From 7e6d036e771fdecf584e23fb74ebed7b736c1ccb Mon Sep 17 00:00:00 2001 From: Aaron Bauman Date: Wed, 27 Jan 2021 11:14:56 -0500 Subject: [ GLSA 202101-35 ] phpMyAdmin: Multiple vulnerabilities Signed-off-by: Aaron Bauman --- glsa-202101-35.xml | 47 +++++++++++++++++++++++++++++++++++++++++++++++ 1 file changed, 47 insertions(+) create mode 100644 glsa-202101-35.xml (limited to 'glsa-202101-35.xml') diff --git a/glsa-202101-35.xml b/glsa-202101-35.xml new file mode 100644 index 00000000..974a6a24 --- /dev/null +++ b/glsa-202101-35.xml @@ -0,0 +1,47 @@ + + + + phpMyAdmin: Multiple vulnerabilities + Multiple vulnerabilities have been found in phpMyAdmin, allowing + remote attackers to conduct XSS. + + phpmyadmin + 2021-01-27 + 2021-01-27 + 747805 + remote + + + 4.9.6 + 4.9.6 + + + +

phpMyAdmin is a web-based management tool for MySQL databases.

+
+ +

Multiple vulnerabilities have been discovered in phpMyAdmin. Please + review the CVE identifiers referenced below for details. +

+
+ +

Please review the referenced CVE identifiers for details.

+
+ +

There is no known workaround at this time.

+
+ +

All phpMyAdmin users should upgrade to the latest version:

+ + + # emerge --sync + # emerge --ask --oneshot --verbose ">=dev-db/phpmyadmin-4.9.6" + +
+ + CVE-2020-26934 + CVE-2020-26935 + + whissi + b-man +
-- cgit v1.2.3-65-gdbad