Welcome to mirror list, hosted at ThFree Co, Russian Federation.

github.com/phpmyadmin/phpmyadmin.git - Unnamed repository; edit this file 'description' to name the repository.
summaryrefslogtreecommitdiff
diff options
context:
space:
mode:
-rw-r--r--ChangeLog3
-rw-r--r--show_config_errors.php4
2 files changed, 6 insertions, 1 deletions
diff --git a/ChangeLog b/ChangeLog
index bee763e543..bfd137e706 100644
--- a/ChangeLog
+++ b/ChangeLog
@@ -97,6 +97,9 @@ phpMyAdmin - ChangeLog
- bug #3486970 [import] Exception on XML import
- bug #3488777 [navi] $cfg['ShowTooltipAliasTB'] and blank names in navigation
+3.4.10.2 (2012-03-28)
+- [security] Fixed local path disclosure vulnerability, see PMASA-2012-2
+
3.4.10.1 (2012-02-18)
- [security] XSS in replication setup, see PMASA-2012-1
diff --git a/show_config_errors.php b/show_config_errors.php
index f130416265..7fed434b8e 100644
--- a/show_config_errors.php
+++ b/show_config_errors.php
@@ -16,6 +16,8 @@ error_reporting(E_ALL);
/**
* Read config file.
*/
-require CONFIG_FILE;
+if (is_readable(CONFIG_FILE)) {
+ require CONFIG_FILE;
+}
?>