[PATCH] Add NEWS entry for CVE-2016-10228 (bug 19519)

Florian Weimer fweimer@redhat.com
Thu Jul 30 08:52:45 GMT 2020


* Aurelien Jarno:

> diff --git a/NEWS b/NEWS
> index 1ef4a0a7a47..1625e55cccb 100644
> --- a/NEWS
> +++ b/NEWS
> @@ -154,6 +154,10 @@ Changes to build and runtime requirements:
>  
>  Security related changes:
>  
> +  CVE-2016-10228: An infinite loop has been fixed in the iconv program when
> +  invoked with the -c option and when processing invalid multi-byte input
> +  sequences.

I think this should say “Reported by Jan Engelhardt.”

Thanks,
Florian



More information about the Libc-alpha mailing list