Commit Graph

267 Commits

Author SHA1 Message Date
Florian Smeets
187cb69cd2 databases/phpmyadmin: Update to 4.9.11
PR:		269421
Approved by:	maintainer
MFH:		2023Q1
Security:	72583cb3-a7f9-11ed-bd9e-589cfc0f81b0
2023-03-16 20:46:00 +01:00
Jochen Neumeister
ff8abca190 databases/phpmyadmin: Update to 4.9.10
Changelog: The phpMyAdmin team announces the release of versions 4.9.10 and 5.1.3.

These versions primarily address a regression that caused the navigation pane to not function correctly when multiple pages of tables were shown.

Version 5.1.3 includes a security hardening improvement. The issue, reported by Rafael Pedrero, could allow users to cause an error that would reveal the path on disk where phpMyAdmin is running from. We believe this requires the server to be running with display_errors on, which is not the recommended setting for a production environment.

Version 5.1.3 includes a few other minor bug fixes and is recommended for all users.

Note that version 4.9 is in extended security support only. Version 5.2.0 is in final testing and is expected to replace the 5.1 branch in the coming week or weeks, with no changes to required versions of PHP or database server.

For the phpMyAdmin team, Isaac

Sponsored by:	Netzkommune GmbH
2022-02-26 07:19:13 +01:00
Jochen Neumeister
1b8f14c12b Updat to 4.9.7
Changelogs:
 - https://www.phpmyadmin.net/news/2020/10/10/phpmyadmin-496-and-503-are-released/
 - https://www.phpmyadmin.net/news/2020/10/15/phpmyadmin-497-and-504-are-released/

Sponsored by:	Netzkommune GmbH
2020-10-30 18:21:59 +00:00
Jochen Neumeister
ea11a4e47b Update to 4.9.5
Changelog: https://www.phpmyadmin.net/news/2020/3/21/phpmyadmin-495-and-502-are-released/

MFH:		2020Q1
Security:	97fcc60a-6ec0-11ea-a84a-4c72b94353b5
Sponsored by:	Netzkommune GmbH
2020-03-26 14:45:16 +00:00
Jochen Neumeister
7c0192761d Update to 4.9.4
Changelog: https://www.phpmyadmin.net/news/2020/1/8/phpmyadmin-494-and-501-are-released/

MFH:		2020Q1
Security:	f929b172-369e-11ea-9cdb-001b217b3468
Sponsored by:	Netzkommune GmbH
2020-01-17 18:03:06 +00:00
Jochen Neumeister
f4dd09a397 Update to 4.9.3
Welcome to phpMyAdmin 4.9.3, a routine bugfix release. This release is occurring simultaneously with the release of phpMyAdmin 5.0.0, which is our recommended version except for users with older PHP installations.

This is planned as the final bugfix release of phpMyAdmin version 4. Version 4 works with PHP versions 5.5 through (at least) 7.4, and MySQL versions 5.5 and newer (and the corresponding MariaDB versions). Version 5 will require PHP 7.1 or newer, but we plan to maintain security fixes for version 4 as part of our LTS program. For end of life details and supported versions, please see the "Supported versions" grid at https://www.phpmyadmin.net/downloads/.

This release includes fixes for many bugs, including:

 - Several PHP notices and warnings including "Undefined index table_create_time," a notice about error_reporting() being disabled for security reasons, and several Undefined Index errors.
 - Support CloudFront-Forwarded-Proto header for Amazon CloudFront proxy
 - Early compatibility with development versions of PHP 8
 - Fix replication actions (start, stop, etc)

There are many, many more bug fixes thanks to the efforts of our developers and other contributors. For full details, you can see the ChangeLog file included with this release.

The phpMyAdmin team

Sponsored by:	Netzkommune GmbH
2019-12-28 23:56:07 +00:00
Jochen Neumeister
8ea3902316 Update to 4.9.2
Changelog: https://www.phpmyadmin.net/news/2019/11/22/phpmyadmin-492-released/

MFH:		2019Q4
Security:	ca3fe5b3-185e-11ea-9673-4c72b94353b5
Sponsored by:	Netzkommune GmbH
2019-12-06 20:31:24 +00:00
Jochen Neumeister
986afdc6e0 Update to 4.9.1
Sponsored by:	Netzkommune GmbH
2019-09-30 06:11:46 +00:00
Matthew Seaman
4b99265652 Security update to 4.9.0.1
MFH:		2019Q2
Security:	a5681027-8e03-11e9-85f4-6805ca0b3d42
2019-06-14 06:49:45 +00:00
Matthew Seaman
a288fb10c5 Security update to 4.8.5
This fixes arbitrary file disclosure and sql injection vulnerabilities.

