-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Thu, 22 Jun 2023 14:47:22 +0200 Source: asterisk Binary: asterisk asterisk-dahdi asterisk-dahdi-dbgsym asterisk-dbgsym asterisk-mobile asterisk-mobile-dbgsym asterisk-modules asterisk-modules-dbgsym asterisk-mp3 asterisk-mp3-dbgsym asterisk-mysql asterisk-mysql-dbgsym asterisk-ooh323 asterisk-ooh323-dbgsym asterisk-tests asterisk-tests-dbgsym asterisk-voicemail asterisk-voicemail-dbgsym asterisk-voicemail-imapstorage asterisk-voicemail-imapstorage-dbgsym asterisk-voicemail-odbcstorage asterisk-voicemail-odbcstorage-dbgsym asterisk-vpb asterisk-vpb-dbgsym Architecture: s390x Version: 1:16.28.0~dfsg-0+deb11u3 Distribution: bullseye-security Urgency: high Maintainer: s390x Build Daemon (zani) Changed-By: Markus Koschany Description: asterisk - Open Source Private Branch Exchange (PBX) asterisk-dahdi - DAHDI devices support for the Asterisk PBX asterisk-mobile - Bluetooth phone support for the Asterisk PBX asterisk-modules - loadable modules for the Asterisk PBX asterisk-mp3 - MP3 playback support for the Asterisk PBX asterisk-mysql - MySQL database protocol support for the Asterisk PBX asterisk-ooh323 - H.323 protocol support for the Asterisk PBX - ooH323c asterisk-tests - internal test modules of the Asterisk PBX asterisk-voicemail - simple voicemail support for the Asterisk PBX asterisk-voicemail-imapstorage - IMAP voicemail storage support for the Asterisk PBX asterisk-voicemail-odbcstorage - ODBC voicemail storage support for the Asterisk PBX asterisk-vpb - VoiceTronix devices support for the Asterisk PBX Changes: asterisk (1:16.28.0~dfsg-0+deb11u3) bullseye-security; urgency=high . * Non-maintainer upload. * Fix CVE-2023-27585: A flaw was found in Asterisk, an Open Source Private Branch Exchange. A buffer overflow vulnerability affects users that use PJSIP DNS resolver. This vulnerability is related to CVE-2022-24793. The difference is that this issue is in parsing the query record `parse_query()`, while the issue in CVE-2022-24793 is in `parse_rr()`. A workaround is to disable DNS resolution in PJSIP config (by setting `nameserver_count` to zero) or use an external resolver implementation instead. Checksums-Sha1: 4cdd2aa0e0d6088f52e95211037285ea743c1ca5 671528 asterisk-dahdi-dbgsym_16.28.0~dfsg-0+deb11u3_s390x.deb 550f1efcbba20ef02fafbebc0ac36de69bf136b8 1552160 asterisk-dahdi_16.28.0~dfsg-0+deb11u3_s390x.deb 5b76a43028b4ecbe2c60d9fa6399e66d2dcf2c95 6611168 asterisk-dbgsym_16.28.0~dfsg-0+deb11u3_s390x.deb 417da14070c7cf6b3d4051e5cb1aa97f9e5d45ca 90980 asterisk-mobile-dbgsym_16.28.0~dfsg-0+deb11u3_s390x.deb 90974bc52b05fa75a6ab0e5f9f65267e21fe5f7f 1369792 asterisk-mobile_16.28.0~dfsg-0+deb11u3_s390x.deb 7af5d0311551fa7f361672b44c05d44a3da90a6d 10353028 asterisk-modules-dbgsym_16.28.0~dfsg-0+deb11u3_s390x.deb e1bc3fa396d4aa6d7b9449f24ada79cc8ce70ea1 3661348 