Posts by Speddy

    See my signature for more details about my current i-MSCP environment.

    Security fix: phpMyAdmin 4.8.5 is released

    2019-01-26

    The phpMyAdmin team announces the release of phpMyAdmin version 4.8.5. Among other bug fixes, this contains several important security fixes. Upgrading is highly recommended for all users.

    The security fixes involve:

    The arbitrary file read vulnerability could also be exploited to delete arbitrary files on the server. This attack requires that phpMyAdmin be run with the $cfg['AllowArbitraryServer'] directive set to true, which is not the default. An attacker must run a malicious server process that will masquerade as a MySQL server. This exploit has been found and fixed recently in several other related projects and appears to be caused by a bug in PHP (https://bugs.php.net/bug.php?id=77496).

    In addition to the security fixes, this release also includes these bug fixes and more as part of our regular release cycle:

    • Export to SQL format not available
    • QR code not shown when adding two-factor authentication to a user account
    • Issue with adding a new user in MySQL 8.0.11 and newer
    • Frozen interface relating to Text_Plain_Sql plugin
    • Table level Operations tab was missing

    And several more. Complete notes are in the ChangeLog file included with this release.

    As always, downloads are available at https://www.phpmyadmin.net/downloads/

    Executing in a Debian 9 an:

    Code
    1. $ apt update

    I get this error:

    Code
    1. W: An error occurred during the signature verification. The repository is not updated and the previous index files will be used. GPG error: https://packages.sury.org/php stretch InRelease: The following signatures couldn't be verified because the public key is not available: NO_PUBKEY B188E2B695BD4743
    2. W: Failed to fetch https://packages.sury.org/php/dists/stretch/InRelease The following signatures couldn't be verified because the public key is not available: NO_PUBKEY B188E2B695BD4743
    3. W: Some index files failed to download. They have been ignored, or old ones used instead.

    This is because the DPA has a new signing key. To resolve this problem you have to update the APT signing key, downloading the new key from the repositories:



    Moin Moin @ all and Nuxwin



    When I run apt-get update the following error message comes to light on all my server where I have Debian 9 on it I have already searched google but no message has been found, the repo is still there at all what has changed.



    my source.list




    Code
    1. root@debian:~# apt-key list | grep -A 1 expired
    2. Warning: apt-key output should not be parsed (stdout is not a terminal)
    3. pub dsa1024 2003-02-03 [SCA] [expired: 2019-02-17]
    4. A4A9 4068 76FC BD3C 4567 70C8 8C71 8D3B 5072 E1F5
    5. uid [ expired] MySQL Release Engineering <mysql-build@oss.oracle.com>
    6. root@debian:~#

    Added apcu version 5.1.17


    Hat sich erledigt hatte mal wieder ne volle Festplatte obwohl die 3 Terabyte noch vorhanden sind muss ich noch mal nachsehen wie ich imscp es beibringe das die backups auf denn anderen festplaten gelegt werden.


    Has done had once again ne full hard drive although the 3 terabytes are still available, I have to look again as I teach imscp that the backups on other hard disks are placed.