[Home]

Summary:ASTERISK-27841: digest over for manager (ami) over http fails on too long uris
Reporter:Jaco Kroon (jkroon)Labels:
Date Opened:2018-05-07 07:53:43Date Closed:2018-05-08 19:05:47
Priority:MajorRegression?No
Status:Closed/CompleteComponents:Core/ManagerInterface
Versions:13.20.0 14.7.6 GIT 15.3.0 Frequency of
Occurrence
Related
Issues:
Environment:Attachments:
Description:Due to a fixed size buffer in auth_http_callback for the a2 buffer that gets overflowed the digest calculated server-side for authentication ends up being completely wrong, resulting in auth failure.
Comments:By: Asterisk Team (asteriskteam) 2018-05-07 07:53:44.942-0500

Thanks for creating a report! The issue has entered the triage process. That means the issue will wait in this status until a Bug Marshal has an opportunity to review the issue. Once the issue has been reviewed you will receive comments regarding the next steps towards resolution.

A good first step is for you to review the [Asterisk Issue Guidelines|https://wiki.asterisk.org/wiki/display/AST/Asterisk+Issue+Guidelines] if you haven't already. The guidelines detail what is expected from an Asterisk issue report.

Then, if you are submitting a patch, please review the [Patch Contribution Process|https://wiki.asterisk.org/wiki/display/AST/Patch+Contribution+Process].

By: Friendly Automation (friendly-automation) 2018-05-08 19:05:48.301-0500

Change 8940 merged by Jenkins2:
manager: fix digest auth for ami/http mechanism.

[https://gerrit.asterisk.org/8940|https://gerrit.asterisk.org/8940]

By: Friendly Automation (friendly-automation) 2018-05-08 19:08:09.175-0500

Change 8939 merged by Jenkins2:
manager: fix digest auth for ami/http mechanism.

[https://gerrit.asterisk.org/8939|https://gerrit.asterisk.org/8939]

By: Friendly Automation (friendly-automation) 2018-05-08 19:10:53.589-0500

Change 8938 merged by Jenkins2:
manager: fix digest auth for ami/http mechanism.

[https://gerrit.asterisk.org/8938|https://gerrit.asterisk.org/8938]

By: Friendly Automation (friendly-automation) 2018-07-17 03:43:39.291-0500

Change 9467 merged by George Joseph:
manager: fix digest auth for ami/http mechanism.

[https://gerrit.asterisk.org/9467|https://gerrit.asterisk.org/9467]