Description: Fix PMASA-2014-1 / CVE-2014-1879

diff -Nur phpmyadmin-3.4.11.1/import.php phpmyadmin-3.4.11.1.new/import.php
--- phpmyadmin-3.4.11.1/import.php	2012-08-12 15:38:18.000000000 +0200
+++ phpmyadmin-3.4.11.1.new/import.php	2014-07-09 18:49:56.000000000 +0200
@@ -409,11 +409,11 @@
             $message->addParam($executed_queries);
 
             $message->addString($import_notice);
-            $message->addString('(' . $_FILES['import_file']['name'] . ')');
+            $message->addString('(' . htmlspecialchars($_FILES['import_file']['name']) . ')');
         } else {
             $message = PMA_Message::success(__('Import has been successfully finished, %d queries executed.'));
             $message->addParam($executed_queries);
-            $message->addString('(' . $_FILES['import_file']['name'] . ')');
+            $message->addString('(' . htmlspecialchars($_FILES['import_file']['name']) . ')');
         }
     }
 }
