diff --git a/databases/phpmyadmin/Makefile b/databases/phpmyadmin/Makefile index 0d693c7dd739..934b2a0568c1 100644 --- a/databases/phpmyadmin/Makefile +++ b/databases/phpmyadmin/Makefile @@ -6,7 +6,7 @@ # PORTNAME= phpMyAdmin -DISTVERSION= 3.4.8-rc1 +DISTVERSION= 3.4.8 CATEGORIES= databases www MASTER_SITES= SF/${PORTNAME:L}/${PORTNAME}/${DISTVERSION} DISTNAME= ${PORTNAME}-${DISTVERSION}-all-languages diff --git a/databases/phpmyadmin/distinfo b/databases/phpmyadmin/distinfo index 98ba1f87fc60..1969dddf4bdd 100644 --- a/databases/phpmyadmin/distinfo +++ b/databases/phpmyadmin/distinfo @@ -1,2 +1,2 @@ -SHA256 (phpMyAdmin-3.4.8-rc1-all-languages.tar.bz2) = a460686e7d2f101a50fb19cb23d16ee56d995393bfebcdeb56880936e7b060c8 -SIZE (phpMyAdmin-3.4.8-rc1-all-languages.tar.bz2) = 4611013 +SHA256 (phpMyAdmin-3.4.8-all-languages.tar.bz2) = 792a53d1904feed2bba0a613680af86fb4ca2ee8e94ba65ef92043c5c2d90604 +SIZE (phpMyAdmin-3.4.8-all-languages.tar.bz2) = 4610153 diff --git a/security/vuxml/vuln.xml b/security/vuxml/vuln.xml index b829be0d987a..e49701264ee9 100644 --- a/security/vuxml/vuln.xml +++ b/security/vuxml/vuln.xml @@ -47,6 +47,38 @@ Note: Please add new entries to the beginning of this file. --> + + phpMyAdmin -- Multiple XSS + + + phpMyAdmin + 3.43.4.8.r1 + + + + +

The phpMyAdmin development team reports:

+
+

Using crafted database names, it was possible to produce + XSS in the Database Synchronize and Database rename + panels. Using an invalid and crafted SQL query, it was + possible to produce XSS when editing a query on a table + overview panel or when using the view creation dialog. Using + a crafted column type, it was possible to produce XSS in the + table search and create index dialogs.

+
+ +
+ + http://www.phpmyadmin.net/home_page/security/PMASA-2011-18.php + CVE-2011-4634 + + + 2011-11-24 + 2011-12-01 + +
+ hiawatha -- memory leak in PreventSQLi routine