[asterisk-users] AST-2022-003: func_odbc: Possible SQL Injection

2022-04-14 Thread Asterisk Security Team
Asterisk Project Security Advisory - AST-2022-003 Product Asterisk Summary func_odbc: Possible SQL Injection Nature of Advisory SQL injection

[asterisk-users] AST-2022-002: res_stir_shaken: SSRF vulnerability with Identity header

2022-04-14 Thread Asterisk Security Team
Asterisk Project Security Advisory - AST-2022-002 ProductAsterisk Summaryres_stir_shaken: SSRF vulnerability with Identity header

[asterisk-users] AST-2022-001: res_stir_shaken: resource exhaustion with large files

2022-04-14 Thread Asterisk Security Team
Asterisk Project Security Advisory - AST-2022-001 ProductAsterisk Summaryres_stir_shaken: resource exhaustion with large files

[asterisk-users] Asterisk 16.25.2, 18.11.2, 19.3.2 and 16.8-cert14 Now Available (Security)

2022-04-14 Thread Asterisk Development Team
The Asterisk Development Team would like to announce security releases for Asterisk 16, 18 and 19, and Certified Asterisk 16.8. The available releases are released as versions 16.25.2, 18.11.2, 19.3.2 and 16.8-cert14. These releases are available for immediate download at