[Secure-testing-commits] r9004 - data/CVE

nion at alioth.debian.org nion at alioth.debian.org
Fri Jun 6 15:21:21 UTC 2008


Author: nion
Date: 2008-06-06 15:21:20 +0000 (Fri, 06 Jun 2008)
New Revision: 9004

Modified:
   data/CVE/list
Log:
CVE-2008-2543 does affect asterisk-addons not asterisk-oh323, fixed in asterisk-addons 1.4.7-1 and not in etch

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2008-06-06 14:37:54 UTC (rev 9003)
+++ data/CVE/list	2008-06-06 15:21:20 UTC (rev 9004)
@@ -32,9 +32,7 @@
 CVE-2008-2544
 	RESERVED
 CVE-2008-2543 (The ooh323 channel driver in Asterisk Addons 1.2.x before 1.2.9 and ...)
-	- asterisk-oh323 <unfixed> (bug #484796)
-	NOTE: codebase completely changed, hard to tell if affected or not
-	NOTE: marking as unfixed for now and told maintainer to check back with upstream
+	- asterisk-addons 1.4.7-1 (bug #484796)
 CVE-2008-2542 (Stack-based buffer overflow in the getline function in Ppm/ppm.C in ...)
 	NOT-FOR-US: NASA Ames Research Center BigView
 CVE-2008-2541 (Multiple stack-based buffer overflows in the HTTP Gateway Service ...)




More information about the Secure-testing-commits mailing list