[Asterisk-Security] Portcullis Security Advisory 05-013 - VoIP - Asterisk Stack Overflow

Olle E. Johansson oej at edvina.net
Fri Jun 24 06:43:43 CDT 2005


I feel it is great that Asterisk now is in the mainstream of Open Source
software and that it is being scrutinized this way. I always told my
Asterisk students that the manager interface is unsecure and that it
needs a major improvement. I was not aware of this bug though.

Also, I am proud that the Asterisk developer team responded quickly to
it, even though with a quick glance, I can't see what has been done to
fix it.

Regards,
/Olle


More information about the Asterisk-Security mailing list