CVSROOT:        /cvs
Module name:    ports
Changes by:     [email protected]   2012/03/15 16:20:50

Modified files:
        telephony/asterisk: Makefile distinfo 

Log message:
SECURITY update to asterisk 1.8.10.1

AST-2012-002: stack buffer overflow (remote unauthenticated sessions).
requires a dialplan using the Milliwatt application with the 'o' option,
and internal_timing off.  Affects all 1.4+ Asterisk versions.

AST-2012-003: stack buffer overflow (remote unauth'd sessions) in HTTP
manager interface; triggered by long digest authentication strings.
Code injection possibility.  Affects 1.8+.

Reply via email to