Launchpad has imported 5 comments from the remote bug at
https://bugzilla.redhat.com/show_bug.cgi?id=838179.

If you reply to an imported comment from within Launchpad, your comment
will be sent to the remote bug automatically. Read more about
Launchpad's inter-bugtracker facilities at
https://help.launchpad.net/InterBugTracking.

------------------------------------------------------------------------
On 2012-07-06T22:50:16+00:00 Kurt wrote:


AST-2012-011

If a single voicemail account is manipulated by two parties  
simultaneously, a condition can occur where memory is freed  
twice causing a crash.

http://downloads.asterisk.org/pub/security/AST-2012-011.txt
http://downloads.asterisk.org/pub/security/AST-2012-011.pdf
http://downloads.asterisk.org/pub/security/AST-2012-011-1.8.diff
http://downloads.asterisk.org/pub/security/AST-2012-011-10.diff

Reply at:
https://bugs.launchpad.net/ubuntu/+source/asterisk/+bug/1022360/comments/3

------------------------------------------------------------------------
On 2012-07-06T22:52:38+00:00 Kurt wrote:

Created asterisk tracking bugs for this issue

Affects: fedora-17 [bug 838180]
Affects: fedora-16 [bug 838181]
Affects: epel-6 [bug 838182]

Reply at:
https://bugs.launchpad.net/ubuntu/+source/asterisk/+bug/1022360/comments/4

------------------------------------------------------------------------
On 2012-07-20T01:57:51+00:00 Fedora wrote:

asterisk-10.5.2-1.fc17 has been pushed to the Fedora 17 stable
repository.  If problems still persist, please make note of it in this
bug report.

Reply at:
https://bugs.launchpad.net/ubuntu/+source/asterisk/+bug/1022360/comments/12

------------------------------------------------------------------------
On 2012-12-11T09:04:19+00:00 Kurt wrote:

asterisk-1.8.18.0-1.fc16 has been pushed to the Fedora 16 stable
repository. If problems still persist, please make note of it in this
bug report.

Reply at:
https://bugs.launchpad.net/ubuntu/+source/asterisk/+bug/1022360/comments/16

------------------------------------------------------------------------
On 2012-12-11T09:04:54+00:00 Kurt wrote:

asterisk-1.8.18.0-1.el6 has been pushed to the Epel 6 repository.  If
problems still persist, please make note of it in this bug report.

Reply at:
https://bugs.launchpad.net/ubuntu/+source/asterisk/+bug/1022360/comments/17


** Changed in: asterisk (Fedora)
       Status: Unknown => Fix Released

** Changed in: asterisk (Fedora)
   Importance: Unknown => Medium

-- 
You received this bug notification because you are a member of Ubuntu
Bugs, which is subscribed to Ubuntu.
https://bugs.launchpad.net/bugs/1022360

Title:
  (CVE-2012-3812) CVE-2012-3812 asterisk: Remote crash vulnerability in
  voice mail application (CVE-2012-3863) CVE-2012-3863 asterisk:
  Possible resource leak on uncompleted re-invite transactions

To manage notifications about this bug go to:
https://bugs.launchpad.net/ubuntu/+source/asterisk/+bug/1022360/+subscriptions

-- 
ubuntu-bugs mailing list
[email protected]
https://lists.ubuntu.com/mailman/listinfo/ubuntu-bugs

Reply via email to