Bug#328501: phpmyadmin: CAN-2005-2869

2005-09-23 Thread Piotr Roszatycki
On Friday 23 of September 2005 01:29, micah wrote: They are all fixed in 2.6.4 release. Try to grep on XSS for ChangeLog available at http://cvs.sourceforge.net/viewcvs.py/phpmyadmin/phpMyAdmin/ChangeLog?rev =2.1272view=auto I didn't describe them in changelog for unstable release,

Bug#328501: phpmyadmin: CAN-2005-2869

2005-09-22 Thread Piotr Roszatycki
On Thursday 22 of September 2005 16:29, micah wrote: Piotr, I notice that you fixed some of these issues in your most recent unstable upload, but the others which you identify below were not included... at least its not obvious from the unstable changelog, I assume that its the four more

Bug#328501: phpmyadmin: CAN-2005-2869

2005-09-22 Thread micah
Piotr Roszatycki wrote: On Thursday 22 of September 2005 16:29, micah wrote: Piotr, I notice that you fixed some of these issues in your most recent unstable upload, but the others which you identify below were not included... at least its not obvious from the unstable changelog, I assume

Bug#328501: phpmyadmin: CAN-2005-2869

2005-09-16 Thread Piotr Roszatycki
Several Cross-Site-Scripting vulnerabilities have been found in phpmyadmin. The CAN-2005-2869 advisory reports the two of them. I've found four more vulnerabilities reported and fixed directly in phpMyAdmin's CVS. I've attached the patch for phpmyadmin package from sarge release with