pkgsrc/comms
jnemeth d0a1d9cf8a Fix three security advisories by updating to Asterisk 1.6.1.9
and update PLIST for new Music On Hold files.

1.6.1.8 fixes AST-2009-007.

-----

A missing ACL check for handling SIP INVITEs allows a device to
make calls on networks intended to be prohibited as defined by the
"deny" and "permit" lines in sip.conf. The ACL check for handling
SIP registrations was not affected.

-----

1.6.1.9 fixes AST-2009-008 and AST-2009-009.

-----

It is possible to determine if a peer with a specific name is
configured in Asterisk by sending a specially crafted REGISTER
message twice. The username that is to be checked is put in the
user portion of the URI in the To header. A bogus non-matching
value is put into the username portion of the Digest in the
Authorization header. If the peer does exist the second REGISTER
will receive a response of 403 Authentication user name does not
match account name. If the peer does not exist the response will
be 404 Not Found if alwaysauthreject is disabled and 401 Unauthorized
if alwaysauthreject is enabled.

-----

Asterisk includes a demonstration AJAX based manager interface,
ajamdemo.html which uses the prototype.js framework. An issue was
uncovered in this framework which could allow someone to execute
a cross-site AJAX request exploit.
2009-11-20 04:30:08 +00:00
..
asterisk update to asterisk 1.2.35 which fixes AST-2009-006 -- IAX2 DOS vulnerability 2009-09-05 01:44:18 +00:00
asterisk-sounds-de-x9media Change default for zip extraction to leave files as they are. 2009-08-25 11:56:34 +00:00
asterisk-sounds-extra Convert @exec/@unexec to @pkgdir or drop it. 2009-06-14 18:31:59 +00:00
asterisk-sounds-native Fix installation due to missing directories and add DESTDIR support. 2007-06-29 22:54:06 +00:00
asterisk16 Fix three security advisories by updating to Asterisk 1.6.1.9 2009-11-20 04:30:08 +00:00
binkd Mark packages as MAKE_JOBS_SAFE=no that failed in a bulk build with 2009-06-30 00:07:09 +00:00
birda Mark packages as MAKE_JOBS_SAFE=no that failed in a bulk build with 2009-06-30 00:07:09 +00:00
bthfp Use standard location for LICENSE line (in MAINTAINER/HOMEPAGE/COMMENT 2009-05-19 08:59:00 +00:00
conserver Remove @dirrm entries from PLISTs 2009-06-14 17:38:38 +00:00
conserver8 Remove @dirrm entries from PLISTs 2009-06-14 17:38:38 +00:00
dl-ezkit Mechanical changes to add full DESTDIR support to packages that install 2008-03-03 05:33:32 +00:00
efax Remove @dirrm entries from PLISTs 2009-06-14 17:38:38 +00:00
efax-gtk bump revision because of graphics/jpeg update 2009-08-26 19:56:37 +00:00
estic Remove @dirrm entries from PLISTs 2009-06-14 17:38:38 +00:00
fidogate Mark packages as MAKE_JOBS_SAFE=no that failed in a bulk build with 2009-06-30 00:07:09 +00:00
gammu Update to 1.26.1: 2009-09-09 13:34:54 +00:00
gkermit Remove @dirrm entries from PLISTs 2009-06-14 17:38:38 +00:00
gnome-pilot bump revision because of graphics/jpeg update 2009-08-26 19:56:37 +00:00
gscmxx Remove @dirrm entries from PLISTs 2009-06-14 17:38:38 +00:00
gsmlib Remove @dirrm entries from PLISTs 2009-06-14 17:38:38 +00:00
hylafax Fix build against tiff-3.9 by allowing it in the configure script (duh). 2009-08-27 17:09:55 +00:00
jpilot bump revision because of graphics/jpeg update 2009-08-26 19:56:37 +00:00
jpilot-syncmal bump revision because of graphics/jpeg update 2009-08-26 19:56:37 +00:00
kermit Remove @dirrm entries from PLISTs 2009-06-14 17:38:38 +00:00