asterisk-modules_16.28.0~dfsg-0+deb11u3_s390x.deb c66303f654bede428da703010c83e9ae9bea5047 54564 asterisk-mp3-dbgsym_16.28.0~dfsg-0+deb11u3_s390x.deb 325969904cceb005ffb637e5e63510caa75a336e 1360056 asterisk-mp3_16.28.0~dfsg-0+deb11u3_s390x.deb a7cf3da70d9e5cd78bd7f2be65e3aed64503f686 135804 asterisk-mysql-dbgsym_16.28.0~dfsg-0+deb11u3_s390x.deb 0ad69b9049126b796ebf83ed00226923966a48ba 1370748 asterisk-mysql_16.28.0~dfsg-0+deb11u3_s390x.deb 4dc94e035d4ca7a77b3f57564cae82acdfe0512b 1591948 asterisk-ooh323-dbgsym_16.28.0~dfsg-0+deb11u3_s390x.deb 489c57bccba5c8f0c49896de2cb8175bd64f462c 1628120 asterisk-ooh323_16.28.0~dfsg-0+deb11u3_s390x.deb 4bc48b2e9b5c93573b1aa641e1d70c14b3e4828a 1427908 asterisk-tests-dbgsym_16.28.0~dfsg-0+deb11u3_s390x.deb a10679062c3beb10326d223252b7fe3279f01322 1735788 asterisk-tests_16.28.0~dfsg-0+deb11u3_s390x.deb 6b7b49b0cf199bbf6aeb3b036468e9af2faf29fe 285812 asterisk-voicemail-dbgsym_16.28.0~dfsg-0+deb11u3_s390x.deb 100688a5130d5ad291e82837841258fde710474c 337628 asterisk-voicemail-imapstorage-dbgsym_16.28.0~dfsg-0+deb11u3_s390x.deb 2d9181032cd77a94c569763875b4eca65dcb9172 1440216 asterisk-voicemail-imapstorage_16.28.0~dfsg-0+deb11u3_s390x.deb ffa4ace5fe6837c44c9c50c35c9502b4beaffbb0 299924 asterisk-voicemail-odbcstorage-dbgsym_16.28.0~dfsg-0+deb11u3_s390x.deb cd336e3815af2b019990e6476742a518af21221e 1429568 asterisk-voicemail-odbcstorage_16.28.0~dfsg-0+deb11u3_s390x.deb f25b68e0b247b57498f392757c11fdf04eff14a4 1424792 asterisk-voicemail_16.28.0~dfsg-0+deb11u3_s390x.deb c255f73ad48254a02a00f109144a738416c084cf 70960 asterisk-vpb-dbgsym_16.28.0~dfsg-0+deb11u3_s390x.deb e7df6ae206029bac1fa33803919169793bccd815 1360700 asterisk-vpb_16.28.0~dfsg-0+deb11u3_s390x.deb 68625bdec7620f49ce64d8bdcfc6fd30dfc1310f 27377 asterisk_16.28.0~dfsg-0+deb11u3_s390x-buildd.buildinfo 3065c6c50352a5136c861d21e50a996d5eb13497 2190636 asterisk_16.28.0~dfsg-0+deb11u3_s390x.deb Checksums-Sha256: 59a86c4bb9ac10640c805a261da0343840c662f418e26fae5102e072a743ac10 671528 asterisk-dahdi-dbgsym_16.28.0~dfsg-0+deb11u3_s390x.deb 6c1b68080a3c72085940fd8ee1070e44e87674585584054c7b318dce813c4210 1552160 asterisk-dahdi_16.28.0~dfsg-0+deb11u3_s390x.deb 8de19c608f10252a6957ea90d8db342575de95f736adeba9ec0f90231b44d625 6611168 asterisk-dbgsym_16.28.0~dfsg-0+deb11u3_s390x.deb 276d21fa3d9de612ac5cbeb0b612a815a9aaf8cc6c44959d8e4a3e518ed34ba8 90980 asterisk-mobile-dbgsym_16.28.0~dfsg-0+deb11u3_s390x.deb 712ef73d33cc40d4dff967b027d15889627c6561985f8e3597af50f3799ef807 1369792 asterisk-mobile_16.28.0~dfsg-0+deb11u3_s390x.deb 9eac678145d563d8ad7ff00a11086e7ae741406942cfbfedfbad5a3c736cb59d 10353028 asterisk-modules-dbgsym_16.28.0~dfsg-0+deb11u3_s390x.deb d128466fa039813d3a132fb38515e1add456181d38e083020bc268d8dc55409a 3661348 asterisk-modules_16.28.0~dfsg-0+deb11u3_s390x.deb 3e885f453c082cc24f6443031f2fc27d5a82f2957b650d79b917ec834a71b29e 54564 