UbuntuUpdates.org

Package "phpmyadmin"

Name: phpmyadmin

Description:

MySQL web administration tool

Latest version: 4:4.5.4.1-2ubuntu2.1
Release: xenial (16.04)
Level: security
Repository: universe
Homepage: https://www.phpmyadmin.net/

Links


Download "phpmyadmin"


Other versions of "phpmyadmin" in Xenial

Repository Area Version
base universe 4:4.5.4.1-2ubuntu1
updates universe 4:4.5.4.1-2ubuntu2.1

Changelog

Version: 4:4.5.4.1-2ubuntu2.1 2018-08-30 20:06:39 UTC

  phpmyadmin (4:4.5.4.1-2ubuntu2.1) xenial-security; urgency=medium

  * SECURITY UPDATE: Username/password decryption; Remote command execution
    - debian/patches/CVE-2016-6606.patch: Improve cookie encryption
    - debian/patches/CVE-2016-6631.patch: Move generator scripts out of the
      code
    - CVE-2016-6606, CVE-2016-6631

 -- Mike Salvatore <email address hidden> Wed, 29 Aug 2018 12:08:32 -0400

CVE-2016-6606 An issue was discovered in cookie encryption in phpMyAdmin. The decryption of the username/password is vulnerable to a padding oracle attack. This ca
CVE-2016-6631 An issue was discovered in phpMyAdmin. A user can execute a remote code execution attack against a server when phpMyAdmin is being run as a CGI appli



About   -   Send Feedback to @ubuntu_updates