Add Changelog for #8687

Signed-off-by: Paul Elliott <paul.elliott@arm.com>
This commit is contained in:
Paul Elliott 2024-01-16 11:16:56 +00:00 committed by Dave Rodgman
parent af553bf719
commit 968a928659

View File

@ -0,0 +1,8 @@
Security
* Fix a failure to validate input when writing x509 extensions lengths which
could result in an integer overflow, causing a zero-length buffer to be
allocated to hold the extension. The extension would then be copied into
the buffer, causing a heap buffer overflow.