A vulnerability in the API call to GitHub can be exploited to perform a man-in-the-middle attack. Affected Versions: Versions 4.5.x (prior to 4.5.5.1) are affected. Fixed in phpMyAdmin 4.5.5.1. Upstream patch: https://github.com/phpmyadmin/phpmyadmin/commit/e42b7e3aedd29dd0f7a48575f20bfc5aca0ff976 External References: https://www.phpmyadmin.net/security/PMASA-2016-13/
Created phpMyAdmin tracking bugs for this issue: Affects: fedora-all [bug 1313698] Affects: epel-all [bug 1313699]
Created phpMyAdmin4 tracking bugs for this issue: Affects: epel-5 [bug 1313700]
phpMyAdmin-4.0.10.15-1.el6 has been pushed to the Fedora EPEL 6 stable repository. If problems still persist, please make note of it in this bug report.
php-udan11-sql-parser-3.4.0-1.fc23, phpMyAdmin-4.5.5.1-1.fc23 has been pushed to the Fedora 23 stable repository. If problems still persist, please make note of it in this bug report.
phpMyAdmin-4.4.15.5-1.el7 has been pushed to the Fedora EPEL 7 stable repository. If problems still persist, please make note of it in this bug report.
phpMyAdmin4-4.0.10.15-1.el5 has been pushed to the Fedora EPEL 5 stable repository. If problems still persist, please make note of it in this bug report.