CVE-2007-6092

Publication date 22 November 2007

Last updated 24 July 2024


Ubuntu priority

Buffer overflow in libsrtp in Ingate Firewall before 4.6.0 and SIParator before 4.6.0 has unknown impact and attack vectors. NOTE: it is not clear whether this issue crosses privilege boundaries.

Read the notes from the security team

Status

Package Ubuntu Release Status
srtp 9.10 karmic Ignored
9.04 jaunty Ignored
8.10 intrepid Ignored
8.04 LTS hardy Ignored
7.10 gutsy Ignored end of life, was needs-triage
7.04 feisty Not in release
6.10 edgy Not in release
6.06 LTS dapper Not in release

Notes


jdstrand

according to http://bugs.digium.com/view.php?id=5413#39752, Ingate's libsrtp is based on Cisco's libsrtp (which is what is in universe). This lib is BSD licensed and I can't find Ingate's source. As such, I am leaving this as 'needs-triage'


mdeslaur

no details that srtp was ever affected by this, let's ignore