Directory structure restructuralized.
[feed/telephony.git] / net / asterisk-1.8.x / patches / 600-CVE-2012-2186.patch
1 --- a/main/manager.c
2 +++ b/main/manager.c
3 @@ -4020,6 +4020,7 @@ static int action_originate(struct manse
4                                                                      TryExec(System(rm -rf /)) */
5                                 strcasestr(app, "agi") ||         /* AGI(/bin/rm,-rf /)
6                                                                      EAGI(/bin/rm,-rf /)       */
7 +                               strcasestr(app, "externalivr") || /* ExternalIVR(rm -rf)       */
8                                 strstr(appdata, "SHELL") ||       /* NoOp(${SHELL(rm -rf /)})  */
9                                 strstr(appdata, "EVAL")           /* NoOp(${EVAL(${some_var_containing_SHELL})}) */
10                                 )) {