asterisk-mp3-dbgsym_16.28.0~dfsg-0+deb11u3_s390x.deb 66926b985638a7dde1301a89e8461a8df26ce0f5895ba8cf187f57f92ff1e867 1360056 asterisk-mp3_16.28.0~dfsg-0+deb11u3_s390x.deb 452c22ed146a4627b2c3b68be935c6ae8be1938fe31342bdb6e6a424c33689c7 135804 asterisk-mysql-dbgsym_16.28.0~dfsg-0+deb11u3_s390x.deb 2dab3a7ee6e1b8c84969c48ea4d267986e783318b5109a75f06a051affdcb4ab 1370748 asterisk-mysql_16.28.0~dfsg-0+deb11u3_s390x.deb 028a9207705a3103ce20236c73b526b95320633e10f57d8f6bddaaca70a6a570 1591948 asterisk-ooh323-dbgsym_16.28.0~dfsg-0+deb11u3_s390x.deb c7fc317a83118766afa18845c564f603f6b64de976a50ffb6f11d71ae9b7ab66 1628120 asterisk-ooh323_16.28.0~dfsg-0+deb11u3_s390x.deb 0ae15e9ed5996c272e119e34d1897361bd361a1ac4662811a0db11e937ce6a41 1427908 asterisk-tests-dbgsym_16.28.0~dfsg-0+deb11u3_s390x.deb d92dedf765a6f7a4c068848147f9996ef0b0a92d1bce1c8c8247b88330af1177 1735788 asterisk-tests_16.28.0~dfsg-0+deb11u3_s390x.deb abacefe3f84d853276fb35451336286f1e7dcc3b6db7a1cd8a77a37a9e6a34ac 285812 asterisk-voicemail-dbgsym_16.28.0~dfsg-0+deb11u3_s390x.deb 5b1aa6fbf97629a83dabc32e6313a47a5159f7371a8d52b2c31bbc221d8f65d3 337628 asterisk-voicemail-imapstorage-dbgsym_16.28.0~dfsg-0+deb11u3_s390x.deb 5b1b7ad07e9df95aab8476ed5b0edad5cf4acaadff0e77fa5b423ebb600d28d5 1440216 asterisk-voicemail-imapstorage_16.28.0~dfsg-0+deb11u3_s390x.deb f5d90acd682f18894f133206b4c9c2ffd30dbcc98f12cbd7c969c52e282ce8d4 299924 asterisk-voicemail-odbcstorage-dbgsym_16.28.0~dfsg-0+deb11u3_s390x.deb 6470d7ba52dde39ba5a995d59276d13e5274d78e5cd7e056a2e4deecd0ac6039 1429568 asterisk-voicemail-odbcstorage_16.28.0~dfsg-0+deb11u3_s390x.deb cc3e7b906f72fccaa84db08d0378797b10a44be9e13b63f4e3b843265ddef04f 1424792 asterisk-voicemail_16.28.0~dfsg-0+deb11u3_s390x.deb 8c0b2c31e994f92b71dd4b1f4f7e64ca98a226866915191d10a7c05e704e3820 70960 asterisk-vpb-dbgsym_16.28.0~dfsg-0+deb11u3_s390x.deb 17b10edc374e8a7797949ef47f8fe517a7a24809965e7b739138f6c61eefc5fe 1360700 asterisk-vpb_16.28.0~dfsg-0+deb11u3_s390x.deb ab9803cce15f823d214d771938dc609abb3560d147e063f0816966bd1fdb4ad2 27377 asterisk_16.28.0~dfsg-0+deb11u3_s390x-buildd.buildinfo 40335632028b0aa7750c0d83abf87f5e582b039b54e0fc75cb47dab22ea91181 2190636 asterisk_16.28.0~dfsg-0+deb11u3_s390x.deb Files: 0172f4eb5c9407084ad3d1aaf1f87e31 671528 debug optional asterisk-dahdi-dbgsym_16.28.0~dfsg-0+deb11u3_s390x.deb 58bcf36f6566666ff10813bc819f55c0 1552160 comm optional asterisk-dahdi_16.28.0~dfsg-0+deb11u3_s390x.deb 4c42b732b43e8ed4a9be998756795731 6611168 debug optional asterisk-dbgsym_16.28.0~dfsg-0+deb11u3_s390x.deb 9fd3e2a75f78045b7b36a2e60e49f769 90980 debug optional asterisk-mobile-dbgsym_16.28.0~dfsg-0+deb11u3_s390x.deb 75b05206e2de93e2f0b60fcc9cb6384c 1369792 comm optional asterisk-mobile_16.28.0~dfsg-0+deb11u3_s390x.deb 5a73ae3ee5444ba6e8333059b9bf2d78 10353028 debug optional asterisk-modules-dbgsym_16.28.0~dfsg-0+deb11u3_s390x.deb 98a238d42229994922955393cb04c880 