Bug#510583: CVE-2008-5744: overflow in tor2 driver in Zaptel

Tzafrir Cohen tzafrir.cohen at xorcom.com
Sat Jan 3 13:12:10 UTC 2009


On Sat, Jan 03, 2009 at 01:20:27PM +0100, Stefan Fritsch wrote:
> Package: zaptel
> Version: 1:1.2.11.dfsg-1
> Severity: important
> Tags: security

As the original bug report stated:

Upstream issue: http://bugs.digium.com/view.php?id=13954

Fix for Etch version: attached dpatch
Fix for Lenny version:
http://svn.debian.org/viewsvn/pkg-voip?rev=6507&view=rev

That attached dpatch is:

http://bugs.debian.org/cgi-bin/bugreport.cgi?msg=5;filename=fix_sync_validation.dpatch;att=1;bug=507459

Sadly I don't have the hardware involved to test that.

-- 
               Tzafrir Cohen
icq#16849755              jabber:tzafrir.cohen at xorcom.com
+972-50-7952406           mailto:tzafrir.cohen at xorcom.com
http://www.xorcom.com  iax:guest at local.xorcom.com/tzafrir





More information about the Pkg-voip-maintainers mailing list