[Asterisk-code-review] pjsip: Upgrade bundled version to pjproject 2.11.1 (asterisk[16])

Stanislav Abramenkov asteriskteam at digium.com
Wed Dec 22 13:08:38 CST 2021


Attention is currently required from: Michael Bradeen.
Stanislav Abramenkov has posted comments on this change. ( https://gerrit.asterisk.org/c/asterisk/+/17710 )

Change subject: pjsip: Upgrade bundled version to pjproject 2.11.1
......................................................................


Patch Set 1:

(1 comment)

Patchset:

PS1: 
Today was merged two patches to the master branch (high severity)
Potential out-of-bounds read when parsing RTCP BYE message
https://github.com/pjsip/pjproject/security/advisories/GHSA-3qx3-cg72-wrh9

Potential integer underflow upon receiving STUN message
https://github.com/pjsip/pjproject/security/advisories/GHSA-2qpg-f6wf-w984

Maybe we should add this two patches to pjproject bundled version?



-- 
To view, visit https://gerrit.asterisk.org/c/asterisk/+/17710
To unsubscribe, or for help writing mail filters, visit https://gerrit.asterisk.org/settings

Gerrit-Project: asterisk
Gerrit-Branch: 16
Gerrit-Change-Id: If610e36b66d6137a1bf40e2a47de27c94252efd8
Gerrit-Change-Number: 17710
Gerrit-PatchSet: 1
Gerrit-Owner: Michael Bradeen <mbradeen at sangoma.com>
Gerrit-Reviewer: Friendly Automation
Gerrit-CC: Stanislav Abramenkov <stas.abramenkov at gmail.com>
Gerrit-Attention: Michael Bradeen <mbradeen at sangoma.com>
Gerrit-Comment-Date: Wed, 22 Dec 2021 19:08:38 +0000
Gerrit-HasComments: Yes
Gerrit-Has-Labels: No
Gerrit-MessageType: comment
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://lists.digium.com/pipermail/asterisk-code-review/attachments/20211222/48132bed/attachment.html>


More information about the asterisk-code-review mailing list