[Phpmyadmin-git] [phpmyadmin/phpmyadmin] 82161a: 4.0.10 release

Michal Čihař michal at cihar.com
Thu Dec 4 13:18:58 CET 2014


  Branch: refs/heads/QA_4_0
  Home:   https://github.com/phpmyadmin/phpmyadmin
  Commit: 82161a6c30a9ac2502d822e29cfb66beae7eeb4c
      https://github.com/phpmyadmin/phpmyadmin/commit/82161a6c30a9ac2502d822e29cfb66beae7eeb4c
  Author: Marc Delisle <marc at infomarc.info>
  Date:   2013-12-04 (Wed, 04 Dec 2013)

  Changed paths:
    M ChangeLog
    M README
    M doc/conf.py
    M libraries/Config.class.php

  Log Message:
  -----------
  4.0.10 release

Signed-off-by: Marc Delisle <marc at infomarc.info>


  Commit: 1b5592435617fa1b9dd68e2dc263de64c69fdc8a
      https://github.com/phpmyadmin/phpmyadmin/commit/1b5592435617fa1b9dd68e2dc263de64c69fdc8a
  Author: Madhura Jayaratne <madhura.cj at gmail.com>
  Date:   2014-07-17 (Thu, 17 Jul 2014)

  Changed paths:
    M ChangeLog
    M libraries/rte/rte_list.lib.php

  Log Message:
  -----------
  bug #4488 [security] XSS injection due to unescaped table name (triggers)

Signed-off-by: Marc Delisle <marc at infomarc.info>


  Commit: a92753bd65e1f8b72c46ed3dda6c362628e0daf7
      https://github.com/phpmyadmin/phpmyadmin/commit/a92753bd65e1f8b72c46ed3dda6c362628e0daf7
  Author: Marc Delisle <marc at infomarc.info>
  Date:   2014-07-17 (Thu, 17 Jul 2014)

  Changed paths:
    M ChangeLog
    M js/functions.js
    M js/tbl_structure.js

  Log Message:
  -----------
  bug #4492 [security] XSS in AJAX confirmation messages

Signed-off-by: Marc Delisle <marc at infomarc.info>


  Commit: f86761326c97eb5e2c9cefa2b1871252357f00a0
      https://github.com/phpmyadmin/phpmyadmin/commit/f86761326c97eb5e2c9cefa2b1871252357f00a0
  Author: Marc Delisle <marc at infomarc.info>
  Date:   2014-07-17 (Thu, 17 Jul 2014)

  Changed paths:
    M README
    M doc/conf.py
    M libraries/Config.class.php

  Log Message:
  -----------
  4.0.10.1 release

Signed-off-by: Marc Delisle <marc at infomarc.info>


  Commit: 285ed5b8d3bc9279fe6ed01da8151ed66be9b137
      https://github.com/phpmyadmin/phpmyadmin/commit/285ed5b8d3bc9279fe6ed01da8151ed66be9b137
  Author: Madhura Jayaratne <madhura.cj at gmail.com>
  Date:   2014-08-06 (Wed, 06 Aug 2014)

  Changed paths:
    M ChangeLog
    M js/sql.js

  Log Message:
  -----------
  bug #4501 [security] XSS in table browse page


  Commit: 0433d463b6c05ea7b1080995414268fe0a449b00
      https://github.com/phpmyadmin/phpmyadmin/commit/0433d463b6c05ea7b1080995414268fe0a449b00
  Author: Madhura Jayaratne <madhura.cj at gmail.com>
  Date:   2014-08-06 (Wed, 06 Aug 2014)

  Changed paths:
    M ChangeLog
    M js/functions.js

  Log Message:
  -----------
  bug #4502 [security] Self-XSS in enum value editor

Signed-off-by: Madhura Jayaratne <madhura.cj at gmail.com>


  Commit: 3668255202062dd7d60bff70236302084e73fc11
      https://github.com/phpmyadmin/phpmyadmin/commit/3668255202062dd7d60bff70236302084e73fc11
  Author: Madhura Jayaratne <madhura.cj at gmail.com>
  Date:   2014-08-06 (Wed, 06 Aug 2014)

  Changed paths:
    M ChangeLog
    M js/server_status_monitor.js

  Log Message:
  -----------
  bug #4503 [security] Self-XSSes in monitor

Signed-off-by: Madhura Jayaratne <madhura.cj at gmail.com>


  Commit: 03b92aa6e923f2b4a54b298cc0042548ff7ba89b
      https://github.com/phpmyadmin/phpmyadmin/commit/03b92aa6e923f2b4a54b298cc0042548ff7ba89b
  Author: Madhura Jayaratne <madhura.cj at gmail.com>
  Date:   2014-08-06 (Wed, 06 Aug 2014)

