First published: Mon Oct 08 2007(Updated: )
Open Phone Abstraction Library (opal) is implementation of various<br>telephony and video communication protocols for use over packet based <br>networks.<br>In Red Hat Enterprise Linux 5, the Ekiga application uses opal.<br>A flaw was discovered in the way opal handled certain Session Initiation <br>Protocol (SIP) packets. An attacker could use this flaw to crash an <br>application, such as Ekiga, which is linked with opal. (CVE-2007-4924)<br>Users should upgrade to these updated opal packages which contain a <br>backported patch to correct this issue.
Affected Software | Affected Version | How to fix |
---|---|---|
Open Phone Abstraction Library | ||
Red Hat Enterprise Linux | ||
Ekiga |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of RHSA-2007:0957 is classified as moderate.
To fix RHSA-2007:0957, apply the appropriate security updates provided by Red Hat for the Open Phone Abstraction Library (opal).
RHSA-2007:0957 affects Red Hat Enterprise Linux 5, specifically the Ekiga application that uses opal.
Open Phone Abstraction Library (opal) is used for implementing various telephony and video communication protocols over packet-based networks.
Yes, RHSA-2007:0957 identified a flaw in the way opal handled certain session parameters.