Bug#552756: AST-2009-007: SIP INVITE ACL bypass

2009-10-29 Thread Faidon Liambotis
Raphael Geissert wrote: A vulnerability has been reported in asterisk that allows a device to make calls on networks intended to be prohibited as defined by the deny and permit lines in sip.conf. The original advisory can be found at:

Bug#552756: AST-2009-007: SIP INVITE ACL bypass

2009-10-29 Thread Raphael Geissert
2009/10/29 Faidon Liambotis parav...@debian.org: Raphael Geissert wrote: A vulnerability has been reported in asterisk that allows a device to make calls on networks intended to be prohibited as defined by the deny and permit lines in sip.conf. The original advisory can be found at:

Bug#552756: AST-2009-007: SIP INVITE ACL bypass

2009-10-29 Thread Faidon Liambotis
Raphael Geissert wrote: Yes, the versions in testing and unstable (at least those that were there before I reported it) were both affected. May I suggest you to reply to the email in the future whenever you don't think it affects a version? the versions in the descriptions are usually not

Bug#552756: AST-2009-007: SIP INVITE ACL bypass

2009-10-29 Thread Raphael Geissert
Hi, 2009/10/29 Faidon Liambotis parav...@debian.org: Raphael Geissert wrote: Yes, the versions in testing and unstable (at least those that were there before I reported it) were both affected. May I suggest you to reply to the email in the future whenever you don't think it affects a

Bug#552756: AST-2009-007: SIP INVITE ACL bypass

2009-10-28 Thread Raphael Geissert
Package: asterisk Version: 1:1.6.2.0~dfsg~rc1-1 Severity: grave Tags: security patch Hi, A vulnerability has been reported in asterisk that allows a device to make calls on networks intended to be prohibited as defined by the deny and permit lines in sip.conf. The original advisory can be