S-240: Asterisk


 
Thread Tools Search this Thread
Special Forums Cybersecurity Security Advisories (RSS) S-240: Asterisk
# 1  
Old 03-27-2008
S-240: Asterisk

Several remote vulnerabilities have been discovered in Asterisk, a free software PBX and telephony toolkit. The risk is LOW. Insufficient validation of From: headers inside the SIP channel driver may lead to authentication bypass and the potential external initiation of calls.


More...
Login or Register to Ask a Question

Previous Thread | Next Thread
Login or Register to Ask a Question
siproxd(8)							Debian Distribution							siproxd(8)

NAME
siproxd - SIP Registrar/Proxy/Redirect Server SYNOPSIS
siproxd [OPTIONS] OPTIONS
-h, --help Help Display -d, --debug <pattern> Debugging -c, --config <configuration file> Use specified Config file -p, --pid-file <pidfile> Create specified pidfile (overwrites if exists) DESCRIPTION
This program is generally used to handle SIP telephony. It works well behind for clients behind a nat and can proxy for them. It can also be used as a sip registrar for internet telephony. FILES
/etc/siproxd.conf General Configuration File /etc/siproxd_passwd.cfg Password file siproxd Sip Server SEE ALSO
To ENABLE siproxd change the 0 to a 1 in /etc/default/siproxd. kphone(1), linphone(1) BUGS
Contact Thomas Ries <tries@users.sourceforge.net> or Dan Weber <dan@mirrorlynx.com>, for any bugs with this program. AUTHOR
This manpage was written by Dan Weber <dan@mirrorlynx.com>, 2004 MirrorLynx 2004-02-15 siproxd(8)