  Changed paths:
    M ChangeLog
    M js/tbl_chart.js

  Log Message:
  -----------
  bug #4504 [security] Self-XSS in query charts

Signed-off-by: Madhura Jayaratne <madhura.cj at gmail.com>


  Commit: 5cd9839467588b7882a5d28452d318a6caaf6b18
      https://github.com/phpmyadmin/phpmyadmin/commit/5cd9839467588b7882a5d28452d318a6caaf6b18
  Author: Madhura Jayaratne <madhura.cj at gmail.com>
  Date:   2014-08-06 (Wed, 06 Aug 2014)

  Changed paths:
    M ChangeLog

  Log Message:
  -----------
  Fix typo

Signed-off-by: Madhura Jayaratne <madhura.cj at gmail.com>


  Commit: 098caf93b63d4928e4df53310222c8727d0be9fe
      https://github.com/phpmyadmin/phpmyadmin/commit/098caf93b63d4928e4df53310222c8727d0be9fe
  Author: Madhura Jayaratne <madhura.cj at gmail.com>
  Date:   2014-08-16 (Sat, 16 Aug 2014)

  Changed paths:
    M ChangeLog
    M tbl_relation.php

  Log Message:
  -----------
  bug #4517 [security] XSS in relation view

Signed-off-by: Madhura Jayaratne <madhura.cj at gmail.com>


  Commit: 5e5261284190c6fe6985547fbd19d3345df14be1
      https://github.com/phpmyadmin/phpmyadmin/commit/5e5261284190c6fe6985547fbd19d3345df14be1
  Author: Marc Delisle <marc at infomarc.info>
  Date:   2014-08-17 (Sun, 17 Aug 2014)

  Changed paths:
    M ChangeLog
    M README
    M doc/conf.py
    M libraries/Config.class.php

  Log Message:
  -----------
  4.0.10.2 release

Signed-off-by: Marc Delisle <marc at infomarc.info>


  Commit: ab0dba4533f1d01dde43c1864413478c921cfe6b
      https://github.com/phpmyadmin/phpmyadmin/commit/ab0dba4533f1d01dde43c1864413478c921cfe6b
  Author: Marc Delisle <marc at infomarc.info>
  Date:   2014-09-12 (Fri, 12 Sep 2014)

  Changed paths:
    M ChangeLog
    M js/ajax.js
    A js/whitelist.php
    M libraries/Header.class.php
    M libraries/Scripts.class.php

  Log Message:
  -----------
  bug #4530 [security] DOM based XSS that results to a CSRF that creates a ROOT account in certain conditions

Signed-off-by: Marc Delisle <marc at infomarc.info>


  Commit: ceb7d7e1b2f8ab1e61710d0d061f10193a6c44c5
      https://github.com/phpmyadmin/phpmyadmin/commit/ceb7d7e1b2f8ab1e61710d0d061f10193a6c44c5
  Author: Marc Delisle <marc at infomarc.info>
  Date:   2014-09-13 (Sat, 13 Sep 2014)

  Changed paths:
    M ChangeLog
    M README
    M doc/conf.py
    M libraries/Config.class.php

  Log Message:
  -----------
  4.0.10.3 release

Signed-off-by: Marc Delisle <marc at infomarc.info>


  Commit: c6c77589a5860f20b5fb335033389de50e1a9031
      https://github.com/phpmyadmin/phpmyadmin/commit/c6c77589a5860f20b5fb335033389de50e1a9031
  Author: Marc Delisle <marc at infomarc.info>
  Date:   2014-09-28 (Sun, 28 Sep 2014)

  Changed paths:
    M libraries/TableSearch.class.php
    M libraries/Util.class.php

  Log Message:
  -----------
  [security] XSS with malicious ENUM values

Signed-off-by: Marc Delisle <marc at infomarc.info>


  Commit: 5118938f103e0022329847b654fcd99c8cb37de7
      https://github.com/phpmyadmin/phpmyadmin/commit/5118938f103e0022329847b654fcd99c8cb37de7
  Author: Marc Delisle <marc at infomarc.info>
  Date:   2014-10-01 (Wed, 01 Oct 2014)

  Changed paths:
    M ChangeLog
    M README
    M doc/conf.py
    M libraries/Config.class.php

  Log Message:
  -----------
  4.0.10.4 release

Signed-off-by: Marc Delisle <marc at infomarc.info>


  Commit: 57594febab385cd8fa3bc2c4511caa014d09485a
      https://github.com/phpmyadmin/phpmyadmin/commit/57594febab385cd8fa3bc2c4511caa014d09485a
  Author: Madhura Jayaratne <madhura.cj at gmail.com>
  Date:   2014-10-17 (Fri, 17 Oct 2014)

