-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA1 Format: 1.8 Date: Thu, 10 Feb 2011 17:06:37 +0200 Source: asterisk Binary: asterisk asterisk-h323 asterisk-doc asterisk-dev asterisk-dbg asterisk-sounds-main asterisk-config Architecture: arm Version: 1:1.4.21.2~dfsg-3+lenny2 Distribution: lenny-security Urgency: high Maintainer: arm Build Daemon (cats) Changed-By: Faidon Liambotis Description: asterisk - Open Source Private Branch Exchange (PBX) asterisk-config - Configuration files for Asterisk asterisk-dbg - Debugging symbols for Asterisk asterisk-dev - Development files for Asterisk asterisk-doc - Source code documentation for Asterisk asterisk-h323 - H.323 protocol support for Asterisk asterisk-sounds-main - Core Sound files for Asterisk (English) Closes: 610487 Changes: asterisk (1:1.4.21.2~dfsg-3+lenny2) oldstable-security; urgency=high . [ Tzafrir Cohen ] * AST-2011-001/CVE-2011-0495: Stack buffer overflow in SIP channel driver (Closes: #610487) * Backport a one-liner patch from upstream (ast_uri_validhex) to successfully apply the AST-2011-001 patch. Checksums-Sha1: 58fb43c485ec5cb85a4d5139412437e35bb08019 2511458 asterisk_1.4.21.2~dfsg-3+lenny2_arm.deb 2837008a4196885f2f450f2e78078f16502e7566 400802 asterisk-h323_1.4.21.2~dfsg-3+lenny2_arm.deb ca13f2a74e1e9d10550ab6dc954b09c07ddf0ba2 12776912 asterisk-dbg_1.4.21.2~dfsg-3+lenny2_arm.deb Checksums-Sha256: e65ec234f90ee825f796a2c710aa8832b028f2653ea807d1de724741b566a8df 2511458 asterisk_1.4.21.2~dfsg-3+lenny2_arm.deb 067ebf2c12524d9d256319a4a74c67bd58f597cce3143b4b270ad8828d91ce80 400802 asterisk-h323_1.4.21.2~dfsg-3+lenny2_arm.deb 7d106b2774823c2eefbac1d6599468186761cc4135ce6c3d72f9fea58a6d1537 12776912 asterisk-dbg_1.4.21.2~dfsg-3+lenny2_arm.deb Files: 4b355be3559a9ddaaf1a3a68611b9cd9 2511458 comm optional asterisk_1.4.21.2~dfsg-3+lenny2_arm.deb 5c6b0494c52aedfdec0551a00b968dd6 400802 comm optional asterisk-h323_1.4.21.2~dfsg-3+lenny2_arm.deb 9a08a527380d9788100608298a0e68a8 12776912 devel extra asterisk-dbg_1.4.21.2~dfsg-3+lenny2_arm.deb -----BEGIN PGP SIGNATURE----- Version: GnuPG v1.4.10 (GNU/Linux) iEYEARECAAYFAk1ZcPwACgkQXm3vHE4uylo0OACfQ1nwmItkxm9tIZl3nRvh5UZI lIYAoOy5Z0JQNPMLqHGHf9UzK6NOijVo =mbEz -----END PGP SIGNATURE-----