ChangeLog: https://www.phpmyadmin.net/files/4.8.5/

MFH:		2019Q1
Security:	111aefca-2213-11e9-9c8d-6805ca0b3d42
2019-01-27 09:27:21 +00:00
Matthew Seaman
e61f499ad6 Security update to 4.8.4
Addresses three security advisories: PMASA-2018-06, PMASA-2018-07,
PMASA-2018-08.

Also includes additional non-security related code updates.

ChangeLog:    https://www.phpmyadmin.net/files/4.8.4/

PR:		233953
MFH:		2018Q4
Security:	ed10ed3f-fddc-11e8-94cf-6805ca0b3d42
2018-12-12 07:24:04 +00:00
Matthew Seaman
e8bb7fade8 Update to 4.8.3; includes a security update for PMASA-2018-5
MFH:		2018Q3
Security:	9e205ef5-a649-11e8-b1f6-6805ca0b3d42
2018-08-22 22:22:16 +00:00
Matthew Seaman
0d3274953a Security update to 4.8.2
ChangeLog:	https://www.phpmyadmin.net/files/4.8.2/

MFH:		2018Q2
Security:	17cb6ff3-7670-11e8-8854-6805ca0b3d42
2018-06-22 23:44:13 +00:00
Matthew Seaman
13fc326e18 Update to 4.8.1
ChangeLog:	https://www.phpmyadmin.net/files/4.8.1/
2018-05-25 07:51:05 +00:00
Matthew Seaman
414f7a8d27 Security Update to 4.8.0.1
Fixes: CSRF vulnerability allowing arbitrary SQL execution present in
4.8.0

Release Notes:  https://www.phpmyadmin.net/files/4.8.0.1/

MFH:		2018Q2
Security:	ac7da39b-4405-11e8-afbe-6805ca0b3d42
2018-04-19 19:20:40 +00:00
Matthew Seaman
73e4c3e15f Upgrade to 4.8.0
ChangeLog: https://www.phpmyadmin.net/files/4.8.0/
2018-04-08 10:54:05 +00:00
Matthew Seaman
947798a65f Update to 4.7.9
Release Notes: https://www.phpmyadmin.net/files/4.7.9/
2018-03-06 07:32:34 +00:00
Matthew Seaman
fa6b538abb Security update to 4.7.8
Advisory: https://www.phpmyadmin.net/security/PMASA-2018-1/
ChangeLog: https://www.phpmyadmin.net/files/4.7.8/

MFH:		2018Q1
Security:	261ca31c-179f-11e8-b8b9-6805ca0b3d42
2018-02-22 07:19:39 +00:00
Matthew Seaman
6cd6e75770 Security Upate to 4.7.7
This includes a fix for a critical XSRF/CSRF security bug.

ChangeLog: https://www.phpmyadmin.net/files/4.7.7/

MFH:		2017Q4
Security:	63eb2b11-e802-11e7-a58c-6805ca0b3d42
2017-12-23 19:33:01 +00:00
Matthew Seaman
291a06448f Upgrade to 4.7.6
Release notes: https://www.phpmyadmin.net/files/4.7.6/
2017-12-01 07:06:55 +00:00
Matthew Seaman
ded7e7e79b Update to 4.7.5
Chagenlog:	https://www.phpmyadmin.net/files/4.7.5/
2017-10-23 21:48:51 +00:00
Matthew Seaman
39cd12d5aa Update to 4.7.4
ChangeLog:	https://www.phpmyadmin.net/files/4.7.4/
2017-08-24 21:34:14 +00:00
Matthew Seaman
aa430690d4 Update to 4.7.3
This is a routine maintenance release.

ChangeLog: https://www.phpmyadmin.net/files/4.7.3/
2017-07-21 17:32:58 +00:00
Matthew Seaman
38b64349d9 Update to 4.7.2
ChangeLog: https://github.com/phpmyadmin/phpmyadmin/blob/RELEASE_4_7_2/ChangeLog
2017-06-30 07:12:54 +00:00
Matthew Seaman
b053a55ab3 Upgrade to 4.7.1
ChangeLog: https://www.phpmyadmin.net/files/4.7.1/
2017-05-27 10:48:24 +00:00
Matthew Seaman
efc6a75775 Security Update to 4.7.0
As well as being the first stable release from the 4.7 branch, this
includes fixes for PMASA-2017-8 where it can be possible to bypass a
configuration restriction forbidding password-less accounts.  This
depends on the upstream PHP version -- sites using php-7 are not
vulnerable, sites using php-5.6 are.

