[test-results] [Bamboo] Asterisk Testing > Asterisk 10 Branch > #128 has FAILED. Change made by Matthew Jordan.

Bamboo bamboo at asterisk.org
Mon Apr 23 09:27:03 CDT 2012


-----------------------------------------------------------------------
Asterisk Testing > Asterisk 10 Branch > #128 failed.
-----------------------------------------------------------------------
Code has been updated by Matthew Jordan.
No failed tests found, a possible compilation error.

http://bamboo.asterisk.org/browse/TESTING-ASTERISK10BRANCH-128/


--------------
Failing Jobs
--------------
  - Asterisk CentOS 6 64-Bit (CentOS 6): No tests found.


--------------
Code Changes
--------------
Matthew Jordan (363103):

>AST-2012-005: Fix remotely exploitable heap overflow in keypad button handling
>
>When handling a keypad button message event, the received digit is placed into
>a fixed length buffer that acts as a queue.  When a new message event is
>received, the length of that buffer is not checked before placing the new digit
>on the end of the queue.  The situation exists where sufficient keypad button
>message events would occur that would cause the buffer to be overrun.  This
>patch explicitly checks that there is sufficient room in the buffer before
>appending a new digit.
>
>(closes issue ASTERISK-19592)
>Reported by: Russell Bryant
>........
>
>Merged revisions 363100 from http://svn.asterisk.org/svn/asterisk/branches/1.6.2
>........
>
>Merged revisions 363102 from http://svn.asterisk.org/svn/asterisk/branches/1.8
>


--
This message is automatically generated by Atlassian Bamboo
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://lists.digium.com/pipermail/test-results/attachments/20120423/a8b4a6c0/attachment.htm>


More information about the Test-results mailing list