-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Tue, 27 May 2025 14:36:46 +0200 Source: asterisk Architecture: source Version: 1:22.4.1~dfsg+~cs6.15.60671435-1 Distribution: unstable Urgency: medium Maintainer: Debian VoIP Team <pkg-voip-maintainers@lists.alioth.debian.org> Changed-By: Jonas Smedegaard <dr@jones.dk> Closes: 1103048 1106528 1106530 Changes: asterisk (1:22.4.1~dfsg+~cs6.15.60671435-1) unstable; urgency=medium . [ upstream ] * new release(s) + add option to restrict shell access from remote consoles; CVE-2025-47780; closes: bug#1106530, thanks to Salvatore Bonaccorso + mask control characters in received From display name; CVE-2025-47779; closes: bug#1106528, thanks to Salvatore Bonaccorso . [ Chris Maj ] * remove IMAP voicemail backend, because libc-client2007e is gone; stop build-depend on libc-client2007e-dev; closes: bug#1103048, thanks to Chris Hofstaedtler * add self as uploader . [ Jonas Smedegaard ] * unfuzz patches * update copyright info: update coverage Checksums-Sha1: 8a93149910ca44de45be80eb2b606474a835f018 5424 asterisk_22.4.1~dfsg+~cs6.15.60671435-1.dsc fab723ada342f11d062f1d17e0cbbe05ce67b3b8 11276 asterisk_22.4.1~dfsg+~cs6.15.60671435.orig-Xamr.tar.xz 3d0a0b6cd89a39935fd096e2ef6e79ba8302c8eb 22024 asterisk_22.4.1~dfsg+~cs6.15.60671435.orig-Xmp3.tar.xz 793b7a53dfb62a56e0ac144016830a9b52e9fe75 22556 asterisk_22.4.1~dfsg+~cs6.15.60671435.orig-Xopus.tar.xz 6ea3ab145346244ac8343e00b4c4084ff4a3be35 6401560 asterisk_22.4.1~dfsg+~cs6.15.60671435.orig-Xpjproject.tar.xz 77d7654413afa749a7cc0f6dcbbd97bb9c060e97 6007396 asterisk_22.4.1~dfsg+~cs6.15.60671435.orig.tar.xz 26bd555cf105a35ba7164e46e03646913c7700da 122820 asterisk_22.4.1~dfsg+~cs6.15.60671435-1.debian.tar.xz 62f24f165c4d5184ee841b5e9923a5d08e454678 24956 asterisk_22.4.1~dfsg+~cs6.15.60671435-1_amd64.buildinfo Checksums-Sha256: 666583dfb0e76a8a6481d7d1cfe4128d798265175a21d73af52da2afa71e95c0 5424 asterisk_22.4.1~dfsg+~cs6.15.60671435-1.dsc 33cdfabac457e18580c63bb4707e16a991ea3d772229d0dd37e134f494d8d70f 11276 asterisk_22.4.1~dfsg+~cs6.15.60671435.orig-Xamr.tar.xz a5316a4cf442be734e050d6fcd28ee23d7057d0cc546413aa75872b84e979f21 22024 asterisk_22.4.1~dfsg+~cs6.15.60671435.orig-Xmp3.tar.xz 6bc226a2fd01f10fb6155e23be637ed212fea11be0bab2b6c16f8e47dcbc3e9b 22556 asterisk_22.4.1~dfsg+~cs6.15.60671435.orig-Xopus.tar.xz 0c7ec0d0fa62c7987671c08b67d6e1cbf5f34f6d1f1f18cc5e7e6cb5f331ccd4 6401560 asterisk_22.4.1~dfsg+~cs6.15.60671435.orig-Xpjproject.tar.xz 5a53e0a5b1fa8e6248332d6fdd7dee6b4278308c44a7cb0cb83add961f38d164 6007396 asterisk_22.4.1~dfsg+~cs6.15.60671435.orig.tar.xz 630ec6f2d4773948bfa105a4f36356ea46bbb211b9e9492a1ffd86bb6b325e46 122820 asterisk_22.4.1~dfsg+~cs6.15.60671435-1.debian.tar.xz 974231c85d0fc3a6da23ed42ced439f4ea8bbf1089e5b765bf2d4b14a57eb6ed 24956 asterisk_22.4.1~dfsg+~cs6.15.60671435-1_amd64.buildinfo Files: 2034594de8265ff84888836baa2c7999 5424 comm optional asterisk_22.4.1~dfsg+~cs6.15.60671435-1.dsc fdccb2ab4cc1291b171ab4bff308252b 11276 comm optional asterisk_22.4.1~dfsg+~cs6.15.60671435.orig-Xamr.tar.xz 5bdeadbbd8e5b6cc2f65a846e6859b7e 22024 comm optional asterisk_22.4.1~dfsg+~cs6.15.60671435.orig-Xmp3.tar.xz 9d9968f788e7837d3f4a23f4a3ceb830 22556 comm optional asterisk_22.4.1~dfsg+~cs6.15.60671435.orig-Xopus.tar.xz 3b51ffaf78ad427e452807fa01e860f5 6401560 comm optional asterisk_22.4.1~dfsg+~cs6.15.60671435.orig-Xpjproject.tar.xz edf2f40bd5140352d511fa1f841008f2 6007396 comm optional asterisk_22.4.1~dfsg+~cs6.15.60671435.orig.tar.xz b70f40b4e3cfc2386c3ea18bbc2a8349 122820 comm optional asterisk_22.4.1~dfsg+~cs6.15.60671435-1.debian.tar.xz 20140cbb9daf92b0cdd065a4494ae998 24956 comm optional asterisk_22.4.1~dfsg+~cs6.15.60671435-1_amd64.buildinfo -----BEGIN PGP SIGNATURE----- wsG7BAEBCgBvBYJoNbYJCRAsfDFGwaABIUcUAAAAAAAeACBzYWx0QG5vdGF0aW9u cy5zZXF1b2lhLXBncC5vcmcsbAt+G2H06eD2Lr0G0uMwc2H2h6sRY7VdaUfzOC7h lRYhBJ/j6cNmkaaf9TzGhCx8MUbBoAEhAADYLRAAgglNxsCuYehuFcmAN1zRo9b4 Y0mzOVsj68O9DEmhV3s2yFAqpHkZoMy/hIkK8oq3xGyz/+Upu+kBAcHkBsope/Bq QZw6QPLfukDqY1j5pMM7J3dWL++VIOI/3HW959HPsUEJ/Yt7slfl+xY2rFdTkWyZ 7bzTHyiQmsHYPzkWIfCn/gKdqOStNck+Ue0nniQZB+z6ilcTN5qk38OuUbknVdr3 PlkE+gdNn/VYU8zJ+iGXWubEIztzYSjJvs3MTS89tvdHrmnoz/WR4x9cLsjPr43B XMr/WkFXmH6dedUvxKhZuMd9sgbzb4DFHY2w9ZgJOeQzNZs1LkrCO43XQhtvKLir VQmEF71aWhkyeavkpFPnkV14v3SQXJeh17ymNoFliZaJHEPlQWZzZWmmrVqijr07 i/G2BGb1B87zfDpxobPfDRRhieC2/DiAmmERRUbi9JNVMkgS+HeoW7OmCeXTvd3z HBYMbgLJNQBA7QhJFsjxyt8diB8nXNJOxRbui3LB6R/BsXNviwreiHWc04KsIsPn 6TCpA7O8b4YzII5XDx8DhT5PpNm4Hbhv+Osn2Nq5jib7nQn/3fDOa7xuocVOURJ6 /QDp1RUNZIAn3Q21DW4tNWHb6fQJLGLPwFkPbXECSnyB65ywCVvw9s9PEeF9iuMs sHWHkPFm/PxeLFQMd+s= =wbES -----END PGP SIGNATURE-----