[ubuntu/lucid-security] asterisk (delayed), asterisk 1:1.6.2.5-0ubuntu1.3 (Accepted)

Ubuntu Installer archive at ubuntu.com
Fri Jan 21 20:04:29 UTC 2011


asterisk (1:1.6.2.5-0ubuntu1.3) lucid-security; urgency=low

  * SECURITY UPDATE: Stack buffer overflow in SIP channel driver. (LP: #705014)
    - debian/patches/AST-2011-001-1.6.2: The size of the output buffer passed
      to the ast_uri_encode function is now properly respected in main/utils.c.
      Patch courtesy of upstream.
    - CVE-2011-0495

Date: Thu, 20 Jan 2011 23:31:55 +0000
Changed-By: Dave Walker (Daviey) <DaveWalker at ubuntu.com>
Maintainer: Ubuntu MOTU Developers <ubuntu-motu at lists.ubuntu.com>
https://launchpad.net/ubuntu/lucid/+source/asterisk/1:1.6.2.5-0ubuntu1.3
-------------- next part --------------
Format: 1.8
Date: Thu, 20 Jan 2011 23:31:55 +0000
Source: asterisk
Binary: asterisk asterisk-h323 asterisk-doc asterisk-dev asterisk-dbg asterisk-sounds-main asterisk-config
Architecture: source
Version: 1:1.6.2.5-0ubuntu1.3
Distribution: lucid-security
Urgency: low
Maintainer: Ubuntu MOTU Developers <ubuntu-motu at lists.ubuntu.com>
Changed-By: Dave Walker (Daviey) <DaveWalker at ubuntu.com>
Description: 
 asterisk   - Open Source Private Branch Exchange (PBX)
 asterisk-config - Configuration files for Asterisk
 asterisk-dbg - Debugging symbols for Asterisk
 asterisk-dev - Development files for Asterisk
 asterisk-doc - Source code documentation for Asterisk
 asterisk-h323 - H.323 protocol support for Asterisk
 asterisk-sounds-main - Core Sound files for Asterisk (English)
Launchpad-Bugs-Fixed: 705014
Changes: 
 asterisk (1:1.6.2.5-0ubuntu1.3) lucid-security; urgency=low
 .
   * SECURITY UPDATE: Stack buffer overflow in SIP channel driver. (LP: #705014)
     - debian/patches/AST-2011-001-1.6.2: The size of the output buffer passed
       to the ast_uri_encode function is now properly respected in main/utils.c.
       Patch courtesy of upstream.
     - CVE-2011-0495
Checksums-Sha1: 
 010f082e46b48dc6a2fb612fadc95fec44865d98 2683 asterisk_1.6.2.5-0ubuntu1.3.dsc
 382a1d55efed3f8ed541fa852ad4229b11715e34 62648 asterisk_1.6.2.5-0ubuntu1.3.debian.tar.gz
Checksums-Sha256: 
 00af7418a7f4545675c1d168ae803303ab08e42b5902f930a36f6b2809cda27c 2683 asterisk_1.6.2.5-0ubuntu1.3.dsc
 53bc8c7612bc9b81c7449b8975610d8f42eb131b834585fb22870fa4ed3d9104 62648 asterisk_1.6.2.5-0ubuntu1.3.debian.tar.gz
Files: 
 ca634dee9a2a0a59b18a8932229fdf6e 2683 comm optional asterisk_1.6.2.5-0ubuntu1.3.dsc
 9e8955f86da0ee0a4cec1622e2309ddc 62648 comm optional asterisk_1.6.2.5-0ubuntu1.3.debian.tar.gz
Original-Maintainer: Debian VoIP Team <pkg-voip-maintainers at lists.alioth.debian.org>


More information about the Lucid-changes mailing list