Re: [SR-Users] NIST advisory

2021-12-02 Thread Karsten Horsmann
Hi David, and for "unpatched" systems you can use remove_hf_re instead of remove_hf to avoid that. Am Do., 2. Dez. 2021 um 10:17 Uhr schrieb Gerry | Rigatta < gjacob...@rigatta.com>: > Hi David, > > there has been a very interesting discussion here about this >

Re: [SR-Users] NIST advisory

2021-12-02 Thread Gerry | Rigatta
Hi David, there has been a very interesting discussion here about this https://lists.kamailio.org/pipermail/sr-users/2020-September/110325.html Unfortunately there is no dedicated security page on kamailio.org or the wiki therefore Google indexes Kamailio security issues badly. Best Gerry

Re: [SR-Users] NIST advisory

2021-12-01 Thread Ben Kaufman
(cherry picked from commit 7135feee9cdc93efa8c0c3e4abf24a9335ce42de) (cherry picked from commit 63e227383d9c5112f287299981d217f1558a15a8) Ben Kaufman From: sr-users On Behalf Of David Villasmil Sent: Wednesday, December 1, 2021 4:13 PM To: Kamailio (SER) - Users Mailing List Subjec

Re: [SR-Users] NIST advisory

2021-12-01 Thread danq
Hi David, I believe it was originally found by Enable Security; https://www.rtcsec.com/article/smuggling-sip-headers-past-sbc/ Although happy to be corrected if they were not the original reporters. Dan > On 1 Dec 2021, at

[SR-Users] NIST advisory

2021-12-01 Thread David Villasmil
Anyone knows about this? https://nvd.nist.gov/vuln/detail/CVE-2020-28361 -- Regards, David Villasmil email: david.villasmil.w...@gmail.com phone: +34669448337 __ Kamailio - Users Mailing List - Non Commercial Discussions *