|
|
Subscribe / Log in / New account

Fedora alert FEDORA-2008-6853 (asterisk)

From:  updates@fedoraproject.org
To:  fedora-package-announce@redhat.com
Subject:  [SECURITY] Fedora 9 Update: asterisk-1.6.0-0.19.beta9.fc9
Date:  Wed, 30 Jul 2008 20:07:58 +0000
Message-ID:  <20080730200758.40A981AD164@bastion.fedora.phx.redhat.com>

-------------------------------------------------------------------------------- Fedora Update Notification FEDORA-2008-6853 2008-07-30 18:09:17 -------------------------------------------------------------------------------- Name : asterisk Product : Fedora 9 Version : 1.6.0 Release : 0.19.beta9.fc9 URL : http://www.asterisk.org/ Summary : The Open Source PBX Description : Asterisk is a complete PBX in software. It runs on Linux and provides all of the features you would expect from a PBX and more. Asterisk does voice over IP in three protocols, and can interoperate with almost all standards-based telephony equipment using relatively inexpensive hardware. -------------------------------------------------------------------------------- Update Information: Security fixes for CVE-2008-3263 / AST-2008-010 and CVE-2008-3264 / AST-2008-011: AST-2008-010: Asterisk IAX 'POKE' resource exhaustion - http://downloads.digium.com/pub/security/AST-2008-010.html AST-2008-011: Traffic amplification in IAX2 firmware provisioning system - http://downloads.digium.com/pub/security/AST-2008-011.html Bugfixes: - Add patch SVN patch for asterisk crash when used with LDAP backend (#442011) -------------------------------------------------------------------------------- ChangeLog: * Fri Jul 25 2008 Jeffrey C. Ollie <jeff@ocjtech.us> - 1.6.0-0.19.beta9 - Add patch pulled from upstream SVN that fixes AST-2008-010 and AST-2008-011. * Fri Jul 25 2008 Jeffrey C. Ollie <jeff@ocjtech.us> - 1.6.0-0.18.beta9 - Add patch for LDAP extracted from upstream SVN (#442011) * Wed Jul 2 2008 Jeffrey C. Ollie <jeff@ocjtech.us> - 1.6.0-0.17.beta9 - Add patch that unbreaks cdr_tds with FreeTDS 0.82. - Properly obsolete conference subpackage. * Thu Jun 12 2008 Jeffrey C. Ollie <jeff@ocjtech.us> - 1.6.0-0.16.beta9 - Disable building cdr_tds since new FreeTDS in rawhide no longer provides needed library. * Wed Jun 11 2008 Jeffrey C. Ollie <jeff@ocjtech.us> - 1.6.0-0.15.beta9 - Bump release and rebuild to fix libtds breakage. * Mon May 19 2008 Jeffrey C. Ollie <jeff@ocjtech.us> - 1.6.0-0.14.beta9 - Update to 1.6.0-beta9. - Update patches so that they apply cleanly. - Temporarily disable app_conference patch as it doesn't compile - config/scripts/postgres_cdr.sql has been merged into realtime_pgsql.sql - Re-add the asterisk-strip.sh script as a source file. -------------------------------------------------------------------------------- References: [ 1 ] Bug #442011 - Asterisk crashed when using realtime LDAP backend https://bugzilla.redhat.com/show_bug.cgi?id=442011 -------------------------------------------------------------------------------- This update can be installed with the "yum" update program. Use su -c 'yum update asterisk' at the command line. For more information, refer to "Managing Software with yum", available at http://docs.fedoraproject.org/yum/. All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at http://fedoraproject.org/keys -------------------------------------------------------------------------------- _______________________________________________ Fedora-package-announce mailing list Fedora-package-announce@redhat.com http://www.redhat.com/mailman/listinfo/fedora-package-ann...


to post comments


Copyright © 2025, Eklektix, Inc.
Comments and public postings are copyrighted by their creators.
Linux is a registered trademark of Linus Torvalds