From aa54b571eeb1acb13ce3ca98deec61dbafb8ae6b Mon Sep 17 00:00:00 2001 From: lmadsen Date: Thu, 3 Sep 2009 21:35:42 +0000 Subject: Update these release summaries git-svn-id: http://svn.digium.com/svn/asterisk/tags/1.2.35@216219 f38db490-d61c-443f-a65b-d21fe96a405b --- asterisk-1.2.35-summary.html | 39 ++++++++++++++++++++++++++++++---- asterisk-1.2.35-summary.txt | 50 +++++++++++++++++++++++++++++++++++++------- 2 files changed, 78 insertions(+), 11 deletions(-) diff --git a/asterisk-1.2.35-summary.html b/asterisk-1.2.35-summary.html index 6de4c2b18..dcfe07edf 100644 --- a/asterisk-1.2.35-summary.html +++ b/asterisk-1.2.35-summary.html @@ -11,13 +11,14 @@
  1. Summary
  2. Contributors
  3. +
  4. Closed Issues
  5. Other Changes
  6. Diffstat

Summary

[Back to Top]

This release has been made to address one or more security vulnerabilities that have been identified. A security advisory document has been published for each vulnerability that includes additional information. Users of versions of Asterisk that are affected are strongly encouraged to review the advisories and determine what action they should take to protect their systems from these issues.

-

Security Advisories: AST-2009-006

+

Security Advisories:

The data in this summary reflects changes that have been made since the previous release, asterisk-1.2.34.


Contributors

@@ -30,25 +31,55 @@ -1 lmadsen
+1 dvossel
+1 russell
+1 dbrooks
+1 dvossel
+1 russell
+1 tilghman
+1 rathaus

+

Closed Issues

+
[Back to Top]

This is a list of all issues from the issue tracker that were closed by changes that went into this release.

+

Category: Channels/chan_iax2


+#12912: An issue with the IAX2 channel allows anonymous connections to cause resource starvation
+Revision: 215958
+Reporter: rathaus
+Testers: tilghman, russell, dvossel, dbrooks
+Coders: dvossel
+
+

Commits Not Associated with an Issue

[Back to Top]

This is a list of all changes that went into this release that did not directly close an issue from the issue tracker. The commits may have been marked as being related to an issue. If that is the case, the issue numbers are listed here, as well.

- +
RevisionAuthorSummaryIssues Referenced
216104lmadsenCreating tag for the release of asterisk-1.2.35
RevisionAuthorSummaryIssues Referenced
216005russellAdd IAX2 security document related to AST-2009-006.

Diffstat Results

[Back to Top]

This is a summary of the changes to the source code that went into this release that was generated using the diffstat utility.

-0 files changed
+Makefile                   |    2
+acl.c                      |   12
+astobj2.c                  |   19
+channels/chan_iax2.c       | 1348 +++++++++++++++++++++++++++++++++++++++++----
+channels/iax2-parser.c     |   11
+channels/iax2-parser.h     |    2
+channels/iax2.h            |    2
+configs/iax.conf.sample    |   56 +
+include/asterisk/acl.h     |   13
+include/asterisk/astobj2.h |   10
+include/asterisk/sha1.h    |   81 ++
+include/asterisk/utils.h   |    4
+sha1.c                     |  385 ++++++++++++
+utils.c                    |   19
+14 files changed, 1829 insertions(+), 135 deletions(-)
 


diff --git a/asterisk-1.2.35-summary.txt b/asterisk-1.2.35-summary.txt index 6c1f537d4..1751a5ee2 100644 --- a/asterisk-1.2.35-summary.txt +++ b/asterisk-1.2.35-summary.txt @@ -12,8 +12,9 @@ 1. Summary 2. Contributors - 3. Other Changes - 4. Diffstat + 3. Closed Issues + 4. Other Changes + 5. Diffstat ---------------------------------------------------------------------- @@ -28,7 +29,7 @@ the advisories and determine what action they should take to protect their systems from these issues. - Security Advisories: AST-2009-006 + Security Advisories: The data in this summary reflects changes that have been made since the previous release, asterisk-1.2.34. @@ -49,7 +50,28 @@ release. Coders Testers Reporters - 1 lmadsen + 1 dvossel 1 dbrooks 1 rathaus + 1 russell 1 dvossel + 1 russell + 1 tilghman + + ---------------------------------------------------------------------- + + Closed Issues + + [Back to Top] + + This is a list of all issues from the issue tracker that were closed by + changes that went into this release. + + Category: Channels/chan_iax2 + + #12912: An issue with the IAX2 channel allows anonymous connections to + cause resource starvation + Revision: 215958 + Reporter: rathaus + Testers: tilghman, russell, dvossel, dbrooks + Coders: dvossel ---------------------------------------------------------------------- @@ -65,8 +87,8 @@ +------------------------------------------------------------------------+ | Revision | Author | Summary | Issues Referenced | |----------+---------+-------------------------------+-------------------| - | 216104 | lmadsen | Creating tag for the release | | - | | | of asterisk-1.2.35 | | + | 216005 | russell | Add IAX2 security document | | + | | | related to AST-2009-006. | | +------------------------------------------------------------------------+ ---------------------------------------------------------------------- @@ -78,6 +100,20 @@ This is a summary of the changes to the source code that went into this release that was generated using the diffstat utility. - 0 files changed + Makefile | 2 + acl.c | 12 + astobj2.c | 19 + channels/chan_iax2.c | 1348 +++++++++++++++++++++++++++++++++++++++++---- + channels/iax2-parser.c | 11 + channels/iax2-parser.h | 2 + channels/iax2.h | 2 + configs/iax.conf.sample | 56 + + include/asterisk/acl.h | 13 + include/asterisk/astobj2.h | 10 + include/asterisk/sha1.h | 81 ++ + include/asterisk/utils.h | 4 + sha1.c | 385 ++++++++++++ + utils.c | 19 + 14 files changed, 1829 insertions(+), 135 deletions(-) ---------------------------------------------------------------------- -- cgit v1.2.3