sthen
858dc57b21
- update Asterisk to 1.6.2.13
...
- upstream have prevented chan_h323 from building with pwlib>=1.19.0
as it segfaults at startup; disable the h323 flavour for now.
2010-09-19 21:14:05 +00:00
sthen
e8e4be4765
readd missing _ from user/group names in sample config. spotted by Brad.
2010-08-27 00:48:19 +00:00
sthen
6017df3bbb
update asterisk to 1.6.2.11, loads of pretty safe bug fixes
2010-08-17 19:53:01 +00:00
sthen
c49f9f900f
update to 1.6.2.10, switch to new LIB_DEPENDS etc.
2010-07-25 10:08:03 +00:00
sthen
e2d09616d7
adapt to our new SO_PEERCRED
2010-07-05 22:03:22 +00:00
sthen
e4fd3edfac
update to 1.6.2.9; various crash fixes (including one with dtmf detection)
2010-06-18 22:10:44 +00:00
sthen
43c83759da
Don't ulimit -n $MAXFILES if $MAXFILES is undefined. Spotted by fgsch@
2010-06-07 20:03:55 +00:00
sthen
0551c55946
update to 1.6.2.8
2010-06-02 13:18:56 +00:00
sthen
832d7dc996
Update to 1.6.2.7; various bugs fixed including some DTMF problems,
...
potential crashes in chan_sip, and a chan_local deadlock.
2010-05-04 23:02:58 +00:00
sthen
c16616608b
Add to UPGRADE-1.6.txt telling people that insecure=very (deprecated for
...
>3 years and triggering a warning in the logs) has been removed in this
version.
2010-05-04 14:41:48 +00:00
sthen
10f83ce23c
- s/autoconf/gnu in CONFIGURE_STYLE to prevent running autoconf twice
...
- remove stray ' in pre-configure target, oops
2010-05-04 12:42:33 +00:00
sthen
8bb9d1d01a
- patch icon paths in the html docs (it won't help unless you have latex2html
...
installed, which I won't add as a dependency just for this, but for people who
already have it, it makes the docs look nicer).
- install the sample features.conf which was @comment'ed.
2010-05-03 21:00:34 +00:00
sthen
725df891d8
Use -pthread when checking for pthread_rwlock_timedwrlock.
...
No change yet, but means that the function can be used when it's
added to pthread. From Brad.
2010-04-14 08:23:38 +00:00
sthen
d9010697e4
Improve the sample dialplan;
...
- use ${FILTER(...)} to only permit digits; dialplan injection is bad, mmmkay
- ConfBridge sample based on information from Diego Casati
2010-04-10 12:45:35 +00:00
sthen
82aee579ee
fix issues with unitialized address family; one when outboundproxy
...
is used, reported by Alexey Suslikov, one with dnsmgr when the looked-up
IP address of a peer changes (bug 15827).
2010-04-09 11:05:55 +00:00
sthen
dd9ff6c628
Update Asterisk to 1.6.2.6, which will be the only of the 1.6.x branches
...
receiving most updates in the future; notably, compared to the in-tree
version, this adds a portable (pthread-based) clocking source rather
than relying on a non-portable zaptel timer.
Main functions tested and working well for myself and Diego Casati (thanks!)
Note that ConfBridge (added since 1.6.0) may need more work
2010-04-08 16:18:00 +00:00
sthen
acb7670ef8
use autoconf 2.63
2010-04-02 23:18:53 +00:00
sthen
622d335805
add a patch from upstream, fixing build with newer sqlite
2010-04-02 19:28:45 +00:00
sthen
796c7bf27e
update to 1.6.0.26 + a patch from a ticket upstream.
2010-03-25 12:01:47 +00:00
ajacoutot
cd6c6dcd9c
Move to using h323plus and ptlib.
2010-03-23 21:16:53 +00:00
espie
6fdae71967
simplify: we can set PKGNAME-main here (avoid future warning for FULLPKGPATH)
2010-02-26 18:42:12 +00:00
sthen
bb6fa8ee6c
- SECURITY update to 1.6.0.25, fixing AST-2010-003. if you use ACL rules
...
with something like 'deny 0.0.0.0/0' then this affects you. workaround:
'deny 0.0.0.0/0.0.0.0'
- fix fullpkgpath's for the subpackages, they were including the flavour
and shouldn't have - fixes problems with dpb3 found by naddy. add @pkgpath
markers relating to this fix.
ok naddy@
(reminder, ports is not fully open, do not commit without specific permission)
2010-02-26 12:44:14 +00:00
sthen
86862f6681
SECURITY update to 1.6.0.22, fixing CVE-2010-0441, an unauthenticated
...
crash in SIP (and only this, thanks to Asterisk developers for pushing
security fixes separately from other changes).
Does not affect Asterisk 1.4 in -stable (it's in the T.38 support,
which was added in 1.6).
ok ajacoutot@
2010-02-03 00:18:44 +00:00
sthen
cd70bb9611
Update to 1.6.0.21, various bugs (including some crashes) fixed.
...
This also has a small change in CDR generation, it's been well tested
upstream but still this can be a touchy area to change, so it's
going in now so the first OpenBSD release with Asterisk 1.6
packages has the change already made.
ok ajacoutot@
2010-01-17 13:18:36 +00:00
fgsch
f8eda496b9
Allow asterisk to change the vm password by tweaking the perms. Bump.
...
sthen@ ok.
2009-12-21 00:19:02 +00:00
sthen
b848cd9381
update to 1.6.0.20
2009-12-19 00:09:37 +00:00
fgsch
056c7fbd6d
install chan_h323.so and put h323 fragment after confdir is created.
