From 0b8eca58b9dd284d17739419f70615b5bde9a16c Mon Sep 17 00:00:00 2001 From: "Mark J. Cox" Date: Tue, 2 Jun 2009 09:20:52 +0000 Subject: [PATCH] Update changelog to show fix for PR1679 as per Tomas Hoger's testing: http://thread.gmane.org/gmane.comp.security.oss.general/1769/focus=1814 --- CHANGES | 4 ++++ 1 file changed, 4 insertions(+) diff --git a/CHANGES b/CHANGES index ebf7336570..3f9160a585 100644 --- a/CHANGES +++ b/CHANGES @@ -117,6 +117,10 @@ Changes between 0.9.8h and 0.9.8i [15 Sep 2008] + *) Fix NULL pointer dereference if a DTLS server recieved + ChangeCipherSpec as first record (CVE-2009-1386) + [Bodo Moeller, discovered by Alex Lam] + *) Fix a state transitition in s3_srvr.c and d1_srvr.c (was using SSL3_ST_CW_CLNT_HELLO_B, should be ..._ST_SW_SRVR_...). [Nagendra Modadugu] -- 2.25.1