanni@
2009-04-21 03:16:32 +00:00
giovanni
a6b685756c Update to 3.1.3.1
ok kevlo@ (Maintainer)
2009-03-31 07:14:10 +00:00
kevlo
13ed46cd8e - SECURITY update to 2.11.9.4 which fixes SQL injection.
- Reference: http://www.milw0rm.com/exploits/7382

ok sthen@
2008-12-14 11:10:50 +00:00