-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Thu, 08 Dec 2022 09:51:21 +0100 Source: asterisk Architecture: source Version: 1:20.0.1~dfsg+~cs6.12.40431414-1 Distribution: unstable Urgency: high Maintainer: Debian VoIP Team <pkg-voip-maintainers@lists.alioth.debian.org> Changed-By: Jonas Smedegaard <dr@jones.dk> Closes: 1017004 1024443 Changes: asterisk (1:20.0.1~dfsg+~cs6.12.40431414-1) unstable; urgency=high . [ upstream ] * new release * closes: bug#1017004, thanks to Neil Williams; also fixes these upstream bugs: ASTERISK-30103 ASTERISK-30176 ASTERISK-30244 ASTERISK-30338 CVE-2022-37325 CVE-2022-42706 CVE-2022-42705 CVE-2022-39244 CVE-2022-31031 GHSA-26j7-ww69-c4qj GHSA-fq45-m3f7-3mhj . [ Jonas Smedegaard ] * fix build module chan_sip; closes: bug#1024443, thanks to James Bottomley * add NEWS entry about new AMI live_dangerously option * set urgency=high due to multiple security bugfixes Checksums-Sha1: 02a0007dbf269c762f6b2e5b264d43db9973eddf 5263 asterisk_20.0.1~dfsg+~cs6.12.40431414-1.dsc 450b21cbdd4f92f333b02d202e445b443acb0b2a 11268 asterisk_20.0.1~dfsg+~cs6.12.40431414.orig-Xamr.tar.xz 96bf3ae2008bc5a46c9f894651110db771dc91a3 21936 asterisk_20.0.1~dfsg+~cs6.12.40431414.orig-Xmp3.tar.xz efd36da4be8883797c8ccb0ca1a41b933c1f19c9 22548 asterisk_20.0.1~dfsg+~cs6.12.40431414.orig-Xopus.tar.xz 2214cb9006f8776f91f6aa27a2681c169df29331 5801452 asterisk_20.0.1~dfsg+~cs6.12.40431414.orig-Xpjproject.tar.xz 6caa258b0e8ef4d67f6d38c43902f89c147fccff 7174300 asterisk_20.0.1~dfsg+~cs6.12.40431414.orig.tar.xz 761aa23a7c1371fbc593c7dc9f44ac91a1f4d902 133628 asterisk_20.0.1~dfsg+~cs6.12.40431414-1.debian.tar.xz 3dabc084b403e461039ace074ad46c923b4225fd 25255 asterisk_20.0.1~dfsg+~cs6.12.40431414-1_amd64.buildinfo Checksums-Sha256: 0d4d0bf3f3c638b832e4feeeac205767ea8e7de2fd2943f9c542df7dde47239c 5263 asterisk_20.0.1~dfsg+~cs6.12.40431414-1.dsc ba0e753d9e008ad4d55c112dd0dd628fa3ce57e85f7ca5ff117fdc47e90021d8 11268 asterisk_20.0.1~dfsg+~cs6.12.40431414.orig-Xamr.tar.xz 7392b3cc01080322460f028363dba477df3ac25fe9dc25d3aaae20a2d6177e95 21936 asterisk_20.0.1~dfsg+~cs6.12.40431414.orig-Xmp3.tar.xz 1dc2659ade0eb9207a5d22df188690d1528e74374f1e0dbef4a74d824c90c9cf 22548 asterisk_20.0.1~dfsg+~cs6.12.40431414.orig-Xopus.tar.xz a1c25ddb396e0cd76493568785a8c77586449736bb79bf030a4a9d07d8777ff4 5801452 asterisk_20.0.1~dfsg+~cs6.12.40431414.orig-Xpjproject.tar.xz 0ca44911db302a75378a4631d67b2881a315c05f4eaee235a7ce441f82928ca7 7174300 asterisk_20.0.1~dfsg+~cs6.12.40431414.orig.tar.xz afa2c2d102f0f8833c10719de1b4d4eea9f0b94348b1cf590d85985bc51d924f 133628 asterisk_20.0.1~dfsg+~cs6.12.40431414-1.debian.tar.xz db993bc4acdfdc093524b90d8622c70d97d097a3ad3e9c01414e95d534b01b6a 25255 asterisk_20.0.1~dfsg+~cs6.12.40431414-1_amd64.buildinfo Files: bed52ce91c3945d3ebca976aa92192e7 5263 comm optional asterisk_20.0.1~dfsg+~cs6.12.40431414-1.dsc 2f288da7d163b555955e1351203cb972 11268 comm optional asterisk_20.0.1~dfsg+~cs6.12.40431414.orig-Xamr.tar.xz e36d4f45ad47523be5f21a88e8b6c0d8 21936 comm optional asterisk_20.0.1~dfsg+~cs6.12.40431414.orig-Xmp3.tar.xz a28346e11689859feea371218e977f53 22548 comm optional asterisk_20.0.1~dfsg+~cs6.12.40431414.orig-Xopus.tar.xz a86172bf261202efc025951768f25357 5801452 comm optional asterisk_20.0.1~dfsg+~cs6.12.40431414.orig-Xpjproject.tar.xz c69644895b391afa4b520e27303adb75 7174300 comm optional asterisk_20.0.1~dfsg+~cs6.12.40431414.orig.tar.xz e0bca64a9488926eec55be49e5614f8a 133628 comm optional asterisk_20.0.1~dfsg+~cs6.12.40431414-1.debian.tar.xz dbd92dc112269353b027bbeab5c39ad7 25255 comm optional asterisk_20.0.1~dfsg+~cs6.12.40431414-1_amd64.buildinfo -----BEGIN PGP SIGNATURE----- iQIzBAEBCgAdFiEEn+Ppw2aRpp/1PMaELHwxRsGgASEFAmORtUMACgkQLHwxRsGg ASFVYRAAi1kKx6QL5DL5RVbDPLIKrg+fxEVjVOOKD4JL2ac1BiW0sEGNR9Q0KEaD pT27HrhbnxKv3J3SZb9lPap/ISQ0XgAsshlbjr/DayF87g6MNfzX9KFUU0/TDC0R S4xs2uBDkozwhWEMi5Gebl9yq48r3JYiXTuSSiUlUWJJIzEaidFTFOI67W9d00/B tqftlsOV0sQntELVEQVpBNRyQYwJr0yfd1iNHFgufF5vcls7urzJJDHd0OJNVUXQ zEC/E75D8/+3ZLLJAca1WylDY/IE6YFHUx9rzRU/s213AAUZeqn1EgdIsiij28Sk BVpgjKAyAui9G4AjSAzciqo1Sec3A9rTFBjmxbICgU9sNb/+reo+5AZpm9Y21iYV C2AqeA1Le6SqA9wbahfwnPG88QODKuv11ejC8/1j2EOkAKCzeNxCm6dtSjXPw6K0 EzNGQglJgg+yIvIapIeYK3kzckTTkWlO0Aurlo7hSIuYssW/ZF8o1YLHZpzDrQo7 XRcsXpZwMPrZVk1UN/X1RmMx8U9iFQIUi7f3dPkYZMCvnd3srtl/9mNOqDwbadBC 6j/Fh6pnuZnIVWl3OvBGmVDc+NZbC61CpjViF7miJ7/H1k4fLJ2TErycR5vEKlsf hJkbzRKE0Yrl0Q2eN22+YQxTiQMNCzhY9CWBd58pAyTaj6Sg4hs= =jzEe -----END PGP SIGNATURE-----