Refined credits in ChangeLog for fuzzing issue

Changed GDS to Gotham Digital Science
This commit is contained in:
Simon Butcher 2015-09-22 10:20:58 +01:00
parent df048c59cf
commit 21823f9a69

View file

@ -5,7 +5,7 @@ mbed TLS ChangeLog (Sorted per branch, date)
Security
* Fix possible client-side NULL pointer dereference (read) when the client
tries to continue the handshake after it failed (a misuse of the API).
(Found by GDS Labs using afl-fuzz, patch provided by GDS Labs.)
(Found and patch provided by Fabian Foerg, Gotham Digital Science using afl-fuzz.)
* Add countermeasure against Lenstra's RSA-CRT attack for PKCS#1 v1.5
signatures. (Found by Florian Weimer, Red Hat.)
https://securityblog.redhat.com/2015/09/02/factoring-rsa-keys-with-tls-perfect-forward-secrecy/