asterisk: access control violation
| Package(s): | asterisk | CVE #(s): | |||||
| Created: | November 16, 2009 | Updated: | November 18, 2009 | ||||
| Description: | From the Asterisk advisory:
A missing ACL check for handling SIP INVITEs allows a device to make calls on networks intended to be prohibited as defined by the "deny" and "permit" lines in sip.conf. The ACL check for handling SIP registrations was not affected. | ||||||
| Alerts: |
| ||||||
