Add NEWS entry for CVE-2016-10228 (bug 19519)

(cherry picked from commit 17a0126abf02955cabf6256c67f8f9462a64163f)
This commit is contained in:
Aurelien Jarno 2020-07-30 10:07:33 +02:00 committed by Dmitry V. Levin
parent ec51be40c7
commit 8fb94f8824

4
NEWS
View File

@ -38,6 +38,10 @@ Deprecated and removed features, and other changes affecting compatibility:
Security related changes:
CVE-2016-10228: An infinite loop has been fixed in the iconv program when
invoked with the -c option and when processing invalid multi-byte input
sequences. Reported by Jan Engelhardt.
CVE-2017-18269: An SSE2-based memmove implementation for the i386
architecture could corrupt memory. Reported by Max Horn.