[phpMyAdmin Developers] phpMyAdmin 4.9.1 is released

Isaac Bennetch <[email protected]> Sat, 21 Sep 2019 00:07:52 -0400
Newsgroups gmane.comp.php.phpmyadmin.devel
Message-ID <[email protected]>
This is an OpenPGP/MIME signed message (RFC 4880 and 3156)
--===============1239760531805193242==
Content-Type: multipart/signed; micalg=pgp-sha512;
 protocol="application/pgp-signature";
 boundary="72FPr9nzNVPKVP5mB9h4qhIECva6dAq7d"

This is an OpenPGP/MIME signed message (RFC 4880 and 3156)
--72FPr9nzNVPKVP5mB9h4qhIECva6dAq7d
Content-Type: multipart/mixed; boundary="DvLoJjUGTdjBvVbc6qZV9EEcLMEKAz4HI";
 protected-headers="v1"
From: Isaac Bennetch <[email protected]>
To: [email protected],
 Developer discussion for phpMyAdmin <[email protected]>
Message-ID: <[email protected]>
Subject: phpMyAdmin 4.9.1 is released

--DvLoJjUGTdjBvVbc6qZV9EEcLMEKAz4HI
Content-Type: text/plain; charset=utf-8
Content-Language: en-US
Content-Transfer-Encoding: quoted-printable

Welcome to phpMyAdmin 4.9.1, a bugfix release.

This is a regularly-schedule bugfix release that also includes some
security hardening measures.

We wish to point out that this also includes a routine fix for an issue
that has been reported as CVE-2019-12922. The fix for this has been in
our release queue to be part of this release, however it is the opinion
of the team that the reported attack vector did not justify a separate
release.

This release includes fixes for many bugs, including:

- Editing columns with CURRENT_TIMESTAMP for MySQL versions 8.0.13 and ne=
wer
- Compatibility issues with PHP 8
- Export of GIS visualization
- Enhanced descriptions for several collation types
- Creating a user with a single quote in the password string
- Unexpected quotes during import and export on text fields
- Improvements to adding new tables to Designer
- Fix an issue where an authenticated user could trigger heavy traffic
between the database server and web server
- Fix a weakness where an attacker, under certain conditions, working at
the same time as an administrator is using the setup script, could
delete a server from the setup script

There are many, many more bug fixes thanks to the efforts of our
developers, Google Summer of Code applicants, and other contributors.

The phpMyAdmin team


--DvLoJjUGTdjBvVbc6qZV9EEcLMEKAz4HI--

--72FPr9nzNVPKVP5mB9h4qhIECva6dAq7d
Content-Type: application/pgp-signature; name="signature.asc"
Content-Description: OpenPGP digital signature
Content-Disposition: attachment; filename="signature.asc"

-----BEGIN PGP SIGNATURE-----
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=K7eh
-----END PGP SIGNATURE-----

--72FPr9nzNVPKVP5mB9h4qhIECva6dAq7d--


--===============1239760531805193242==
Content-Type: text/plain; charset="utf-8"
MIME-Version: 1.0
Content-Transfer-Encoding: base64
Content-Disposition: inline

X19fX19fX19fX19fX19fX19fX19fX19fX19fX19fX19fX19fX19fX19fX19fX18KRGV2ZWxvcGVy
cyBtYWlsaW5nIGxpc3QKRGV2ZWxvcGVyc0BwaHBteWFkbWluLm5ldApodHRwczovL2xpc3RzLnBo
cG15YWRtaW4ubmV0L21haWxtYW4vbGlzdGluZm8vZGV2ZWxvcGVycwo=

--===============1239760531805193242==--