Fedora Linux Distribution

Find the information you need for your favorite open source distribution .

Fedora 28: mariadb-connector-c Security Update

data:image/svg+xml,%3Csvg%20xmlns=%22http://www.w3.org/2000/svg%22%20viewBox=%220%200%20100%20100%22%3E%3C/svg%3E

**MariaDB C / C++ connector** Release notes: https://mariadb.com/kb/en/mariadb-connector-c-307-release-notes/ Maintainer notes: Marking as a security update, beacuse of fixed resource leaks. Moving libmariadb pkgconfig file to this package from mariadb-devel. Test with MariaDB-3:10.2.19-2

Fedora 29: mariadb Security Update

data:image/svg+xml,%3Csvg%20xmlns=%22http://www.w3.org/2000/svg%22%20viewBox=%220%200%20100%20100%22%3E%3C/svg%3E

**MariaDB 10.3.11** Release notes: https://mariadb.com/kb/en/mariadb-10311-release-notes/ CVEs fixed: CVE-2018-3282 CVE-2016-9843 CVE-2018-3174 CVE-2018-3143 CVE-2018-3156 CVE-2018-3251 CVE-2018-3185 CVE-2018-3277 CVE-2018-3162 CVE-2018-3173 CVE-2018-3200 CVE-2018-3284

Fedora 29: phpMyAdmin Security Update 2018-088802878a

data:image/svg+xml,%3Csvg%20xmlns=%22http://www.w3.org/2000/svg%22%20viewBox=%220%200%20100%20100%22%3E%3C/svg%3E

Upstream announcement: The phpMyAdmin team is pleased to announce the release of **phpMyAdmin version 4.8.4**. Among other bug fixes, this contains several important security fixes. The security fixes involve: * Local file inclusion (https://www.phpmyadmin.net/security/PMASA-2018-6/), * XSRF/CSRF vulnerabilities allowing a specially-crafted URL to perform harmful operations

Fedora 28: phpMyAdmin Security Update 2018-5aeca60933

data:image/svg+xml,%3Csvg%20xmlns=%22http://www.w3.org/2000/svg%22%20viewBox=%220%200%20100%20100%22%3E%3C/svg%3E

Upstream announcement: The phpMyAdmin team is pleased to announce the release of **phpMyAdmin version 4.8.4**. Among other bug fixes, this contains several important security fixes. The security fixes involve: * Local file inclusion (https://www.phpmyadmin.net/security/PMASA-2018-6/), * XSRF/CSRF vulnerabilities allowing a specially-crafted URL to perform harmful operations

Fedora 29: php Security Update

data:image/svg+xml,%3Csvg%20xmlns=%22http://www.w3.org/2000/svg%22%20viewBox=%220%200%20100%20100%22%3E%3C/svg%3E

**PHP version 7.2.13** (06 Dec 2018) **ftp:** * Fixed bug php#77151 (ftp_close(): SSL_read on shutdown). (Remi) **CLI:** * Fixed bug php#77111 (php-win.exe corrupts unicode symbols from cli parameters). (Anatol) **Fileinfo:** * Fixed bug php#77095 (slowness regression in 7.2/7.3 (compared to 7.1)). (Anatol) **iconv:** * Fixed bug php#77147 (Fixing 60494 ignored

Fedora 29: php-symfony3 Security Update 2018-8d3a9bdff1

data:image/svg+xml,%3Csvg%20xmlns=%22http://www.w3.org/2000/svg%22%20viewBox=%220%200%20100%20100%22%3E%3C/svg%3E

**Version 3.4.20** (2018-12-06) * security [CVE-2018-19790](https://symfony.com/blog/cve-2018-19790-open-redirect-vulnerability-when-using-security-http) [Security\Http] detect bad redirect targets using backslashes (@xabbuh) * security [CVE-2018-19789](https://symfony.com/blog/cve-2018-19789-disclosure-of-uploaded-files-full-path) [Form] Filter file uploads out of regular form types (@nicolas-grekas) * bug #29436 [Cache] Fixed

Fedora 29: php-symfony Security Update 2018-b38a4dd0c7

data:image/svg+xml,%3Csvg%20xmlns=%22http://www.w3.org/2000/svg%22%20viewBox=%220%200%20100%20100%22%3E%3C/svg%3E

**Version 2.8.49** (2018-12-06) * security [CVE-2018-19790](https://symfony.com/blog/cve-2018-19790-open-redirect-vulnerability-when-using-security-http) [Security\Http] detect bad redirect targets using backslashes (@xabbuh) * security [CVE-2018-19789](https://symfony.com/blog/cve-2018-19789-disclosure-of-uploaded-files-full-path) [Form] Filter file uploads out of regular form types (@nicolas-grekas)

Fedora 29: php-symfony4 Security Update 2018-84a1f77d89

data:image/svg+xml,%3Csvg%20xmlns=%22http://www.w3.org/2000/svg%22%20viewBox=%220%200%20100%20100%22%3E%3C/svg%3E

**Version 4.1.9** (2018-12-06) * security [CVE-2018-19790](https://symfony.com/blog/cve-2018-19790-open-redirect-vulnerability-when-using-security-http) [Security\Http] detect bad redirect targets using backslashes (@xabbuh) * security [CVE-2018-19789](https://symfony.com/blog/cve-2018-19789-disclosure-of-uploaded-files-full-path) [Form] Filter file uploads out of regular form types (@nicolas-grekas) * bug #29436 [Cache] Fixed