-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA256 Format: 1.8 Date: Fri, 01 Jul 2011 14:57:12 +0300 Source: asterisk Binary: asterisk asterisk-h323 asterisk-doc asterisk-dev asterisk-dbg asterisk-sounds-main asterisk-config Architecture: i386 Version: 1:1.6.2.9-2+squeeze3 Distribution: squeeze-security Urgency: high Maintainer: i386 Build Daemon (murphy) Changed-By: Tzafrir Cohen Description: asterisk - Open Source Private Branch Exchange (PBX) asterisk-config - Configuration files for Asterisk asterisk-dbg - Debugging symbols for Asterisk asterisk-dev - Development files for Asterisk asterisk-doc - Source code documentation for Asterisk asterisk-h323 - H.323 protocol support for Asterisk asterisk-sounds-main - Core Sound files for Asterisk (English) Closes: 631446 631448 632029 Changes: asterisk (1:1.6.2.9-2+squeeze3) stable-security; urgency=high . * Patch AST-2011-008 (CVE-2011-2529) - crash on a malformed SIP packet (Closes: 631446). * Patch AST-2011-010 (CVE-2011-2535): crash due to dereferencing a remote pointer (closes: #631448). * AST-2011-011 (CVE-2011-2536): Don't leak SIP username information (closes: #632029) Checksums-Sha1: c2309089ee75120664b03514007e41eff83c6c0f 3349548 asterisk_1.6.2.9-2+squeeze3_i386.deb 5a910194c84fa5b301daece5dd185bc6d89ca704 527952 asterisk-h323_1.6.2.9-2+squeeze3_i386.deb 7be216576fbe8614623b198dba8230a3440dc552 20308964 asterisk-dbg_1.6.2.9-2+squeeze3_i386.deb Checksums-Sha256: 037fb0b3a4e2c1d63bb51488e53937b3e0d1551430a1aa4e51d2e4252342b483 3349548 asterisk_1.6.2.9-2+squeeze3_i386.deb 34cbaccb860adbeb42449eb49d8132af2abfb0ff8c676ef2cc8534ef9fdaf5db 527952 asterisk-h323_1.6.2.9-2+squeeze3_i386.deb 5b230f979fae3db188c562174778960502053a35a26a1f6dcd0de06ceb089359 20308964 asterisk-dbg_1.6.2.9-2+squeeze3_i386.deb Files: 8c28e000345ff343badbf5be4468bf4d 3349548 comm optional asterisk_1.6.2.9-2+squeeze3_i386.deb 6e5adcdd4ba643b70f97077ab979a456 527952 comm optional asterisk-h323_1.6.2.9-2+squeeze3_i386.deb 8a2e39a299101e139a02c57466fe5dba 20308964 debug extra asterisk-dbg_1.6.2.9-2+squeeze3_i386.deb -----BEGIN PGP SIGNATURE----- Version: GnuPG v1.4.10 (GNU/Linux) iQIcBAEBCAAGBQJOFXyKAAoJEFc2rhMcPx5euWEQAJCRjiW2mSkdysNszslMfFC6 2pNRTPEm2ditvMBQd+w0fLezcApRbE1lbQisuEq3sO+FYN4LEhzVWh1h48qbRxL/ q/mFsnELUc39f8aPyQefJpQBpBDUau85OF0FXbR4uvRp4UmLPp7fQ/HPHIcsWsHE kvbujdX8l2N/D7gf5as5wRZxZWJ/X02hZ/igQx8x5SJnpdhTrbfHWD9OstP8/ZoD zf+mNd6ecev/df22E+laqPb2oTuIjoPYnPvmw5IVuXJhf1SCDRYer3E3FD+j2QsO gOQj+FU+vnPZTwyjszHZaR6vkxBTXU2kbKpUh8UbghTC6EbwgYj8k3N6zvJEsth7 xbnWAHnJUSJpS3BwDz0P/CY8evgcR++wm0KZVwaunDAABb28rCSL3AXMw9ahSkML dQCD2gckW5xazYemJvSQBjlewGFqEY7QiJ3e6TcGQWspxYA9eGV/v/nD8b90bU4Q E3YQDNz8RPcv7LFcyD1k2/9Uc0qHjbnnpHrKg3H6+tnzQuIdcJ9a8Jt2FcsOg/HR gWiXnMMcXU2NhyJ8DVneJCJWsJ8kMxizPnhg8jGo/8jtwtzYFaQIJfIiTAmK8j+J m4P1w8JLa+fpsbBqoEFqie36J/HDEO80foesJWmOTNLv7W85nc2KtUKCk3awj4W7 mLBuyl4DaG2GA65r1bL5 =IH4O -----END PGP SIGNATURE-----