This is a list of security announcments that have been released for the current stable version of Frugalware
| Package: | phpmyadmin |
| Date: | 2011-12-23 |
| Posted by: | Miklos Vajna |
| Vulnerable version: | 3.4.7.1-1mores1 |
| Unaffected version: | 3.4.8-1mores1 |
| Bug tracker entry: | https://bugs.frugalware.org/ticket/4640 |
| CVEs: | http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2011-4634 |
| Description: | Using crafted database names, it was possible to produce XSS in the Database Synchronize and Database rename panels. Using an invalid and crafted SQL query, it was possible to produce XSS when editing a query on a table overview panel or when using the view creation dialog. Using a crafted column type, it was possible to produce XSS in the table search and create index dialogs. |