kyopon Fix build on netbsd-5+, DESTDIR support. 2008-12-19 09:35:14 +00:00
libmal Remove @dirrm entries from PLISTs 2009-06-14 17:38:38 +00:00
libopensync Remove @dirrm entries from PLISTs 2009-06-14 17:38:38 +00:00
libopensync-plugin-evolution2 update for new evolution-data-server memory management rules, 2009-02-27 17:42:23 +00:00
libopensync-plugin-file Mark as destdir ready. 2008-07-14 12:55:56 +00:00
libopensync-plugin-kdepim bump revision because of graphics/jpeg update 2009-08-26 19:56:37 +00:00
libopensync-plugin-syncml Remove @dirrm entries from PLISTs 2009-06-14 17:38:38 +00:00
libsyncml Remove @dirrm entries from PLISTs 2009-06-14 17:38:38 +00:00
lrzsz Convert to user-destdir. 2009-08-29 11:33:14 +00:00
malsync Remove @dirrm entries from PLISTs 2009-06-14 17:38:38 +00:00
mgetty+sendfax Actually, the security patch was missing from my last commit. PKGREVISION 2009-10-03 11:43:49 +00:00
minicom sort 2009-11-16 10:39:10 +00:00
modemd Mark packages as MAKE_JOBS_SAFE=no that failed in a bulk build with 2009-06-30 00:07:09 +00:00
msynctool Mark as destdir ready. 2008-07-14 12:55:56 +00:00
multisync-gui bump revision because of graphics/jpeg update 2009-08-26 19:56:37 +00:00
obexapp update to obexapp 1.4.12 2009-08-21 07:16:18 +00:00
obexftp Bluetooth support for DragonFly. Bump PKGREVISION. PR pkg/41640. 2009-07-20 05:56:02 +00:00
op_panel Remove @dirrm entries from PLISTs 2009-06-14 17:38:38 +00:00
openobex MASTER_SITES=http://www.kernel.org/pub/linux/bluetooth/ 2009-08-09 08:00:46 +00:00
p5-Asterisk Fix DESTDIR installation. 2009-08-03 15:19:17 +00:00
p5-Device-Gsm Updating comms/p5-Device-Gsm from 1.52 to 1.54 2009-09-20 12:14:50 +00:00
p5-Device-Modem pkgsrc changes: 2009-07-21 22:43:16 +00:00
p5-Device-SerialPort Bump the PKGREVISION for all packages which depend directly on perl, 2008-10-19 19:17:40 +00:00
p5-pilot-link Update to 0.12.4: 2009-08-09 08:36:34 +00:00
pilot-link Update to 0.12.4: 2009-08-09 08:36:34 +00:00
pilot-link-libs Update to 0.12.4: 2009-08-09 08:36:34 +00:00
pilotmgr Remove @dirrm entries from PLISTs 2009-06-14 17:38:38 +00:00
plp Remove @dirrm entries from PLISTs 2009-06-14 17:38:38 +00:00
plptools Remove @dirrm entries from PLISTs 2009-06-14 17:38:38 +00:00
py-gammu Remove @dirrm entries from PLISTs 2009-06-14 17:38:38 +00:00
qpage Point MAINTAINER to pkgsrc-users@NetBSD.org in the case where no 2006-03-04 21:28:51 +00:00
ruby-termios Convert @exec/@unexec to @pkgdir or drop it. 2009-06-14 18:31:59 +00:00
scmxx Convert @exec/@unexec to @pkgdir or drop it. 2009-06-14 18:31:59 +00:00
snooper Remove @dirrm entries from PLISTs 2009-06-14 17:38:38 +00:00
synce-dccm Add DESTDIR support. 2008-06-20 01:09:05 +00:00
synce-librapi2 Simply and speed up buildlink3.mk files and processing. 2009-03-20 19:23:50 +00:00
synce-libsynce Simply and speed up buildlink3.mk files and processing. 2009-03-20 19:23:50 +00:00
synce-rra Remove @dirrm entries from PLISTs 2009-06-14 17:38:38 +00:00
synce-serial Remove @dirrm entries from PLISTs 2009-06-14 17:38:38 +00:00
tkhylafax Remove @dirrm entries from PLISTs 2009-06-14 17:38:38 +00:00
xisp bump revision because of graphics/jpeg update 2009-08-26 19:56:37 +00:00
xtel bump revision because of graphics/jpeg update 2009-08-26 19:56:37 +00:00
zaptel-netbsd Convert @exec/@unexec to @pkgdir or drop it. 2009-06-14 18:31:59 +00:00
Makefile add and enable asterisk16 2009-06-12 09:05:58 +00:00