-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA1 Format: 1.8 Date: Thu, 10 Feb 2011 17:06:37 +0200 Source: asterisk Binary: asterisk asterisk-h323 asterisk-doc asterisk-dev asterisk-dbg asterisk-sounds-main asterisk-config Architecture: sparc Version: 1:1.4.21.2~dfsg-3+lenny2 Distribution: lenny-security Urgency: high Maintainer: sparc Build Daemon (spontini) Changed-By: Faidon Liambotis Description: asterisk - Open Source Private Branch Exchange (PBX) asterisk-config - Configuration files for Asterisk asterisk-dbg - Debugging symbols for Asterisk asterisk-dev - Development files for Asterisk asterisk-doc - Source code documentation for Asterisk asterisk-h323 - H.323 protocol support for Asterisk asterisk-sounds-main - Core Sound files for Asterisk (English) Closes: 610487 Changes: asterisk (1:1.4.21.2~dfsg-3+lenny2) oldstable-security; urgency=high . [ Tzafrir Cohen ] * AST-2011-001/CVE-2011-0495: Stack buffer overflow in SIP channel driver (Closes: #610487) * Backport a one-liner patch from upstream (ast_uri_validhex) to successfully apply the AST-2011-001 patch. Checksums-Sha1: daa990563529f84d30ee28d5f834bf53da9f4a5c 2491048 asterisk_1.4.21.2~dfsg-3+lenny2_sparc.deb ae05704e93e6f6958160f5bc1b241a2f71c1bc77 389082 asterisk-h323_1.4.21.2~dfsg-3+lenny2_sparc.deb 914d04b01ed22bf804dac824bbc6368228738521 12746318 asterisk-dbg_1.4.21.2~dfsg-3+lenny2_sparc.deb Checksums-Sha256: 7907cf0c4fb9230b08e930530d80ce1791c964b7a27b5e8397a6511a01a986c9 2491048 asterisk_1.4.21.2~dfsg-3+lenny2_sparc.deb fdb9104155560a21eaf06da3e1805a6b2f8b8d0b147339a4c22db7f395da2388 389082 asterisk-h323_1.4.21.2~dfsg-3+lenny2_sparc.deb 0ba7b5e2e85c84e34fc120690876807f25e1a5204958b25c45e5ace7657c5b8d 12746318 asterisk-dbg_1.4.21.2~dfsg-3+lenny2_sparc.deb Files: a495d7c91252a0cf31f78ada24a86bd6 2491048 comm optional asterisk_1.4.21.2~dfsg-3+lenny2_sparc.deb 05d88d37532da2fa87b7eadd1045aea0 389082 comm optional asterisk-h323_1.4.21.2~dfsg-3+lenny2_sparc.deb a7167c91d92f91d4636dde9be802a666 12746318 devel extra asterisk-dbg_1.4.21.2~dfsg-3+lenny2_sparc.deb -----BEGIN PGP SIGNATURE----- Version: GnuPG v1.4.10 (GNU/Linux) iEYEARECAAYFAk1ZcPoACgkQXm3vHE4uylotxQCghWltD+1KPbD/JwpyrsCfyHxS XVUAoNLQi3nThYqKH5+xL81lHljoxQJr =r2qo -----END PGP SIGNATURE-----