-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA256 Format: 1.8 Date: Sun, 18 Dec 2011 22:12:00 +0200 Source: asterisk Binary: asterisk asterisk-h323 asterisk-doc asterisk-dev asterisk-dbg asterisk-sounds-main asterisk-config Architecture: i386 Version: 1:1.4.21.2~dfsg-3+lenny6 Distribution: lenny-security Urgency: high Maintainer: i386 Build Daemon Changed-By: Tzafrir Cohen Description: asterisk - Open Source Private Branch Exchange (PBX) asterisk-config - Configuration files for Asterisk asterisk-dbg - Debugging symbols for Asterisk asterisk-dev - Development files for Asterisk asterisk-doc - Source code documentation for Asterisk asterisk-h323 - H.323 protocol support for Asterisk asterisk-sounds-main - Core Sound files for Asterisk (English) Closes: 651552 Changes: asterisk (1:1.4.21.2~dfsg-3+lenny6) oldstable-security; urgency=high . * Patch AST-2011-013: potential remote information disclosure Closes: #651552 (CVE-2011-4597 The side issue. The DoS is inapplicable to Lenny). - The patch changeges the sample sip.conf . We change the sample config files, but not the files under /etc/asterisk . Checksums-Sha1: 15cb81c8e4021f75450755f71cf3dacc9d6f5ce2 2432438 asterisk_1.4.21.2~dfsg-3+lenny6_i386.deb 1f8a9e92d1b702abe060f656e64cd69de35d46cb 389128 asterisk-h323_1.4.21.2~dfsg-3+lenny6_i386.deb 942a61b7e0f5592790b132cf5014a53e669b91bd 12946254 asterisk-dbg_1.4.21.2~dfsg-3+lenny6_i386.deb Checksums-Sha256: 7f03e95586c46cf5ffd410bf4ab59fde387f828ab3e3c122f252f21e10503b76 2432438 asterisk_1.4.21.2~dfsg-3+lenny6_i386.deb ca6fc502794100dc4c3b1ecee5ab3deb5ba417ebe31ac7d5fa4a77cb10d630e3 389128 asterisk-h323_1.4.21.2~dfsg-3+lenny6_i386.deb 8a92d47f12a362ede02b879695f8d3ddf34cfddfc65da886b06ca3c8748ff87a 12946254 asterisk-dbg_1.4.21.2~dfsg-3+lenny6_i386.deb Files: d9ebd2194df004534f6f1701502570a2 2432438 comm optional asterisk_1.4.21.2~dfsg-3+lenny6_i386.deb a7cf44907bf8c32cd01e21803a96e639 389128 comm optional asterisk-h323_1.4.21.2~dfsg-3+lenny6_i386.deb 12ab596d18e600fa20234957d2d1f4cc 12946254 devel extra asterisk-dbg_1.4.21.2~dfsg-3+lenny6_i386.deb -----BEGIN PGP SIGNATURE----- Version: GnuPG v1.4.10 (GNU/Linux) iQIcBAEBCAAGBQJO7mHuAAoJECkckSfIPUEsIDYQAJ9ok4nXRgMID01v58DLMIMn jAb/CZmp9t6EyLukml+RwXKnbdiT0vvsFuJafVvQuE7Vf0VeYE32eLDQ2899Lg1X 0I1daq4oDnALorwy0KtWhO4jaWZL4GyQvhXfv1yPDa5xqOA0SezP02aR1/oQqTjM F88T0JnC1i4cCCTT6Wjo9YPk6s8iSHWgn4FLX7hNOPcPD3OTv1hFg7QTg5mMVcaJ xwzu5kSfSmj4pSouYPnpQyEo7k819KtpvYGESeXEOg8LskcqmxZ34FYW9s5FZCU3 CTeZMkjHTLETH0n0WwGDrC2hodco4UBKEcijflmTG/9Ko3p4upCdI8m1xF3xCEd/ 4mINU+VKY9WFwI46CRXAmcwIdeFobUQ04lNfVd8Nco7VOVq7EgyXbPwT0hlMAPwq /NxCUhqzIOYrZlnDrul2YNo1HuXkqTJ2vd11ydAPAPGjLD44Te8EStlB70GNrsmd C/2fgIO+Mf/9hRmNfgAv3WWPzMMMe4xZ7J35Hvpo7r+UgjUeoYtKosmH5GLwITTv Sb2+ThEXD4lQmivW8W1QPUKUX1W+qRcMn4iVrZSlZRrw9syhPJfSoEjaFqTakX5+ 7wV2pLG6JsTz53Aima+zREtPUuf+uUqBR729y0or2ftqEtGYsSi0QDjBDdYeQm2o 21dbKJSn5ynKPm7LDjwI =Bdzr -----END PGP SIGNATURE-----