ACL not respected on SIP INVITE
Bug #491632 reported by
Dave Walker
This bug affects 1 person
Affects | Status | Importance | Assigned to | Milestone | |
---|---|---|---|---|---|
asterisk (Ubuntu) |
Fix Released
|
Undecided
|
Dave Walker | ||
Karmic |
Fix Released
|
Undecided
|
Dave Walker |
Bug Description
Binary package hint: asterisk
A missing ACL check for handling SIP INVITEs allows a device to make calls on networks intended to be prohibited as defined by the "deny" and "permit" lines in sip.conf. The ACL check for handling SIP registrations was not affected.
http://
Changed in asterisk (Ubuntu): | |
assignee: | nobody → Dave Walker (davewalker) |
Changed in asterisk (Ubuntu Karmic): | |
assignee: | nobody → Dave Walker (davewalker) |
Changed in asterisk (Ubuntu Karmic): | |
status: | Confirmed → In Progress |
To post a comment you must log in.
This is CVE-2009-3723