[ubuntu/lucid-security] asterisk (delayed), asterisk 1:1.6.2.5-0ubuntu1.3 (Accepted)
Ubuntu Installer
archive at ubuntu.com
Fri Jan 21 20:04:29 UTC 2011
asterisk (1:1.6.2.5-0ubuntu1.3) lucid-security; urgency=low
* SECURITY UPDATE: Stack buffer overflow in SIP channel driver. (LP: #705014)
- debian/patches/AST-2011-001-1.6.2: The size of the output buffer passed
to the ast_uri_encode function is now properly respected in main/utils.c.
Patch courtesy of upstream.
- CVE-2011-0495
Date: Thu, 20 Jan 2011 23:31:55 +0000
Changed-By: Dave Walker (Daviey) <DaveWalker at ubuntu.com>
Maintainer: Ubuntu MOTU Developers <ubuntu-motu at lists.ubuntu.com>
https://launchpad.net/ubuntu/lucid/+source/asterisk/1:1.6.2.5-0ubuntu1.3
-------------- next part --------------
Format: 1.8
Date: Thu, 20 Jan 2011 23:31:55 +0000
Source: asterisk
Binary: asterisk asterisk-h323 asterisk-doc asterisk-dev asterisk-dbg asterisk-sounds-main asterisk-config
Architecture: source
Version: 1:1.6.2.5-0ubuntu1.3
Distribution: lucid-security
Urgency: low
Maintainer: Ubuntu MOTU Developers <ubuntu-motu at lists.ubuntu.com>
Changed-By: Dave Walker (Daviey) <DaveWalker at ubuntu.com>
Description:
asterisk - Open Source Private Branch Exchange (PBX)
asterisk-config - Configuration files for Asterisk
asterisk-dbg - Debugging symbols for Asterisk
asterisk-dev - Development files for Asterisk
asterisk-doc - Source code documentation for Asterisk
asterisk-h323 - H.323 protocol support for Asterisk
asterisk-sounds-main - Core Sound files for Asterisk (English)
Launchpad-Bugs-Fixed: 705014
Changes:
asterisk (1:1.6.2.5-0ubuntu1.3) lucid-security; urgency=low
.
* SECURITY UPDATE: Stack buffer overflow in SIP channel driver. (LP: #705014)
- debian/patches/AST-2011-001-1.6.2: The size of the output buffer passed
to the ast_uri_encode function is now properly respected in main/utils.c.
Patch courtesy of upstream.
- CVE-2011-0495
Checksums-Sha1:
010f082e46b48dc6a2fb612fadc95fec44865d98 2683 asterisk_1.6.2.5-0ubuntu1.3.dsc
382a1d55efed3f8ed541fa852ad4229b11715e34 62648 asterisk_1.6.2.5-0ubuntu1.3.debian.tar.gz
Checksums-Sha256:
00af7418a7f4545675c1d168ae803303ab08e42b5902f930a36f6b2809cda27c 2683 asterisk_1.6.2.5-0ubuntu1.3.dsc
53bc8c7612bc9b81c7449b8975610d8f42eb131b834585fb22870fa4ed3d9104 62648 asterisk_1.6.2.5-0ubuntu1.3.debian.tar.gz
Files:
ca634dee9a2a0a59b18a8932229fdf6e 2683 comm optional asterisk_1.6.2.5-0ubuntu1.3.dsc
9e8955f86da0ee0a4cec1622e2309ddc 62648 comm optional asterisk_1.6.2.5-0ubuntu1.3.debian.tar.gz
Original-Maintainer: Debian VoIP Team <pkg-voip-maintainers at lists.alioth.debian.org>
More information about the Lucid-changes
mailing list