Bug#1032092: asterisk: CVE-2022-23537 CVE-2022-23547 CVE-2022-39269

2023-08-07 Thread Faidon Liambotis
Dear maintainer, security team, (See #1036697 for a similar bug with an almost equivalent response) The changelog for the asterisk 1:20.4.0~dfsg+~cs6.13.40431414-1 upload dated 2023-08-04, currently in unstable, mentions: >+ fixate component pjproject at upstream release 2.13.1 The sources

Bug#1032092: asterisk: CVE-2022-23537 CVE-2022-23547 CVE-2022-39269

2023-02-27 Thread Moritz Mühlenhoff
Source: asterisk X-Debbugs-CC: t...@security.debian.org Severity: grave Tags: security Hi, The following vulnerabilities were published for asterisk. CVE-2022-23537[0]: | PJSIP is a free and open source multimedia communication library | written in C language implementing standard based