Bug#545272: This is probably security relevant

Ralf Schlatterbeck ralf at zoo.priv.at
Sat Mar 2 09:45:26 UTC 2013


To me this issue looks like a security-bug, a denial of service attack
is possible if the attacker controls (or can influence) the jabber
service used by asterisk. The result is a segmentation fault of
asterisk.

So I guess the prio should be raised and the enclosed patch should be
applied before shipping the current release.

-- 
Ralf Schlatterbeck             email: ralf at zoo.priv.at



More information about the Pkg-voip-maintainers mailing list