summaryrefslogtreecommitdiffstats
diff options
context:
space:
mode:
authorMark J. Cox <mark@openssl.org>2008-02-28 13:31:53 +0000
committerMark J. Cox <mark@openssl.org>2008-02-28 13:31:53 +0000
commit2b1e0088116e552c06c82cf862d6e50fab2dba5c (patch)
tree3fe2ec2c532229a3d2b48863cbf78cc18141f9e5
parent8535636f68427f22545b0d643243e0bfff67a27e (diff)
Missing changelog entry for http://cvs.openssl.org/chngview?cn=16642
-rw-r--r--CHANGES4
1 files changed, 4 insertions, 0 deletions
diff --git a/CHANGES b/CHANGES
index ea8896a370..d421727306 100644
--- a/CHANGES
+++ b/CHANGES
@@ -15,6 +15,10 @@
in a different context.
[Bodo Moeller]
+ *) Update the SSL_get_shared_ciphers() fix CVE-2006-3738 which was
+ not complete and could lead to a possible single byte overflow
+ (CVE-2007-5135) [Ben Laurie]
+
Changes between 0.9.7l and 0.9.7m [23 Feb 2007]
*) Cleanse PEM buffers before freeing them since they may contain