  Changed paths:
    M ChangeLog
    M libraries/database_interface.lib.php

  Log Message:
  -----------
  bug #4562 [security] XSS in debug SQL output

Signed-off-by: Madhura Jayaratne <madhura.cj at gmail.com>


  Commit: a150ea1df477fcc9a79bbdf3f26b40d9e333bcf1
      https://github.com/phpmyadmin/phpmyadmin/commit/a150ea1df477fcc9a79bbdf3f26b40d9e333bcf1
  Author: Madhura Jayaratne <madhura.cj at gmail.com>
  Date:   2014-10-18 (Sat, 18 Oct 2014)

  Changed paths:
    M ChangeLog
    M js/server_status_monitor.js

  Log Message:
  -----------
  bug #4563 [security] XSS in monitor query analyzer

Signed-off-by: Madhura Jayaratne <madhura.cj at gmail.com>


  Commit: d0f7dc79905f4795d328a018772871f9f98957fc
      https://github.com/phpmyadmin/phpmyadmin/commit/d0f7dc79905f4795d328a018772871f9f98957fc
  Author: Marc Delisle <marc at infomarc.info>
  Date:   2014-10-21 (Tue, 21 Oct 2014)

  Changed paths:
    M ChangeLog
    M README
    M doc/conf.py
    M libraries/Config.class.php

  Log Message:
  -----------
  4.0.10.5 release

Signed-off-by: Marc Delisle <marc at infomarc.info>


  Commit: 42b64e12b5f596366f94ef72365fd69a019ba820
      https://github.com/phpmyadmin/phpmyadmin/commit/42b64e12b5f596366f94ef72365fd69a019ba820
  Author: Madhura Jayaratne <madhura.cj at gmail.com>
  Date:   2014-11-04 (Tue, 04 Nov 2014)

  Changed paths:
    M ChangeLog
    M tbl_printview.php

  Log Message:
  -----------
  bug #4578 XSS vulnerability in table print view

Signed-off-by: Madhura Jayaratne <madhura.cj at gmail.com>


  Commit: 58cdd91fc83703a1ab645764fb3708e8e0b7c4a2
      https://github.com/phpmyadmin/phpmyadmin/commit/58cdd91fc83703a1ab645764fb3708e8e0b7c4a2
  Author: Madhura Jayaratne <madhura.cj at gmail.com>
  Date:   2014-11-04 (Tue, 04 Nov 2014)

  Changed paths:
    M ChangeLog
    M tbl_zoom_select.php

  Log Message:
  -----------
  bug #4579 [security] XSS vulnerability in zoom search page

Signed-off-by: Madhura Jayaratne <madhura.cj at gmail.com>


  Commit: 2e3f0b9457b3c8f78beb864120bd9d55617a11b5
      https://github.com/phpmyadmin/phpmyadmin/commit/2e3f0b9457b3c8f78beb864120bd9d55617a11b5
  Author: Madhura Jayaratne <madhura.cj at gmail.com>
  Date:   2014-11-17 (Mon, 17 Nov 2014)

  Changed paths:
    M ChangeLog
    M libraries/gis/pma_gis_factory.php

  Log Message:
  -----------
  bug #4594 [security] Path traversal in file inclusion of GIS factory

Signed-off-by: Madhura Jayaratne <madhura.cj at gmail.com>


  Commit: c5783321cd387d0b65b32cf399766f08a9acad68
      https://github.com/phpmyadmin/phpmyadmin/commit/c5783321cd387d0b65b32cf399766f08a9acad68
  Author: Madhura Jayaratne <madhura.cj at gmail.com>
  Date:   2014-11-17 (Mon, 17 Nov 2014)

  Changed paths:
    M ChangeLog
    M libraries/mult_submits.inc.php

  Log Message:
  -----------
  bug #4598 [security] XSS in multi submit

Signed-off-by: Madhura Jayaratne <madhura.cj at gmail.com>


  Commit: c7685e5acd3f8e722f4f374c6fa821590865b68d
      https://github.com/phpmyadmin/phpmyadmin/commit/c7685e5acd3f8e722f4f374c6fa821590865b68d
  Author: Madhura Jayaratne <madhura.cj at gmail.com>
  Date:   2014-11-18 (Tue, 18 Nov 2014)

  Changed paths:
    M ChangeLog
    M libraries/Config.class.php
    M libraries/Theme.class.php

  Log Message:
  -----------
  bug #4597 [security] XSS through pma_fontsize cookie

Signed-off-by: Madhura Jayaratne <madhura.cj at gmail.com>


  Commit: 13a288d0da6e79b99acb9052bcf31b6650c624b5
      https://github.com/phpmyadmin/phpmyadmin/commit/13a288d0da6e79b99acb9052bcf31b6650c624b5
  Author: Marc Delisle <marc at infomarc.info>
  Date:   2014-11-20 (Thu, 20 Nov 2014)

