Hello community, here is the log from the commit of package phpMyAdmin for openSUSE:Factory checked in at 2018-06-23 19:59:12 ++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++ Comparing /work/SRC/openSUSE:Factory/phpMyAdmin (Old) and /work/SRC/openSUSE:Factory/.phpMyAdmin.new (New) ++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++
Package is "phpMyAdmin" Sat Jun 23 19:59:12 2018 rev:152 rq:618517 version:4.8.2 Changes: -------- --- /work/SRC/openSUSE:Factory/phpMyAdmin/phpMyAdmin.changes 2018-05-29 10:45:46.278607405 +0200 +++ /work/SRC/openSUSE:Factory/.phpMyAdmin.new/phpMyAdmin.changes 2018-06-23 19:59:13.219559693 +0200 @@ -1,0 +2,16 @@ +Fri Jun 22 15:05:37 UTC 2018 - ch...@computersalat.de + +- update to 4.8.2 (2018-06-21) + * issue #14370 WHERE 0 causes Fatal error + * issue #14225 Fix missing index icon +- fix for boo#1098752 + * PMASA-2018-3 (CVE-2018-12581, CWE-661) + https://www.phpmyadmin.net/security/PMASA-2018-3/ + - XSS in Designer feature +- fix for boo#1098751 + * PMASA-2018-4 (CVE-2018-12613, CWE-661) + https://www.phpmyadmin.net/security/PMASA-2018-4/ + - File inclusion and remote code execution attack +- some minor changelog fixes about security fix entries + +------------------------------------------------------------------- @@ -34,2 +50,4 @@ - * Fix [security] Multiple CSRF vulnerabilities, See PMASA-2018-02 - (boo#1090309, CVE-2018-10188) +- fix for boo#1090309 + * PMASA-2018-2 (CVE-2018-10188, CWE-661) + https://www.phpmyadmin.net/security/PMASA-2018-2/ + - Multiple CSRF vulnerabilities @@ -139,2 +156,0 @@ - * CVE-2018-7260: self-cross site scripting (XSS) vulnerability - in the central columns feature (boo#1082188) @@ -143,0 +160,4 @@ +- fix for boo#1082188 + * PMASA-2018-1 (CVE-2018-7260, CWE-661) + https://www.phpmyadmin.net/security/PMASA-2018-1/ + - Fix XSS in Central Columns Feature Old: ---- phpMyAdmin-4.8.1-all-languages.tar.xz phpMyAdmin-4.8.1-all-languages.tar.xz.asc New: ---- phpMyAdmin-4.8.2-all-languages.tar.xz phpMyAdmin-4.8.2-all-languages.tar.xz.asc ++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++ Other differences: ------------------ ++++++ phpMyAdmin.spec ++++++ --- /var/tmp/diff_new_pack.r0KrpG/_old 2018-06-23 19:59:15.035492447 +0200 +++ /var/tmp/diff_new_pack.r0KrpG/_new 2018-06-23 19:59:15.039492299 +0200 @@ -29,7 +29,7 @@ %define ap_grp nogroup %endif Name: phpMyAdmin -Version: 4.8.1 +Version: 4.8.2 Release: 0 Summary: Administration of MySQL over the web License: GPL-2.0-or-later ++++++ phpMyAdmin-4.8.1-all-languages.tar.xz -> phpMyAdmin-4.8.2-all-languages.tar.xz ++++++ ++++ 1949 lines of diff (skipped)