ChangeLog:	https://www.phpmyadmin.net/files/4.7.0/

MFH:		2017Q1
Security:	68611303-149e-11e7-b9bb-6805ca0b3d42
2017-03-29 16:55:12 +00:00
Matthew Seaman
df6a9f0f03 Update to 4.6.6
This includes a number of security fixes

MFH:		2017Q1
Security:	7721562b-e20a-11e6-b2e2-6805ca0b3d42
2017-01-24 12:15:42 +00:00
Matthew Seaman
558f3e2d00 Update to 4.6.5.2
ChangeLog:	https://www.phpmyadmin.net/files/4.6.5.2/
2016-12-06 08:16:50 +00:00
Matthew Seaman
9c8c9cf763 Update to 4.6.5.1
ChangeLog: https://github.com/phpmyadmin/phpmyadmin/blob/master/ChangeLog

PR:		214905
2016-11-28 20:24:36 +00:00
Matthew Seaman
b4bf24d419 Security Update to 4.6.5
This update includes fixes for 14 security issues, as well as ordinary
bug fixes and improvements.

ChangeLog:    https://github.com/phpmyadmin/phpmyadmin/blob/master/ChangeLog

MFH:		2016Q4
Security:	6fe72178-b2e3-11e6-8b2a-6805ca0b3d42
2016-11-25 08:19:42 +00:00
Matthew Seaman
ee79a89f14 Security update to 4.6.4
This includes 26 security advisories of various severities up to
'critical', as well as bug-fix updates.

ChangeLog:  https://www.phpmyadmin.net/files/4.6.4/

MFH:		2016Q3
Security:	ef70b201-645d-11e6-9cdc-6805ca0b3d42
2016-08-17 11:05:42 +00:00
Matthew Seaman
352365dbbb Security update to 4.6.3
See:  PMSA-2016-19 -- PMSA-2016-28 inclusive
https://www.phpmyadmin.net/security/

vuXML to follow

MFH:		2016Q2
2016-06-23 07:28:35 +00:00
Matthew Seaman
0cb12deae6 Security update to 4.6.2
ChangeLog:	https://www.phpmyadmin.net/files/4.6.2/

MFH:		2016Q2
Security:	00ec1be1-22bb-11e6-9ead-6805ca0b3d42
2016-05-25 21:10:39 +00:00
Matthew Seaman
fc317575d6 Update to 4.6.1
This is a routine bug-fix update.

ChangeLog:	  https://www.phpmyadmin.net/files/4.6.1/
2016-05-03 07:27:13 +00:00
Matthew Seaman
7660fb8453 Update to 4.6.0
ChangeLog:	https://www.phpmyadmin.net/files/4.6.0/
2016-03-22 21:14:56 +00:00
Matthew Seaman
b62dc760ab Security Update to 4.5.5.1
Multiple XSS vulnerabilities and a man-in-the-middle attack against
API calls to GitHub.

MFH:		2016Q1
Security:	f682a506-df7c-11e5-81e4-6805ca0b3d42
2016-03-01 07:32:16 +00:00
Matthew Seaman
e8318643e9 Update to 4.5.5
This is a routine maintenance update.

ChangeLog:	https://www.phpmyadmin.net/files/4.5.5/
2016-02-23 08:15:15 +00:00
Matthew Seaman
a4cffb9972 Update to 4.5.4.1
This is actually pretty much a no-op on FreeBSD: we're using the
bundled verion of phpseclib, and the regrssion fix does not apply to
the 4.5.x branch.

ChangeLog:    https://www.phpmyadmin.net/files/4.5.4.1/
2016-01-29 16:26:41 +00:00
Matthew Seaman
569198a034 Security Update to 4.5.4
This is a combination of feature- and security- updates.  The PMA
project has not yet published the relevant advisories, so there is
very little information available about what the vulnerabilities are
and what versions they affect.  PMSA-2016-1 to PMSA-2016-9 are
expected to be available at https://www.phpmyadmin.net/security/
shortly.

