Skip to content
Narrow screen resolution Wide screen resolution Auto adjust screen size Increase font size Decrease font size Default font size default color grey color red color blue color

Totek - Asterisk VoIP (SIP) News & Technology Source

Asterisk 1.4.11 released PDF Print E-mail
User Rating: / 0
Written by Web Master   
Friday, 24 August 2007

From the release notes: 

The Asterisk development team has released version 1.4.11.

This version contains numerous bug fixes. One of these is for a security issue in chan_sip. The issue is that SIP dialog history was being stored in memory regardless if the option for this was turned on or off. This could be abused to cause a system using chan_sip to run out of memory.

The security issue is documented in AST-2007-020. Affected systems include any that are using chan_sip. Also, only Asterisk 1.4 is affected. Asterisk 1.2 is not vulnerable to this issue.

The name prefix for our security advisories has been changed from ASA to AST. The ASA scheme was already in use by another company before we started using it.

Check the Download section for the latest updates.