-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA1 Format: 1.8 Date: Thu, 10 Feb 2011 17:06:37 +0200 Source: asterisk Binary: asterisk asterisk-h323 asterisk-doc asterisk-dev asterisk-dbg asterisk-sounds-main asterisk-config Architecture: hppa Version: 1:1.4.21.2~dfsg-3+lenny2 Distribution: lenny-security Urgency: high Maintainer: hppa Build Daemon (peri) Changed-By: Faidon Liambotis Description: asterisk - Open Source Private Branch Exchange (PBX) asterisk-config - Configuration files for Asterisk asterisk-dbg - Debugging symbols for Asterisk asterisk-dev - Development files for Asterisk asterisk-doc - Source code documentation for Asterisk asterisk-h323 - H.323 protocol support for Asterisk asterisk-sounds-main - Core Sound files for Asterisk (English) Closes: 610487 Changes: asterisk (1:1.4.21.2~dfsg-3+lenny2) oldstable-security; urgency=high . [ Tzafrir Cohen ] * AST-2011-001/CVE-2011-0495: Stack buffer overflow in SIP channel driver (Closes: #610487) * Backport a one-liner patch from upstream (ast_uri_validhex) to successfully apply the AST-2011-001 patch. Checksums-Sha1: 21f876175b9267ea26d043213703c90ed9f83c22 2781718 asterisk_1.4.21.2~dfsg-3+lenny2_hppa.deb 06f3971d25a454bf091d99041e264f285324d179 412612 asterisk-h323_1.4.21.2~dfsg-3+lenny2_hppa.deb e34c2ef7742587936d5f6e5f426b31266a19a819 12875822 asterisk-dbg_1.4.21.2~dfsg-3+lenny2_hppa.deb Checksums-Sha256: 3c36bc7c04e208c632a4da0b4ae9bc3bca8d745976582e92c2816fc082804234 2781718 asterisk_1.4.21.2~dfsg-3+lenny2_hppa.deb 04ccc48377346cceaf3dc4e9408c1ad8038ac37dac1bc6c89bc32a3800e3d895 412612 asterisk-h323_1.4.21.2~dfsg-3+lenny2_hppa.deb 4c0c03997c4520094df1d331aec440a3d1c7469a7c3132d52a2534b0101cca5d 12875822 asterisk-dbg_1.4.21.2~dfsg-3+lenny2_hppa.deb Files: c494ff3fb934f980ff5c803c673c686b 2781718 comm optional asterisk_1.4.21.2~dfsg-3+lenny2_hppa.deb f974760bf7bc0e31f4e6f12fc3b50388 412612 comm optional asterisk-h323_1.4.21.2~dfsg-3+lenny2_hppa.deb b45e5812a10b01a3bed6aa327c95a618 12875822 devel extra asterisk-dbg_1.4.21.2~dfsg-3+lenny2_hppa.deb -----BEGIN PGP SIGNATURE----- Version: GnuPG v1.4.10 (GNU/Linux) iEYEARECAAYFAk1ZcPIACgkQXm3vHE4uyloOLACdFA80MYyBUcX+lPUi7VhvP82W yHMAoJ2r46wWrcBqyejuDPziMO2hyJPT =L3iq -----END PGP SIGNATURE-----