  [Security] Multiple full path disclosure vulnerabilities, see PMASA-2016-1
  [Security] Unsafe generation of CSRF token, see PMASA-2016-2
  [Security] Multiple XSS vulnerabilities, see PMASA-2016-3
  [Security] Insecure password generation in JavaScript, see PMASA-2016-4
  [Security] Unsafe comparison of CSRF token, see PMASA-2016-5
  [Security] Multiple full path disclosure vulnerabilities, see PMASA-2016-6
  [Security] XSS vulnerability in normalization page, see PMASA-2016-7
  [Security] Full path disclosure vulnerability in SQL parser, see PMASA-2016-8
  [Security] XSS vulnerability in SQL editor, see PMASA-2016-9

VuXML entries to follow once the advisories are available.

ChangeLog:	https://www.phpmyadmin.net/files/4.5.4/
MFH:		2016Q1
Security:	https://www.phpmyadmin.net/security/PMASA-2016-1/
Security:	https://www.phpmyadmin.net/security/PMASA-2016-2/
Security:	https://www.phpmyadmin.net/security/PMASA-2016-3/
Security:	https://www.phpmyadmin.net/security/PMASA-2016-4/
Security:	https://www.phpmyadmin.net/security/PMASA-2016-5/
Security:	https://www.phpmyadmin.net/security/PMASA-2016-6/
Security:	https://www.phpmyadmin.net/security/PMASA-2016-7/
Security:	https://www.phpmyadmin.net/security/PMASA-2016-8/
Security:	https://www.phpmyadmin.net/security/PMASA-2016-9/
2016-01-28 07:37:59 +00:00
Matthew Seaman
7b3aff160b Security update to 4.5.3.1
This update fixes regressions in 4.5.3 and addresses a path disclosure
vulnerability.

MFH:		2015Q4
Security:	88f75070-abcf-11e5-83d3-6805ca0b3d42
2015-12-26 13:01:43 +00:00
Matthew Seaman
a4e2f225ff Update to 4.5.3
ChangeLog:	https://www.phpmyadmin.net/files/4.5.3/
2015-12-23 20:41:32 +00:00
Matthew Seaman
9d4bfb4404 Update to 4.5.2:
ChangeLog:	https://www.phpmyadmin.net/files/4.5.2/
2015-11-23 14:55:59 +00:00
Matthew Seaman
fd8f68033d Security update to 4.5.1
See https://www.phpmyadmin.net/security/PMASA-2015-5/

MFH:		2015Q4
Security:	08d11134-79c5-11e5-8987-6805ca0b3d42
2015-10-23 20:41:24 +00:00
Matthew Seaman
79947ef895 Update to 4.5.0.2
Another quick fix for a regression in 4.5.0

ChangeLog:    https://www.phpmyadmin.net/files/4.5.0.2/
2015-09-26 14:30:38 +00:00
Matthew Seaman
682e6df513 Update to 4.5.0.1
This is a fix for a regression in 4.5.0:
- issue #11492 AUTO_INCREMENT statements are partly missing from exports

ChangeLog:     https://www.phpmyadmin.net/files/4.5.0.1/
2015-09-24 09:20:56 +00:00
Matthew Seaman
8c0ede0305 Update to 4.5.0
This is the first release from the 4.5 branch, and a major update.

With this release, the minimum required version of PHP is php-5.5

ChangeLog:	   https://www.phpmyadmin.net/files/4.5.0/
2015-09-24 06:35:40 +00:00
Matthew Seaman
2e809f613f Update to 4.4.15
This is the last routine (ie. other than security patches) release
from the 4.4.x series.  The next update will be a major jump to the
4.5.x series.

ChangeLog:	https://www.phpmyadmin.net/files/4.4.15/
2015-09-20 13:01:28 +00:00
Matthew Seaman
48c5dab74a Security Update to 4.4.14.1
Advisory: https://www.phpmyadmin.net/security/PMASA-2015-4/

MFH:		2015Q3
Security:	3904f759-5659-11e5-a207-6805ca0b3d42
2015-09-08 18:51:43 +00:00
Matthew Seaman
fa76f06ffd Update to 4.4.14
This is a routine bugfix update

Change Log:	  https://www.phpmyadmin.net/files/4.4.14/
2015-08-20 15:54:19 +00:00
Matthew Seaman
8152ccc017 Update to 4.4.13.1
Quick reaction update to correct a mistake in 4.4.13 that prevented
importing a SQL dump file

Change Log:	  https://www.phpmyadmin.net/files/4.4.13.1/
2015-08-08 21:20:45 +00:00