...
remove extraunexec and bump. sthen@ ok.
2009-12-14 04:49:24 +00:00
sthen
5738d5ec6f
missing an app_conference @conflict
2009-12-13 12:23:57 +00:00
sthen
16b6df18f8
Major version update to 1.6.0.19. For more information about the
...
upgrade, see /usr/local/share/doc/asterisk/UPGRADE-1.6.txt
Particular thanks to fgsch@, ian@ and Michiel van Baak for help and testing.
2009-12-13 12:11:29 +00:00
sthen
e61f39e54c
SECURITY update to 1.4.27.1 for unauthenticated remote crash in RTP.
...
http://downloads.digium.com/pub/security/AST-2009-010.html
2009-11-30 22:51:39 +00:00
sthen
c103ca4da3
update to 1.4.27, I'll soon be committing a 1.6.0 version but first let's
...
have the latest 1.4 for people who don't want to move yet.
2009-11-19 16:17:04 +00:00
sthen
e6279a7a86
Switch to using supplied bootstrap.sh (plus a patch to stop it
...
from overriding supplied AUTOfoo_VERSION variables) instead of the
custom Makefile target to run autoconf.
No package change -> no bump. Discussed with fgsch in relation
to 1.6, but it makes sense here too.
2009-11-04 21:51:49 +00:00
sthen
95fdcebf42
SECURITY update to 1.4.26.3;
...
AST-2009-008: SIP responses expose valid usernames
AST-2009-009: Cross-site AJAX request (ajamdemo.html/prototype.js)
2009-11-04 21:49:42 +00:00
sthen
7737a925e8
Update to 1.4.26.2; mitigates IAX2 denial of service AST-2009-006.
...
This makes an non-backwards-compatible change to the IAX2 protocol.
It can be disabled with various options, but is on by default.
IAX2 users, read http://downloads.digium.com/pub/security/AST-2009-006.html
and the new /usr/local/share/doc/asterisk/IAX2-security.pdf (available
online in http://svn.digium.com/svn/asterisk/tags/1.4.26.2/doc/ ).
2009-09-04 00:46:35 +00:00
sthen
755a20c358
Distfiles rerolled with different music-on-hold files.
...
See http://blogs.digium.com/2009/08/18/asterisk-music-on-hold-changes/
2009-08-18 22:09:40 +00:00
sthen
609d715116
SECURITY; http://downloads.asterisk.org/pub/security/AST-2009-005.html
...
Fixes sscanf without size bounds. The biggest problem affects SIP in
Asterisk 1.6.1+ (i.e. not OpenBSD ports/packages) but the update makes
sense anyway...
2009-08-10 23:22:31 +00:00
sthen
d6c17e0b16
bugfix update to 1.4.26; see http://www.asterisk.org/node/48610
2009-07-21 22:05:24 +00:00
sthen
235a65c343
- actually comment-out the (broken) speex subpackage rather than
...
just disable by setting the default FLAVOR; the asterisk,h323 entry
in ../Makefile picked it up. the unused pkg/*-speex files don't hurt,
so keep them around. bump PKGNAME (most likely gratuitous, but it's
cheap).
2009-06-15 23:33:57 +00:00
sthen
ab4bb91ad8
update to 1.4.25.1; revised fix for SECURITY issue CVE-2009-0041
2009-06-05 23:10:40 +00:00
sthen
c0d15916fc
maintenance update to 1.4.25. disable building the speex plugin by default
...
for now, it causes a SIGBUS at startup (and also did in the previous version)
which hasn't been tracked down yet.
2009-05-22 09:05:10 +00:00
sthen
5b50a3c27b
switch to external gsm library, bump package.
2009-04-05 22:37:35 +00:00
sthen
62883bdc32
Minor security update to 1.4.24.1 for AST-2009-003 "SIP responses
...
expose valid usernames". This update changes "alwaysauthreject" to
return the same response for invalid username as it does for invalid
password.
2009-04-02 19:37:25 +00:00
sthen
7f827346dd
maintenance update to 1.4.24
2009-03-29 22:23:35 +00:00
sthen
8504e3d898
SECURITY; patch AST-2009-002, remote *unauthenticated* crash in SIP
...
where the "pedantic" option is enabled (disabled by default).
Backported rather than updated until I sort out the H323 autoconf
breakage in newer versions.
2009-03-10 21:12:37 +00:00
sthen
ca074f9466
SECURITY update to 1.4.22.2; updated fix for CVE-2009-0041 in IAX
2009-01-24 11:22:26 +00:00
sthen
3fc682ab7e
better license marker; asterisk-core-sounds is now available under
...
CC-BY-SA. bump not necessary.
2009-01-10 00:58:15 +00:00
sthen
baaf3b97ba
SECURITY update to 1.4.22.1, fixing CVE-2009-0041: remote unauthenticated
...
users with access to the IAX port can use it to verify validity of usernames.
No other code changes in this version.
While there, remove spurious @user from PLIST.
2009-01-08 21:04:02 +00:00
naddy
a57993cf08
Change "${SYSCONFDIR}" to "/etc" for files that are *always* in the
...
latter location.
2008-10-28 15:21:48 +00:00
sthen
7dadcbac78
maintenance update to 1.4.22; many fixes.
2008-10-07 09:57:52 +00:00
sthen
2861b10c40
SECURITY update fixing several problems in IAX, both remotely
...
exploitable without authentication.
AST-2008-010: Asterisk IAX 'POKE' resource exhaustion (DoS)
AST-2008-011: Traffic amplification in IAX2, 40->1040 bytes
2008-07-23 08:57:10 +00:00