Hello community, here is the log from the commit of package phpMyAdmin for openSUSE:Factory checked in at 2020-03-23 12:51:20 ++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++ Comparing /work/SRC/openSUSE:Factory/phpMyAdmin (Old) and /work/SRC/openSUSE:Factory/.phpMyAdmin.new.3160 (New) ++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++
Package is "phpMyAdmin" Mon Mar 23 12:51:20 2020 rev:164 rq:787359 version:4.9.5 Changes: -------- --- /work/SRC/openSUSE:Factory/phpMyAdmin/phpMyAdmin.changes 2020-01-28 10:54:15.136966381 +0100 +++ /work/SRC/openSUSE:Factory/.phpMyAdmin.new.3160/phpMyAdmin.changes 2020-03-23 12:52:53.164044037 +0100 @@ -1,0 +2,14 @@ +Mon Mar 23 06:40:08 UTC 2020 - [email protected] + +- Update to 4.9.5 + This is a security release containing several bug fixes. + * PMASA-2020-2 SQL injection vulnerability in the user accounts + page, particularly when changing a password + * PMASA-2020-3 SQL injection vulnerability relating to the search + feature + * PMASA-2020-4 SQL injection and XSS having to do with displaying + results + * Removing of the "options" field for the external + transformation. + +------------------------------------------------------------------- Old: ---- phpMyAdmin-4.9.4-all-languages.tar.xz phpMyAdmin-4.9.4-all-languages.tar.xz.asc New: ---- phpMyAdmin-4.9.5-all-languages.tar.xz phpMyAdmin-4.9.5-all-languages.tar.xz.asc ++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++ Other differences: ------------------ ++++++ phpMyAdmin.spec ++++++ --- /var/tmp/diff_new_pack.jbFDab/_old 2020-03-23 12:52:54.016044572 +0100 +++ /var/tmp/diff_new_pack.jbFDab/_new 2020-03-23 12:52:54.020044574 +0100 @@ -30,7 +30,7 @@ %define ap_grp nogroup %endif Name: phpMyAdmin -Version: 4.9.4 +Version: 4.9.5 Release: 0 Summary: Administration of MySQL over the web License: GPL-2.0-or-later ++++++ phpMyAdmin-4.9.4-all-languages.tar.xz -> phpMyAdmin-4.9.5-all-languages.tar.xz ++++++ ++++ 44851 lines of diff (skipped)
