[phpMyAdmin Developers] phpMyAdmin 4.9.4 and 5.0.1 are released

Isaac Bennetch <[email protected]> Tue, 7 Jan 2020 21:43:19 -0500
Newsgroups gmane.comp.php.phpmyadmin.devel
Message-ID <[email protected]>
This is an OpenPGP/MIME signed message (RFC 4880 and 3156)
--===============7630196727292196312==
Content-Type: multipart/signed; micalg=pgp-sha512;
 protocol="application/pgp-signature";
 boundary="oDWFgVbdq0r7RZhqtgyqKeiUpbUZ23are"

This is an OpenPGP/MIME signed message (RFC 4880 and 3156)
--oDWFgVbdq0r7RZhqtgyqKeiUpbUZ23are
Content-Type: multipart/mixed; boundary="MxcIQRcS1XM1GCqhHH6tCQi7uzpFVNNuz"

--MxcIQRcS1XM1GCqhHH6tCQi7uzpFVNNuz
Content-Type: text/plain; charset=utf-8
Content-Language: en-US
Content-Transfer-Encoding: quoted-printable

The phpMyAdmin team announces the release of versions 4.9.4 and 5.0.1.

As a reminder, version 4.x is in the LTS phase, where only security
fixes and critical bug fixes are made. Users are suggested to migrate to
version 5.

These releases address two issues, a problem with two-factor
authentication that was introduced with the last releases, and a fix for
an SQL injection vulnerability that was reported by CSW Research Labs
<https://twitter.com/cswcyberworks>. This vulnerability is assigned
PMASA-2020-1 and requires that the attacker have logged in through a
valid MySQL account.

Known issue: the reported current release version may display
incorrectly on the main page (for instance, "Version information: 5.0.1,
latest stable version: 4.9.4"). This is expected to be fixed in the next
routine bug fix release.

Downloads are available at phpmyadmin.net.

Happy new year,
the phpMyAdmin team


--MxcIQRcS1XM1GCqhHH6tCQi7uzpFVNNuz--

--oDWFgVbdq0r7RZhqtgyqKeiUpbUZ23are
Content-Type: application/pgp-signature; name="signature.asc"
Content-Description: OpenPGP digital signature
Content-Disposition: attachment; filename="signature.asc"

-----BEGIN PGP SIGNATURE-----
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=uuck
-----END PGP SIGNATURE-----

--oDWFgVbdq0r7RZhqtgyqKeiUpbUZ23are--


--===============7630196727292196312==
Content-Type: text/plain; charset="utf-8"
MIME-Version: 1.0
Content-Transfer-Encoding: base64
Content-Disposition: inline

X19fX19fX19fX19fX19fX19fX19fX19fX19fX19fX19fX19fX19fX19fX19fX18KRGV2ZWxvcGVy
cyBtYWlsaW5nIGxpc3QKRGV2ZWxvcGVyc0BwaHBteWFkbWluLm5ldApodHRwczovL2xpc3RzLnBo
cG15YWRtaW4ubmV0L21haWxtYW4vbGlzdGluZm8vZGV2ZWxvcGVycwo=

--===============7630196727292196312==--