-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA256 Format: 1.8 Date: Thu, 07 Jul 2011 08:53:41 +0200 Source: phpmyadmin Binary: phpmyadmin Architecture: source all Version: 4:3.4.3.1-1 Distribution: unstable Urgency: high Maintainer: Thijs Kinkhorst <th...@debian.org> Changed-By: Michal Čihař <ni...@debian.org> Description: phpmyadmin - MySQL web administration tool Changes: phpmyadmin (4:3.4.3.1-1) unstable; urgency=high . * New upstream security release: * Fixed possible session manipulation in swekey authentication, see PMASA-2011-5 (CVE-2011-2505). * Fixed possible code injection incase session variables are compromised, see PMASA-2011-6 (CVE-2011-2506). * Fixed regexp quoting issue in Synchronize code, see PMASA-2011-7 (CVE-2011-2507). * Fixed filtering of a file path, which allowed for directory traversal, see PMASA-2011-8 (CVE-2011-2508). Checksums-Sha1: 86adb591330b5356a4b480530083525e1e4dd08b 1879 phpmyadmin_3.4.3.1-1.dsc aff8d2ee60a06b8c8a613119e0c466a5b77a7ff9 6109877 phpmyadmin_3.4.3.1.orig.tar.gz 32ee2b1fdcdc77aba8ecb7c402063a88af0edbd3 52829 phpmyadmin_3.4.3.1-1.debian.tar.gz ec1430fd48bcb95b9362f08a946eee270827c724 5778064 phpmyadmin_3.4.3.1-1_all.deb Checksums-Sha256: ade6769a4509812f5425f94cf0d15109cd6e9be6531f88893e5722113ea3d543 1879 phpmyadmin_3.4.3.1-1.dsc 17cd5350a798ea9af84aaaac76efd4af019f0bd41a9bf95aa6c1f5662d606e23 6109877 phpmyadmin_3.4.3.1.orig.tar.gz 72c7359c6f4feadca59bc393eb58b9230efcadb222498b1dda0dd987973431f3 52829 phpmyadmin_3.4.3.1-1.debian.tar.gz 66f734acdd8b561c294bd52988600743c102de7b85b579415f3b2551ce971038 5778064 phpmyadmin_3.4.3.1-1_all.deb Files: 3f0888c0f860b68ef76617457a36ad41 1879 web extra phpmyadmin_3.4.3.1-1.dsc c8640fb85ceb98e502d0586d7d1359e9 6109877 web extra phpmyadmin_3.4.3.1.orig.tar.gz c175c6c3fe3224dcf8b05b215ee5075b 52829 web extra phpmyadmin_3.4.3.1-1.debian.tar.gz d5d83fb8c597ab02893aaba838407a51 5778064 web extra phpmyadmin_3.4.3.1-1_all.deb
-----BEGIN PGP SIGNATURE----- Version: GnuPG v1.4.11 (GNU/Linux) iQIcBAEBCAAGBQJOFVlJAAoJEGo39bHX+xdN2DQP/j096y51y2mlsf3aAo8uVB6p 2EhOaLOE12uvAw64hC/JeNGz5v86Za59HvGjLnFVt/f0Sfpa1OmJ7kecVcCWzQ0Q RCLH/B5sQqRmHFeqrlnyW82WDs8Cp9aTVFllfATsyT/TYzLIqHlMbkPt2TIK7d6T 1//DMHv/rjnbz7TybI3z4k89PUXl7BVT4aiPpWyyrcqdnfgZk9GfEiIPiwsao9o0 zDonZN7tdTdrhKoyoBEHfBiNqrE1AYnO7pdCtyJGqE/RRDI1RTVsyos6VDWlZ9vt Dlk7kkLOsh7MuLA/ITK43rkw8xoOF1LSCjkWcvYI9BSL5Rq2Ezpemj/xoCAOQSOq +bzJ36JluuibAOLvcgL6C0MrWaA5/GY73pO2EzXj4B3+5cpasvgaKvwG4RR3U4Fl Da/upt8xiutbS8O204jKqI+0XUoxQ6JJE743Ocp70xaDSa5yzykU7MJ+gy3OVHhJ w4YSx/WPSPdpA+vbFWL4YoNXWiWAzsV5T2ACtCNixuowWrB1dY4gndans54iWGCB cYxQOSbuWU5J5c00F7yl23AJkPxgV5AkyO2LVrO7J3rk4xbBQDiTZldiML1rP/SS 1EPoWBh+zoi1ywtmLLRXsOQC7AYClG5byAXOHUvVmeaqqqU+AJK3ocX96toQKduF h5S2ON+pm5cKTyG91RO6 =Co5T -----END PGP SIGNATURE----- Accepted: phpmyadmin_3.4.3.1-1.debian.tar.gz to main/p/phpmyadmin/phpmyadmin_3.4.3.1-1.debian.tar.gz phpmyadmin_3.4.3.1-1.dsc to main/p/phpmyadmin/phpmyadmin_3.4.3.1-1.dsc phpmyadmin_3.4.3.1-1_all.deb to main/p/phpmyadmin/phpmyadmin_3.4.3.1-1_all.deb phpmyadmin_3.4.3.1.orig.tar.gz to main/p/phpmyadmin/phpmyadmin_3.4.3.1.orig.tar.gz -- To UNSUBSCRIBE, email to debian-devel-changes-requ...@lists.debian.org with a subject of "unsubscribe". Trouble? Contact listmas...@lists.debian.org Archive: http://lists.debian.org/e1qeice-0005ec...@franck.debian.org