sthen fd7f669da3 update to asterisk-13.21.1
AST-2018-007: Infinite loop when reading iostreams

When connected to Asterisk via TCP/TLS if the client abruptly
disconnects, or sends a specially crafted message then Asterisk
gets caught in an infinite loop while trying to read the data stream.
Thus rendering the system as unusable.

AST-2018-008: PJSIP endpoint presence disclosure when using ACL

When endpoint specific ACL rules block a SIP request they respond with
a 403 forbidden. However, if an endpoint is not identified then a 401
unauthorized response is sent. This vulnerability just discloses which
requests hit a defined endpoint. The ACL rules cannot be bypassed to
gain access to the disclosed endpoints.
2018-06-12 15:52:03 +00:00
..
2018-06-12 15:52:03 +00:00
2018-05-07 07:22:54 +00:00
2017-08-06 20:09:40 +00:00
2015-07-19 00:02:24 +00:00
2015-12-28 08:46:49 +00:00
2017-11-04 21:48:06 +00:00
2018-03-05 14:27:54 +00:00
2017-08-05 12:31:01 +00:00
2017-12-23 17:59:29 +00:00