3661348 libs optional asterisk-modules_16.28.0~dfsg-0+deb11u3_s390x.deb 605f2a52b2330a0b6040dd01d8250697 54564 debug optional asterisk-mp3-dbgsym_16.28.0~dfsg-0+deb11u3_s390x.deb dc03dff5ff18d24fc2a35a0371833201 1360056 comm optional asterisk-mp3_16.28.0~dfsg-0+deb11u3_s390x.deb 8a5362c20b835380201eed6d8bb80e9f 135804 debug optional asterisk-mysql-dbgsym_16.28.0~dfsg-0+deb11u3_s390x.deb 7e8cf96dc6c61c8cb3267fe0764bd2aa 1370748 comm optional asterisk-mysql_16.28.0~dfsg-0+deb11u3_s390x.deb 511fea43be600eba3a9c537ad3e1fdf8 1591948 debug optional asterisk-ooh323-dbgsym_16.28.0~dfsg-0+deb11u3_s390x.deb 379a1e2dd6b72246bd103201682c053f 1628120 comm optional asterisk-ooh323_16.28.0~dfsg-0+deb11u3_s390x.deb 6eab33d03deddee86e3ce97d3036dd5b 1427908 debug optional asterisk-tests-dbgsym_16.28.0~dfsg-0+deb11u3_s390x.deb f691a833c242810b897cbbc3f51be3e2 1735788 comm optional asterisk-tests_16.28.0~dfsg-0+deb11u3_s390x.deb 7bd82ddab0b223998f550808008cc7b1 285812 debug optional asterisk-voicemail-dbgsym_16.28.0~dfsg-0+deb11u3_s390x.deb 75d034ed4ac0f9bed9086047fbfc461b 337628 debug optional asterisk-voicemail-imapstorage-dbgsym_16.28.0~dfsg-0+deb11u3_s390x.deb e0bdfd6cb79b1f0a128a40b4d2805b1a 1440216 comm optional asterisk-voicemail-imapstorage_16.28.0~dfsg-0+deb11u3_s390x.deb de7e2df726b2b818bb72ac6f0149f98b 299924 debug optional asterisk-voicemail-odbcstorage-dbgsym_16.28.0~dfsg-0+deb11u3_s390x.deb 71111a4943e1e04e7ab9f45add87d902 1429568 comm optional asterisk-voicemail-odbcstorage_16.28.0~dfsg-0+deb11u3_s390x.deb 275f318c817b9177efae7510b1670063 1424792 comm optional asterisk-voicemail_16.28.0~dfsg-0+deb11u3_s390x.deb ec3e199e3a5f392e3e4d23862f026316 70960 debug optional asterisk-vpb-dbgsym_16.28.0~dfsg-0+deb11u3_s390x.deb 5b0028f26a779d65cb59fd86574b599e 1360700 comm optional asterisk-vpb_16.28.0~dfsg-0+deb11u3_s390x.deb 11d272b51f26dc2d8ec9c322bf75827f 27377 comm optional asterisk_16.28.0~dfsg-0+deb11u3_s390x-buildd.buildinfo adca86bf477a97cb7ff462ba674db917 2190636 comm optional asterisk_16.28.0~dfsg-0+deb11u3_s390x.deb -----BEGIN PGP SIGNATURE----- iQIzBAEBCgAdFiEEKrZTN06npYMYIgrtXmwDt3BKCdIFAmSUXSIACgkQXmwDt3BK CdJkBRAAgeBZyzAG2soOsIM2wWwiqYng378gMUU8nofbGzDtagYPwO4Dc82N4jZE yZzVGeJkMYNymvJTYjbZhTC7P0z+Qo/fzUyBe/R9DSMxAnInxSlt08Ff1IxN1RMH wESK9Pym7LFHdporYZwScPLqRL7hMkqEQJH1qM9UuUg+50h5+wDkWbzsl9y/+eLo RsyZdRFEhwjgdQ52FMzmjb7m2ATukH2j8V3xKBxsAdxL8oGpQjfo+eXMj1f6XsrH jAdB8z+eH4feoluaxjlewgceNtSinvRCcekBiF9o57YwmOry1KAwEvxUNp6yH94J 4DUbO5Sd9w5B7hhVbPnHhWHvMaMqenMbIwWd9VTW992syyun0PKwPB37xyGzsow/ mB0cOQXoMLFDdxvpgzwIh3g+geCgKEVEQwilbtlXajYR+aLPZTBduP2jUY0L/E97 UvZ8ljigp9a6n1z2aSbEWzwz/NjCG6LuezX6nzDui5qN8YpuDLEdOH5h6cA+whG9 uYashXwCnigQX8p08u6u9ldlWV2l6dOoiNGTeBhf1Lpa5ZpFlm49bllXeewiaIID e6VMzFUPAz6EBEqrOXL0KAboBx7l8FN6tKKIEVWwwacIhc0DlrRsM27Qr0HFOLUd dz8yFLc8cu071fMyA4Myym8wF6diqdYumuVp6QuBZbFunUo+/yc= =P/Mv -----END PGP SIGNATURE-----