{"id":"openSUSE-SU-2019:2599-1","summary":"Security update for phpMyAdmin","details":"This update for phpMyAdmin fixes the following issues:\n\nphpMyAdmin was updated to 4.9.2:\n\n* CVE-2019-18622: SQL injection in Designer feature (boo#1157614)\n* Fixes for 'Failed to set session cookie' error \n* Advisor with MySQL 8.0.3 and newer\n* Fix PHP deprecation errors\n* Fix a situation where exporting users after a delete query could remove users\n* Fix incorrect 'You do not have privileges to manipulate with the users!' warning\n* Fix copying a database's privileges and several other problems moving columns with MariaDB\n* Fix for phpMyAdmin not selecting all the values when using shift-click to select during Export\n\n","modified":"2026-03-11T07:32:19.648621Z","published":"2019-12-01T09:13:34Z","related":["CVE-2019-18622"],"upstream":["CVE-2019-18622"],"references":[{"type":"ADVISORY","url":"https://lists.opensuse.org/archives/list/security-announce@lists.opensuse.org/thread/DLAGVPQT63KFOAQIHXSRYTV7A76K5KN3/#DLAGVPQT63KFOAQIHXSRYTV7A76K5KN3"},{"type":"REPORT","url":"https://bugzilla.suse.com/1157614"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2019-18622"}],"affected":[{"package":{"name":"phpMyAdmin","ecosystem":"SUSE:Package Hub 12","purl":"pkg:rpm/suse/phpMyAdmin&distro=SUSE%20Package%20Hub%2012"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"4.9.2-bp151.3.9.1"}]}],"ecosystem_specific":{"binaries":[{"phpMyAdmin":"4.9.2-bp151.3.9.1"}]},"database_specific":{"source":"https://ftp.suse.com/pub/projects/security/osv/openSUSE-SU-2019:2599-1.json"}},{"package":{"name":"phpMyAdmin","ecosystem":"SUSE:Package Hub 15","purl":"pkg:rpm/suse/phpMyAdmin&distro=SUSE%20Package%20Hub%2015"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"4.9.2-bp151.3.9.1"}]}],"ecosystem_specific":{"binaries":[{"phpMyAdmin":"4.9.2-bp151.3.9.1"}]},"database_specific":{"source":"https://ftp.suse.com/pub/projects/security/osv/openSUSE-SU-2019:2599-1.json"}},{"package":{"name":"phpMyAdmin","ecosystem":"SUSE:Package Hub 15 SP1","purl":"pkg:rpm/suse/phpMyAdmin&distro=SUSE%20Package%20Hub%2015%20SP1"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"4.9.2-bp151.3.9.1"}]}],"ecosystem_specific":{"binaries":[{"phpMyAdmin":"4.9.2-bp151.3.9.1"}]},"database_specific":{"source":"https://ftp.suse.com/pub/projects/security/osv/openSUSE-SU-2019:2599-1.json"}},{"package":{"name":"phpMyAdmin","ecosystem":"openSUSE:Leap 15.0","purl":"pkg:rpm/opensuse/phpMyAdmin&distro=openSUSE%20Leap%2015.0"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"4.9.2-bp151.3.9.1"}]}],"ecosystem_specific":{"binaries":[{"phpMyAdmin":"4.9.2-bp151.3.9.1"}]},"database_specific":{"source":"https://ftp.suse.com/pub/projects/security/osv/openSUSE-SU-2019:2599-1.json"}},{"package":{"name":"phpMyAdmin","ecosystem":"openSUSE:Leap 15.1","purl":"pkg:rpm/opensuse/phpMyAdmin&distro=openSUSE%20Leap%2015.1"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"4.9.2-bp151.3.9.1"}]}],"ecosystem_specific":{"binaries":[{"phpMyAdmin":"4.9.2-bp151.3.9.1"}]},"database_specific":{"source":"https://ftp.suse.com/pub/projects/security/osv/openSUSE-SU-2019:2599-1.json"}}],"schema_version":"1.7.5"}