atom feed1 message in com.digium.lists.asterisk-dev[Asterisk-Dev] H.323 protocol securit...
FromSent OnAttachments
Lubomir ChristovJan 15, 2004 1:06 am 
Subject:[Asterisk-Dev] H.323 protocol security vulnerability
From:Lubomir Christov (vo@minitelecom.org)
Date:Jan 15, 2004 1:06:58 am
List:com.digium.lists.asterisk-dev

Hello,

two days ago *NISCC* released a security advisory reference about a security vulnerability in H323 protocol. http://www.uniras.gov.uk/vuls/2004/006489/h323.htm

According to Graig Southeren from OpenH323 development team: "OpenH323 is affected by SOME of the problems ...". Both asterisk H323 channels are OpenH323 based.

Here is a link to the Cisco advisory about this vulnerability: http://www.cisco.com/warp/public/707/cisco-sa-20040113-h323.shtml

Lubo