sthen
4b7ad2646b
various tweaks to phpMyAdmin packaging.
...
feedback/OKs from aja@ william@ jasper@ giovanni@ kevlo@
- move MESSAGE to README.
- add missing dep on php-mysqli.
- change the unpack/fake-install method to use the standard
extract infrastructure.
- @sample contrib/htaccess into .htaccess so apache can use it by
default if allowoverride is enabled. this does some basic user-agent
checks to reduce the risk of phpmyadmin sites showing up in
search engines.
- provide an @sample'd apache config file which enables use of
the .htaccess file and restricts access to localhost. talk about
this in README so people know what's going on. (phpMyAdmin has
a history of security-related bugs, but because it's rather
commonly used it's much better to have it in ports so that
it can be updated easily; these changes make the default
installation safer).
2012-08-31 16:40:38 +00:00
william
fcc19956cb
Update to phpmyadmin-3.4.11.1, resolving CVE-2012-4345
...
and closing other security holes as well.
ok kevlo@ (MAINTAINER)
similar diff from jasper@
2012-08-30 02:47:52 +00:00
giovanni
7b588715ee
Update to 3.4.10
...
ok kevlo@ (Maintainer)
2012-02-17 14:48:07 +00:00
giovanni
37b6451e1e
Update to 3.4.9, fixes PMASA-2011-19 and PMASA-2011-20
...
ok kevlo@ (Maintainer)
2011-12-29 15:22:26 +00:00
gsoares
974247e480
update to 3.4.5; fixes security issues: PMASA-2011-14
...
OK kevlo(maintainer)
2011-09-16 13:30:22 +00:00
sthen
fb6bdd86de
update to phpMyAdmin 3.4.3, ok kevlo@
2011-07-01 16:08:37 +00:00
giovanni
79ed7d1737
Bugfix update to 3.4.2
...
Okay kevlo@ (Maintainer)
2011-06-17 15:03:45 +00:00
rpointel
cd67b186eb
Update phpmyadmin to 3.4.1.
...
ok kevlo@ (maintainer).
2011-05-24 06:34:58 +00:00
rpointel
bf5e9e33f3
update phpmyadmin to 3.4.0.
...
ok kevlo@ (maintainer).
2011-05-12 05:09:00 +00:00
sthen
dbb103dd65
update phpMyAdmin to 3.3.10; bug fixes and minor security updates
...
PMASA-2010-9 and PMASA-2010-10. ok kevlo@ jasper@
2011-03-21 09:21:51 +00:00
jasper
4e213d3d7b
- SECURITY update phpmyadmin to 3.3.9
...
fixes Spoofing Weakness and Information Disclosure
CVE-2010-4480 and CVE-2010-4481
ok kevlo@ (MAINTAINER)
2011-01-05 11:48:01 +00:00
giovanni
d4716171ab
Update to version 3.3.7
...
ok kevlo@ (maintainer)
2010-09-14 07:09:56 +00:00
giovanni
6d608c4d2f
Update to 3.3.6
...
ok kevlo@ (maintainer)
2010-09-02 16:18:15 +00:00
kevlo
9b317158b3
SECURITY update to 3.3.5.1; fixes insufficient output sanitizing
...
when generating configuration file and several XSS vulnerabilities.
from giovanni@, thanks!
2010-08-22 06:24:50 +00:00
giovanni
e178d4d14c
Update to 3.3.4
...
ok kevlo@ (Maintainer)
2010-07-02 14:35:48 +00:00
giovanni
8608c646b3
Update to 3.3.1
...
ok kevlo@ (maintainer)
2010-03-23 13:30:39 +00:00
giovanni
61e3a0d347
Update to 3.2.1
...
