Bug#349786: phpmyadmin: Import_Blacklist Variable Overwrite Vulnerability

2006-01-25 Thread Stephen Gran
Package: phpmyadmin Severity: grave Justification: user security hole http://www.securityfocus.com/bid/15761/info I see several other things fixed recently, butnot this one, so I thought I would pass it along. If it is already fixed and I missed it, then I am sorry for the noise. Upstream says

Bug#349786: phpmyadmin: Import_Blacklist Variable Overwrite Vulnerability

2006-01-25 Thread Piotr Roszatycki
found 349786 4:2.6.2-3sarge1 tags 349786 security sarge severity 349786 critical thanks On Wednesday 25 January 2006 10:32, Stephen Gran wrote: http://www.securityfocus.com/bid/15761/info I see several other things fixed recently, butnot this one, so I thought I would pass it along. If it

Bug#349786: phpmyadmin: Import_Blacklist Variable Overwrite Vulnerability

2006-01-25 Thread Piotr Roszatycki
On Wednesday 25 January 2006 11:39, Piotr Roszatycki wrote: notfound 349786 4:2.6.2-3sarge1 close 349786 tags 349786 -sarge unconfirmed thanks Well, the bug was introduced in 2.7.0 version and was fixed in 2.7.0-pl1 version, so the 2.6.2 does not contain this bug. In 2.7.0 version the method