Bugsalert.com
Security News about Viruses, Spyware,
Trojans, Malware, XSS attacks.

Debian: New asterisk packages fix SQL injection

BugsAlert Home > Debian: New asterisk packages fix SQL injection
 
 

LinuxSecurity.com: Tilghman Lesher discovered that the logging engine of Asterisk, a free software PBX and telephony toolkit performs insufficient sanitising of call-related data, which may lead to SQL injection.




Original Source: http://www.linuxsecurity.com/content/view/131725?rdf

Learn more about Debian: New asterisk packages fix SQL injection
 
Tags: debian asterisk packages fix sql injection

Related Items

      Bugtraq: [DSECRG-08-029] Local File Include in Dokeos E-Learning System 1.8.5

      Vuln: SMF Audio CAPTCHA Security Bypass Vulnerability

      CVE-2008-4918 (sonicos)

      CVE-2008-1337 (Timbuktu Pro)

      PE_PAGIPEF.CE

      CVE-2008-1501 (IRCU, snircd)

      CVE-2008-4887 (netrisk)

 

Pixel