"go ahead" kevlo@ (maintainer)
2009-08-11 08:16:10 +00:00
sthen
755a5cdf35
update to 3.2.0; bugfixes and small new features. ok kevlo@
2009-06-21 14:51:58 +00:00
giovanni
a6b685756c
Update to 3.1.3.1
...
ok kevlo@ (Maintainer)
2009-03-31 07:14:10 +00:00
sthen
49c4158a5c
SECURITY update to 2.11.5.2; fixes since the previous version
...
in-tree include: various XSS, SQL injection, saves sensitive data
in PHP session, crafted POST allows users to read files accessible
by the web server.
thanks bsd at openbsd.rutgers.edu for feedback, ok ckuethe
2008-04-24 01:06:03 +00:00
rui
cea58b3e5c
- SECURITY: update phpMyAdmin to 2.11.1.1 which fixes a Cross-Site Scripting Vulnerability.
...
- Reference: http://secunia.com/advisories/27173
ok kevlo@
2007-11-06 21:13:46 +00:00
ajacoutot
f3eda52557
- fix files ownership
...
no answer from maintainer
"look alright" sthen@, ok robert@
2007-10-31 11:48:09 +00:00
jasper
15b84382c5
- update phpmyadmin to 2.11.0
...
- remove quotes from COMMENT
ok kevlo@ (MAINTAINER)
2007-09-11 05:01:14 +00:00
rui
787e47bb57
update phpMyAdmin to 2.10.1. This version addresses the following security flaw which affects versions before 2.10.1.
...
CVE-2007-2245 Multiple cross-site scripting (XSS) vulnerabilities
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-2245
ok mbalmer@
2007-06-07 19:24:46 +00:00
kevlo
2a2f19b442
upgrade to phpMyAdmin 2.9.0.2
2006-10-16 13:57:58 +00:00
kevlo
3526d2a281
update to 2.8.1
2006-06-19 15:27:03 +00:00
kevlo
0d8945e913
update to phpmyadmin 2.8.0.3
2006-04-11 05:54:05 +00:00
kevlo
51414cc298
upgrade to phpmyadmin-2.7.0-pl2
2006-01-29 03:58:03 +00:00
kevlo
4c793a3ac3
update to phpmyadmin 2.7.0pl1
2005-12-09 13:28:40 +00:00
kevlo
8379f1f1fc
upgrade to phpmyadmin 2.6.4pl4
2005-11-21 06:01:25 +00:00
kevlo
ae0c5cf0b6
update to phpmyadmin 2.6.4pl2
2005-10-13 06:04:30 +00:00
kevlo
0197632287
upgrade to 2.6.4p1
2005-10-07 08:11:10 +00:00
kevlo
bb45dfa4fa
upgrade to 2.6.3
2005-07-05 04:31:02 +00:00
kevlo
5457a7b04c
upgrade to phpMyAdmin 2.6.2-pl1
2005-05-06 07:23:34 +00:00
kevlo
87e7bdd222
upgrade to phpMyAdmin 2.6.1-pl3
2005-03-08 06:55:01 +00:00
kevlo
1ca3a4911e
upgrade to phpmyadmin 2.6.1
2005-01-25 08:47:47 +00:00
kevlo
459d516b1e
upgrade to 2.6.0-pl3.
2004-11-24 02:25:47 +00:00
naddy
bf46e6e8a4
update to 2.6.0-pl2; from kevlo@
2004-11-11 17:06:55 +00:00
jcs
64b8eac8a6
use @sample for config.inc.php
...
ok kevlo
2004-11-09 01:53:37 +00:00
danh
c902aefaa6
second sweep for MESSAGE decoration removal; ok espie@
2004-10-13 20:28:01 +00:00
espie
e44839e34b
new plists.
...
comment out netscape-dynmotif, since we don't have the required motif lib.
2004-09-15 18:49:48 +00:00
kevlo
5659645b76
zap spaces
2004-07-15 10:06:22 +00:00
kevlo
4ad63bc51e
Initial import of phpMyAdmin 2.5.7-pl1
...
phpMyAdmin can manage a whole MySQL server (needs a super-user) as
well as a single database.
2004-07-15 10:02:37 +00:00