Add an entry to the CHANGES for the d2i_X509_PUBKEY fix
[openssl.git] / CHANGES
diff --git a/CHANGES b/CHANGES
index 261299d..81e3f84 100644 (file)
--- a/CHANGES
+++ b/CHANGES
      interoperability with such broken implementations. However, enabling
      this switch breaks interoperability with correct implementations.
 
+  *) Fix a use after free bug in d2i_X509_PUBKEY when overwriting a
+     re-used X509_PUBKEY object if the second PUBKEY is malformed.
+     [Bernd Edlinger]
+
   *) Move strictness check from EVP_PKEY_asn1_new() to EVP_PKEY_asn1_add0().
      [Richard Levitte]