CVSROOT: /cvs Module name: ports Changes by: [email protected] 2013/03/27 16:49:03
Modified files:
telephony/asterisk: Tag: OPENBSD_5_2 Makefile distinfo
Log message:
SECURITY update for 5.2-stable to Asterisk 1.8.20.2
* A possible buffer overflow during H.264 (video) format negotiation.
CVE-2013-2685
* A denial of service exists in Asterisk's HTTP server.
CVE-2013-2686
* A potential username disclosure exists in the SIP channel driver.
CVE-2013-2264
