-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA1 Format: 1.8 Date: Thu, 10 Feb 2011 17:06:37 +0200 Source: asterisk Binary: asterisk asterisk-h323 asterisk-doc asterisk-dev asterisk-dbg asterisk-sounds-main asterisk-config Architecture: alpha Version: 1:1.4.21.2~dfsg-3+lenny2 Distribution: lenny-security Urgency: high Maintainer: Debian Build Daemon Changed-By: Faidon Liambotis Description: asterisk - Open Source Private Branch Exchange (PBX) asterisk-config - Configuration files for Asterisk asterisk-dbg - Debugging symbols for Asterisk asterisk-dev - Development files for Asterisk asterisk-doc - Source code documentation for Asterisk asterisk-h323 - H.323 protocol support for Asterisk asterisk-sounds-main - Core Sound files for Asterisk (English) Closes: 610487 Changes: asterisk (1:1.4.21.2~dfsg-3+lenny2) oldstable-security; urgency=high . [ Tzafrir Cohen ] * AST-2011-001/CVE-2011-0495: Stack buffer overflow in SIP channel driver (Closes: #610487) * Backport a one-liner patch from upstream (ast_uri_validhex) to successfully apply the AST-2011-001 patch. Checksums-Sha1: f19e40e764c2f0e318b02ca426299a6a996f2547 2762108 asterisk_1.4.21.2~dfsg-3+lenny2_alpha.deb f45dcaed00f2adfb6b8497e71736a348d1169777 393166 asterisk-h323_1.4.21.2~dfsg-3+lenny2_alpha.deb 98f20d2a823fa0f9e9e2d75f8c6e11c9ed77fb0f 13042822 asterisk-dbg_1.4.21.2~dfsg-3+lenny2_alpha.deb Checksums-Sha256: 44b4a962c8e588adf387b65440dbafd8d881e8c20f811856af23fcacd0bfff3a 2762108 asterisk_1.4.21.2~dfsg-3+lenny2_alpha.deb 0dd4525b7e8d5e234c99134cdec657d029c90650c28197ec342012e3fa16204b 393166 asterisk-h323_1.4.21.2~dfsg-3+lenny2_alpha.deb baf8e3e8de3157e2f93e78399667dc66f83bfde674458223dc24e0ae845c2f9a 13042822 asterisk-dbg_1.4.21.2~dfsg-3+lenny2_alpha.deb Files: 96073ac91df260990ffb94bb6f75e2b7 2762108 comm optional asterisk_1.4.21.2~dfsg-3+lenny2_alpha.deb b0f06dd8e07adc96b298de494a3885f0 393166 comm optional asterisk-h323_1.4.21.2~dfsg-3+lenny2_alpha.deb 72ce22f077766a66cac573c32db728f2 13042822 devel extra asterisk-dbg_1.4.21.2~dfsg-3+lenny2_alpha.deb -----BEGIN PGP SIGNATURE----- Version: GnuPG v1.4.10 (GNU/Linux) iEYEARECAAYFAk1ZcPgACgkQXm3vHE4uylrOQwCffCx48Ft22C28j8gQCP+Hb2pg bJsAn0nfOfZY9ifNTAywoIDyE6MquwCC =jdnp -----END PGP SIGNATURE-----