adminer (4.2.5-3+deb9u3) stretch-security; urgency=high * CVE-2021-43008: Prevent an issue whereby an attacker could have performed an Arbitrary File Read on the remote server by requesting Adminer connect to a remote MySQL database which returned a "LOAD DATA LOCAL INFILE" MySQL command. -- Chris Lamb Fri, 13 May 2022 09:54:21 -0700 adminer (4.2.5-3+deb9u2) stretch-security; urgency=high * Non-maintainer upload by the LTS team. * Elasticsearch: Do not print response if HTTP code is not 200. (Fixes: CVE-2021-21311) -- Utkarsh Gupta Wed, 03 Mar 2021 00:16:38 +0530 adminer (4.2.5-3+deb9u1) stretch; urgency=high * CVE-2018-7667: Adminer allowed unauthenticated connections to be initiated to arbitrary systems and ports which could bypass external firewalls to identify internal hosts and/or perform port scanning of other servers. (Closes: #893668) -- Chris Lamb Tue, 20 Mar 2018 22:40:06 -0400 adminer (4.2.5-3) unstable; urgency=medium * Move mysql-server to default-mysql-server due to . -- Chris Lamb Sun, 04 Sep 2016 09:16:31 +0100 adminer (4.2.5-2) unstable; urgency=medium * Correct php5 package names. Thanks to Jeremy Davis . (Closes: #821471) -- Chris Lamb Wed, 17 Aug 2016 09:21:15 +0100 adminer (4.2.5-1) unstable; urgency=medium * New upstream release. (Closes: #821471) * Temporarily drop broken Apache configuration pending moving to apache2-maintscript-helper. (Closes: #669748, #826033) * Include virtual-mysql-server to support MariaDB (Closes: #781983) * Adopt package. * Update Vcs-{Git,Browser}. * Update debian/watch to point to Github, not SourceForge. * Remove now-unnecessary debian/repack and debian/README.source. * Move to minimal "dh" style in debian/rules. * Bump Debhelper compatibility level to 9. * Bump Standards-Version to 3.9.8. * Reflow text in package long description. * wrap-and-sort -sa. * Drop debian/missing-sources file. -- Chris Lamb Tue, 09 Aug 2016 12:25:39 +0100 adminer (4.2.1-1) unstable; urgency=low * Upstream upgrade * Send referrer header to the same domain * MySQL: Fix usage of utf8mb4 if the client library doesn't support it * MySQL: Use utf8mb4 in export only if required * SQLite: Use EXPLAIN QUERY PLAN in SQL query -- medhamsh Sat, 11 Apr 2015 09:05:25 +0530 adminer (3.7.1-1) unstable; urgency=low * Upstream upgrade * jsmin removed in upstream due to licensing issues * Modifying the Readme.source to reflect the same -- Medhamsh V Sat, 12 Oct 2013 01:55:33 +0530 adminer (3.3.4-1) unstable; urgency=low * Upstream upgrade -- Medhamsh V Sat, 30 Jun 2012 01:20:29 +0530 adminer (3.3.3-1) unstable; urgency=low * Initial release (Closes: #658861) -- Medhamsh V Mon, 06 Feb 2012 01:29:00 +0530