ubuntu/+source/asterisk:debian/squeeze

Last commit made on 2014-02-15
Get this branch:
git clone -b debian/squeeze https://git.launchpad.net/ubuntu/+source/asterisk
Members of Ubuntu Server Dev import team can upload to this branch. Log in for directions.

Branch merges

Branch information

Name:
debian/squeeze
Repository:
lp:ubuntu/+source/asterisk

Recent commits

564cc01... by Tzafrir Cohen <email address hidden> on 2013-12-20

Import patches-unapplied version 1:1.6.2.9-2+squeeze12 to debian/squeeze

Imported using git-ubuntu import.

Changelog parent: 6de23137c8dd435fbd2e661d42f1a6fd700709ae

New changelog entries:
  * Backport of fixes in Asterisk 1.8.24.1 (Closes: #732355):
    - Patch AST-2013-006: fixes a buffer overflow in app_sms.
    - Patch AST-2013-007: guards access to code execution from remote interfaces
      - but patch out the change in asterisk.conf.
      - Patch ASTERISK-20658: fixes potential crash with asterisk-realtime

6de2313... by Tzafrir Cohen <email address hidden> on 2013-08-29

Import patches-unapplied version 1:1.6.2.9-2+squeeze11 to debian/squeeze

Imported using git-ubuntu import.

Changelog parent: 325d41dd65f7c74a28cdda70a444084d53abcd28

New changelog entries:
  * Patch AST-2013-004 (CVE-2013-5641): chan_sip: crash in ACK to SDP
  * Patch AST-2013-005 (CVE-2013-5642): Fix crash caused by invalid SDP
    (Closes: #721220).
  * Update VCS links.

325d41d... by Tzafrir Cohen <email address hidden> on 2013-01-14

Import patches-unapplied version 1:1.6.2.9-2+squeeze10 to debian/squeeze

Imported using git-ubuntu import.

Changelog parent: f7446ff6c3c0496dc0df1835150e1d78c30a43f7

New changelog entries:
  * Fix typo in patch AST-2012-015 (Closes: #698112, #698118).
  * Fix an error in patch AST-2012-014 (Javier Serrano Polo).
  * Patches backported from Asterisk 1.8.19.1 (Closes: #697230):
    - Patch AST-2012-014 (CVE-2012-5976) - Crashes due to large memory
      allocations when using TCP.
    - Patch AST-2012-015 (CVE-2012-5977) - Denial of Service Through
      Exploitation of Device State Caching.
  * Fix AST-2012-010 backported patch (Closes: #688053)
  [ Victor Seva ]
  * Patch AST-2012-010 : Possible resource leak on uncompleted
    re-invite transactions.
  [ Tzafrir Cohen ]
  * Patch AST-2012-004-MixMonitor: Accidentally left out of patch AST-2012-004
  * Patch AST-2012-012 (CVE-2012-2186): AMI User Shell Access with ExternalIVR
  * Patch AST-2012-012 (CVE-2012-4737): ACL rules ignored during calls
    by some IAX2 peers.

f7446ff... by Tzafrir Cohen <email address hidden> on 2012-05-30

Import patches-unapplied version 1:1.6.2.9-2+squeeze6 to debian/squeeze

Imported using git-ubuntu import.

Changelog parent: e472e606c40ff8db623c6910a8a3476927a170cb

New changelog entries:
  * Patch AST-2012-007 (CVE-2012-2947): Fix IAX receiving HOLD without
    suggested MOH class crash (Closes: #675204).
  * Patch AST-2012-008 (CVE-2012-2948): remote crash issue in chan_skinny
    (Closes: #675210).
    - Patch skinny_fix_16040: A minor bugfix required to cleanly apply it.

e472e60... by Tzafrir Cohen <email address hidden> on 2012-04-25

Import patches-unapplied version 1:1.6.2.9-2+squeeze5 to debian/squeeze

Imported using git-ubuntu import.

Changelog parent: b573ca4dce19d097d123b4dbcae01f6f39853e68

New changelog entries:
  * Do include patch AST-2011-014.
  * Quote pathes in postinst script: Closes: #656208 (Pocos).
  * Patch AST-2012-002 Stack overflow in Milliwatt
    (CVE-2012-1183): Closes: #664411.
  * Two extra patches: Closes: #670180:
    - Patch AST-2012-004 - further Manager permission fixes (CVE-2012-2414).
    - Patch AST-2012-005 - Heap overflow in chan_skinny (CVE-2012-2415).

b573ca4... by Tzafrir Cohen <email address hidden> on 2011-12-18

Import patches-unapplied version 1:1.6.2.9-2+squeeze4 to debian/squeeze

Imported using git-ubuntu import.

