On Tue, Dec 01, 2009 at 11:13:30PM +0100, Moritz Muehlenhoff wrote: > Package: asterisk > Severity: grave > Tags: security > > http://downloads.asterisk.org/pub/security/AST-2009-010.html
For the record, the patch itself is trivial and seems to be very simple to backport. https://issues.asterisk.org/view.php?id=16242 See links to specific commits from there. The issue seems to affect both Etch, Lenny and Squeeze. For Sid/Squeeze, upstream 1.6.0.2-rc7 should be released shortly (it has already been tagged). -- Tzafrir Cohen icq#16849755 jabber:[email protected] +972-50-7952406 mailto:[email protected] http://www.xorcom.com iax:[email protected]/tzafrir -- To UNSUBSCRIBE, email to [email protected] with a subject of "unsubscribe". Trouble? Contact [email protected]

