Bug#454660:

2007-12-07 Thread Daniel-Constantin Mierla
Hello, On 12/07/07 12:34, Julien BLACHE wrote: Rene Mayorga [EMAIL PROTECTED] wrote: Hi, BTW regarding to your previous mail; I'm using postgresql and Radius accounting with 1.2 and there is no problem, I did'nt try using it with Diameter. Reading the code, it handles that fine.

Bug#454660:

2007-12-07 Thread Daniel-Constantin Mierla
Hello, On 12/07/07 13:20, Julien BLACHE wrote: Daniel-Constantin Mierla [EMAIL PROTECTED] wrote: Hi, Indeed, the acc can do recording to multiple backends in parallel: syslog, sql server, radius and diameter (this is more or less unmaintained) -- where is done actually, is given

Bug#446956: CVE-2007-5469 toll fraud and authentication forward attack

2007-10-17 Thread Daniel-Constantin Mierla
Hello, On 10/17/07 11:25, Julien BLACHE wrote: Nico Golde [EMAIL PROTECTED] wrote: Hi, CVE-2007-5469[0]: | OpenSER 1.2.2 does not verify the Digest authentication header URI | against the Request URI in SIP messages, which allows remote attackers | to use sniffed Digest authentication