phpMyAdmin: security bugs

Robert Scheck robert at fedoraproject.org
Sat Oct 19 20:04:46 UTC 2013


Hello Paul,

On Wed, 09 Oct 2013, Paul Wouters wrote:
> I'm not a really user of phpMyAdmin so if someone who actually uses
> this package wishes to take maintainership, please do!

you noticed, that you pushed yet another version of phpMyAdmin with a *.swf
file that is somehow "proprietary" because we do not build the *.swf from
source? I as the package maintainer of phpMyAdmin would have expected that
you also are getting in touch with me at all - I can not find any e-mail in
my mailbox from you... :-(

Anyway, thank you for solving this security issue. And also thank you that
you were the guy uploading and building package - after all the package
owners/maintainers were noticed about *.swf files in their packages... ;-)

On the other hand, I would like to ask you to revisit e.g. RHBZ#959946 [1]
before asking others to step up as maintainers for phpMyAdmin. So there is
enough work left, before any other (especially non-security) phpMyAdmin
update should happen.

[1] https://bugzilla.redhat.com/show_bug.cgi?id=959946


Greetings,
  Robert
-------------- next part --------------
A non-text attachment was scrubbed...
Name: not available
Type: application/pgp-signature
Size: 198 bytes
Desc: not available
URL: <http://lists.fedoraproject.org/pipermail/devel/attachments/20131019/37e6380a/attachment.sig>


More information about the devel mailing list