LWN.net Logo

asterisk: access control violation

Package(s):asterisk CVE #(s):
Created:November 16, 2009 Updated:November 18, 2009
Description: From the Asterisk advisory:

A missing ACL check for handling SIP INVITEs allows a device to make calls on networks intended to be prohibited as defined by the "deny" and "permit" lines in sip.conf. The ACL check for handling SIP registrations was not affected.

Alerts:
Fedora FEDORA-2009-10861 2009-10-29

(Log in to post comments)

Copyright © 2013, Eklektix, Inc.
Comments and public postings are copyrighted by their creators.
Linux is a registered trademark of Linus Torvalds