Full Disclosure mailing list archives

[SECURITY] [DSA 2276-2] asterisk regression update


From: Luciano Bello <luciano () debian org>
Date: Mon, 11 Jul 2011 20:59:48 +0200

-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

- -------------------------------------------------------------------------
Debian Security Advisory DSA-2276-2                   security () debian org
http://www.debian.org/security/                             Luciano Bello
July 11, 2011                          http://www.debian.org/security/faq
- -------------------------------------------------------------------------

Package        : asterisk
Vulnerability  : multiple denial of service
Problem type   : remote
Debian-specific: no
CVE ID         : CVE-2011-2529 CVE-2011-2535
Debian Bug     : 631445 631446 631448 633481

DSA 2276-1 for Asterisk in the oldstable distribution (lenny) introduced a
functionality bug which invokes an undefined symbol.

For the oldstable distribution (lenny), this problem has been fixed in
version 1.4.21.2~dfsg-3+lenny5.

We recommend that you upgrade your asterisk packages.

Further information about Debian Security Advisories, how to apply
these updates to your system and frequently asked questions can be
found at: http://www.debian.org/security/

Mailing list: debian-security-announce () lists debian org

-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.11 (GNU/Linux)

iEYEARECAAYFAk4bSCQACgkQHYflSXNkfP+GsgCdFXnnbGpJQ6iVfUiMY++o1m/5
RF8AoIrnqgUzVJ4FjuhF9IoVJK2/d8pc
=IlPB
-----END PGP SIGNATURE-----

_______________________________________________
Full-Disclosure - We believe in it.
Charter: http://lists.grok.org.uk/full-disclosure-charter.html
Hosted and sponsored by Secunia - http://secunia.com/


Current thread: