Summary: | ASTERISK-10650: [patch] Make peer lookup more exact | ||
Reporter: | Tilghman Lesher (tilghman) | Labels: | |
Date Opened: | 2007-10-30 12:53:15 | Date Closed: | 2007-12-23 09:30:26.000-0600 |
Priority: | Minor | Regression? | No |
Status: | Closed/Complete | Components: | Channels/chan_iax2 |
Versions: | Frequency of Occurrence | ||
Related Issues: | |||
Environment: | Attachments: | ( 0) 20071030__make_peer_lookup_more_exact.diff.txt | |
Description: | Post on the -dev list showed that a realtime username is inexact, even when an explicit host is specified. This means that user lookups are sometimes inexact, leading to possible unauthenticated users authenticating. ****** ADDITIONAL INFORMATION ****** Might even be considered a security issue, which is why I'm marking this as private, for now. | ||
Comments: | By: Olle Johansson (oej) 2007-12-16 03:15:43.000-0600 Any updates? By: Jason Parker (jparker) 2007-12-17 12:44:29.000-0600 stay tuned By: Digium Subversion (svnbot) 2007-12-18 12:19:57.000-0600 Repository: asterisk Revision: 93667 U branches/1.2/channels/chan_iax2.c U branches/1.2/channels/chan_sip.c ------------------------------------------------------------------------ r93667 | tilghman | 2007-12-18 12:19:56 -0600 (Tue, 18 Dec 2007) | 2 lines Fixing AST-2007-027 (Closes issue ASTERISK-10650) ------------------------------------------------------------------------ http://svn.digium.com/view/asterisk?view=rev&revision=93667 By: Digium Subversion (svnbot) 2007-12-18 12:26:29.000-0600 Repository: asterisk Revision: 93668 _U branches/1.4/ U branches/1.4/channels/chan_iax2.c U branches/1.4/channels/chan_sip.c ------------------------------------------------------------------------ r93668 | tilghman | 2007-12-18 12:26:29 -0600 (Tue, 18 Dec 2007) | 10 lines Merged revisions 93667 via svnmerge from https://origsvn.digium.com/svn/asterisk/branches/1.2 ........ r93667 | tilghman | 2007-12-18 12:23:06 -0600 (Tue, 18 Dec 2007) | 2 lines Fixing AST-2007-027 (Closes issue ASTERISK-10650) ........ ------------------------------------------------------------------------ http://svn.digium.com/view/asterisk?view=rev&revision=93668 By: Digium Subversion (svnbot) 2007-12-18 12:36:18.000-0600 Repository: asterisk Revision: 93672 _U trunk/ U trunk/channels/chan_iax2.c U trunk/channels/chan_sip.c ------------------------------------------------------------------------ r93672 | tilghman | 2007-12-18 12:36:15 -0600 (Tue, 18 Dec 2007) | 18 lines Merged revisions 93668 via svnmerge from https://origsvn.digium.com/svn/asterisk/branches/1.4 ................ r93668 | tilghman | 2007-12-18 12:29:39 -0600 (Tue, 18 Dec 2007) | 10 lines Merged revisions 93667 via svnmerge from https://origsvn.digium.com/svn/asterisk/branches/1.2 ........ r93667 | tilghman | 2007-12-18 12:23:06 -0600 (Tue, 18 Dec 2007) | 2 lines Fixing AST-2007-027 (Closes issue ASTERISK-10650) ........ ................ ------------------------------------------------------------------------ http://svn.digium.com/view/asterisk?view=rev&revision=93672 |