diff options
author | Petri Lehtinen <petri@digip.org> | 2014-02-11 09:43:07 +0200 |
---|---|---|
committer | Petri Lehtinen <petri@digip.org> | 2014-02-11 09:45:30 +0200 |
commit | e83ded066a610f8de7caaa3942769321ededa84f (patch) | |
tree | 72e1a2f3997be9583d86030bd7fb1f9e9d37c6f9 /CHANGES | |
parent | 492feb26ce9eecc5cae5abc09a5b7424599245eb (diff) | |
download | jansson-e83ded066a610f8de7caaa3942769321ededa84f.zip jansson-e83ded066a610f8de7caaa3942769321ededa84f.tar.gz jansson-e83ded066a610f8de7caaa3942769321ededa84f.tar.bz2 |
jansson 2.6
Diffstat (limited to 'CHANGES')
-rw-r--r-- | CHANGES | 29 |
1 files changed, 29 insertions, 0 deletions
@@ -1,3 +1,32 @@ +Version 2.6 +=========== + +Released 2014-02-11 + +* Security: + + - CVE-2013-6401: The hash function used by the hashtable + implementation has been changed, and is automatically seeded with + random data when the first JSON object is created. This prevents + an attacker from causing large JSON objects with specially crafted + keys perform poorly. + +* New features: + + - `json_object_seed()`: Set the seed value of the hash function. + +* Bug fixes: + + - Include CMake specific files in the release tarball. + +* Documentation: + + - Fix tutorial source to send a User-Agent header, which is now + required by the GitHub API. + + - Set all memory to zero in secure_free() example. + + Version 2.5 =========== |