  Changed paths:
    M ChangeLog
    M README
    M doc/conf.py
    M libraries/Config.class.php

  Log Message:
  -----------
  4.0.10.6 release

Signed-off-by: Marc Delisle <marc at infomarc.info>


  Commit: 095729d81205f15f40d216d25917017da4c2fff8
      https://github.com/phpmyadmin/phpmyadmin/commit/095729d81205f15f40d216d25917017da4c2fff8
  Author: Madhura Jayaratne <madhura.cj at gmail.com>
  Date:   2014-12-01 (Mon, 01 Dec 2014)

  Changed paths:
    M ChangeLog
    M libraries/common.inc.php
    M libraries/plugins/AuthenticationPlugin.class.php
    M libraries/plugins/auth/AuthenticationCookie.class.php

  Log Message:
  -----------
  bug #4611 [security] DOS attack with long passwords

Signed-off-by: Madhura Jayaratne <madhura.cj at gmail.com>


  Commit: 00828f9ccb1024fbcd528f41dfdf28fab918dfff
      https://github.com/phpmyadmin/phpmyadmin/commit/00828f9ccb1024fbcd528f41dfdf28fab918dfff
  Author: Marc Delisle <marc at infomarc.info>
  Date:   2014-12-03 (Wed, 03 Dec 2014)

  Changed paths:
    M ChangeLog
    M README
    M doc/conf.py
    M libraries/Config.class.php

  Log Message:
  -----------
  4.0.10.7 release

Signed-off-by: Marc Delisle <marc at infomarc.info>


  Commit: 9daeaff5f0cd6c9b265cca7503c2278339f3a8a2
      https://github.com/phpmyadmin/phpmyadmin/commit/9daeaff5f0cd6c9b265cca7503c2278339f3a8a2
  Author: Michal Čihař <michal at cihar.com>
  Date:   2014-12-04 (Thu, 04 Dec 2014)

  Changed paths:
    M .travis.yml
    M composer.json

  Log Message:
  -----------
  Use composer to install correct phpunit version

Signed-off-by: Michal Čihař <michal at cihar.com>


  Commit: 853f7255c5f3db217685921583fe8e3aa1be36a3
      https://github.com/phpmyadmin/phpmyadmin/commit/853f7255c5f3db217685921583fe8e3aa1be36a3
  Author: Michal Čihař <michal at cihar.com>
  Date:   2014-12-04 (Thu, 04 Dec 2014)

  Changed paths:
    M .travis.yml

  Log Message:
  -----------
  Create database for test

Signed-off-by: Michal Čihař <michal at cihar.com>


  Commit: 26ce63dbde1064be68d9956a10204345c446f1b3
      https://github.com/phpmyadmin/phpmyadmin/commit/26ce63dbde1064be68d9956a10204345c446f1b3
  Author: Michal Čihař <michal at cihar.com>
  Date:   2014-12-04 (Thu, 04 Dec 2014)

  Changed paths:
    M .travis.yml

  Log Message:
  -----------
  Cache composer cache

Signed-off-by: Michal Čihař <michal at cihar.com>


  Commit: 9b2eb1cf47b0d2063b0bdc7b9a90d471a1058e4b
      https://github.com/phpmyadmin/phpmyadmin/commit/9b2eb1cf47b0d2063b0bdc7b9a90d471a1058e4b
  Author: Michal Čihař <michal at cihar.com>
  Date:   2014-12-04 (Thu, 04 Dec 2014)

  Changed paths:
    M .travis.yml
    M ChangeLog
    M README
    M composer.json
    M doc/conf.py
    M js/ajax.js
    M js/functions.js
    M js/server_status_monitor.js
    M js/sql.js
    M js/tbl_chart.js
    M js/tbl_structure.js
    A js/whitelist.php
    M libraries/Config.class.php
    M libraries/Header.class.php
    M libraries/Scripts.class.php
    M libraries/TableSearch.class.php
    M libraries/Theme.class.php
    M libraries/Util.class.php
    M libraries/common.inc.php
    M libraries/database_interface.lib.php
    M libraries/gis/pma_gis_factory.php
    M libraries/mult_submits.inc.php
    M libraries/plugins/AuthenticationPlugin.class.php
    M libraries/plugins/auth/AuthenticationCookie.class.php
    M libraries/rte/rte_list.lib.php
    M tbl_printview.php
    M tbl_relation.php
    M tbl_zoom_select.php

  Log Message:
  -----------
  Merge branch 'MAINT_4_0_10' into QA_4_0

Conflicts:
	ChangeLog


Compare: https://github.com/phpmyadmin/phpmyadmin/compare/692b4eba0316...9b2eb1cf47b0


More information about the Git mailing list