From 822f523b293bb94a52044f4acea73839f3b3d2bd Mon Sep 17 00:00:00 2001 From: Florian Weimer Date: Fri, 20 Oct 2017 19:28:44 +0200 Subject: =?UTF-8?q?Mention=20Tim=20R=C3=BChsen=20as=20the=20reporter=20for?= =?UTF-8?q?=20CVE-2017-15670?= MIME-Version: 1.0 Content-Type: text/plain; charset=UTF-8 Content-Transfer-Encoding: 8bit --- NEWS | 7 ++++--- 1 file changed, 4 insertions(+), 3 deletions(-) (limited to 'NEWS') diff --git a/NEWS b/NEWS index e0e5056..0540fd2 100644 --- a/NEWS +++ b/NEWS @@ -72,9 +72,10 @@ Security related changes: vulnerability; only trusted binaries must be examined using the ldd script.) - CVE-2017-15670: The glob function, when invoked with GLOB_TILDE, suffered - from a one-byte overflow during ~ operator processing (either on the stack - or the heap, depending on the length of the user name). + CVE-2017-15670: The glob function, when invoked with GLOB_TILDE, + suffered from a one-byte overflow during ~ operator processing (either + on the stack or the heap, depending on the length of the user name). + Reported by Tim Rühsen. The following bugs are resolved with this release: -- cgit v1.1