Changelog parent: 7cb783abd858a123f016a4ec354cfdc3513b02a3

New changelog entries:
  [ Kilian Krause ]
  * Fix sporadic segfault in chan_sip.so (Closes: #630381).
  [ Tzafrir Cohen ]
  * Patch fix_bridging_crash: segfault in bridging API (Closes: #639821).
  * README.Debian: clarify datadir pathes (regarding #628415).
  * Patch AST-2011-014 (CVE-2011-4598) - Remote crash possibility with
    SIP and the “automon” feature enabled Closes: #651552.
    inapplicable to Lenny).
  * Patch AST-2011-013 (CVE-2011-4597) : potential remote information
    disclosure.
    - The patch changeges the sample sip.conf . We change the sample
       config files, but not the files under /etc/asterisk .

7cb783a... by Tzafrir Cohen <email address hidden> on 2011-07-01

Import patches-unapplied version 1:1.6.2.9-2+squeeze3 to debian/squeeze

Imported using git-ubuntu import.

Changelog parent: 8a0ef694e848d951974b4b835f4f3b0bcb53e86e

New changelog entries:
  * Patch AST-2011-008 (CVE-2011-2529) - crash on a malformed SIP packet
   (Closes: 631446).
  * Patch AST-2011-010 (CVE-2011-2535): crash due to dereferencing a remote
    pointer (closes: #631448).
  * AST-2011-011 (CVE-2011-2536): Don't leak SIP username information
    (closes: #632029)

8a0ef69... by Tzafrir Cohen <email address hidden> on 2011-04-23

Import patches-unapplied version 1:1.6.2.9-2+squeeze2 to debian/wheezy

Imported using git-ubuntu import.

Changelog parent: fb54aedde0d55b4446718b99c50ed8d22baba764

New changelog entries:
  * Patch AST-2011-002 (CVE-2011-1147): Multiple crash vulnerabilities in
    UDPTL code (Closes: #614580).
  * Patch AST-2011-005 (CVE-2011-1507): Resource exhaustion in Asterisk
    Manager Interface.
  * Patch AST-2011-005-p2: Resource exhaustion in chan_skinny and AJAM -
    second part of the above (Closes: #618790).
  * Patch AST-2011-006: Check for "system" privilege in the manager interface
    (Closes: #623775).
  * Patches AST-2011-003, manager_manager_bugfix_reload - its pre-requirements.
  * Patch AST-2011-004: Remote crash vulnerability in TCP/TLS server
    (Closes: #618791).

fb54aed... by Faidon Liambotis on 2011-02-10

Import patches-unapplied version 1:1.6.2.9-2+squeeze1 to debian/squeeze

Imported using git-ubuntu import.

Changelog parent: fa563d7bc1e6d8a26815c6b15853a17e403c29c4

New changelog entries:
  * AST-2011-001/CVE-2011-0495: Stack buffer overflow in SIP channel driver
    (Closes: #610487)

fa563d7... by Faidon Liambotis on 2010-09-07

Import patches-unapplied version 1:1.6.2.9-2 to debian/sid

Imported using git-ubuntu import.

Changelog parent: 8bb04dc01c9219adb50e8efec6fbf6b1a0eeecb6

New changelog entries:
  [ Tzafrir Cohen ]
  * Bump Standards version to 3.9.0 (no change needed).
  * rtcp_cli_fix: Backport a silly CLI parsing issue. (Closes: #589736)
  * Patch typos: fix a few typos in the source.
  * Patch man_hyphen: fix hyphen/minus issues in man pages.
  * Remove useless binaries aelparse, conf2ael and muted.
  [ Faidon Liambotis ]
  * Change the way that we read include files, to accommodate for changes
    in GCC 4.4. Taken from upstream's SVN, thanks to Peter Allgeyer for the
    patch and Stefan Bauer for preparing an upload. (Closes: #594190)
  * Set urgency high for a squeeze-targetted RC bug-fixing upload.