summaryrefslogtreecommitdiff
diff options
context:
space:
mode:
authorWlodek Wencel <wlodek@isc.org>2021-05-17 16:21:50 +0000
committerWlodek Wencel <wlodek@isc.org>2021-05-17 16:21:50 +0000
commit4dc557dfdcac23fec3aa023c3ffa7d3c79a5f2da (patch)
tree263fb8a8de984b5ddb3eed2bb1a2f738ee824224
parent1bcb21db90faa349dd38a6bccbf7ac89d33a6f9c (diff)
downloadisc-dhcp-4dc557dfdcac23fec3aa023c3ffa7d3c79a5f2da.tar.gz
added reporters to RELNOTES
-rw-r--r--RELNOTES15
-rw-r--r--common/parse.c2
-rw-r--r--common/tests/option_unittest.c2
3 files changed, 10 insertions, 9 deletions
diff --git a/RELNOTES b/RELNOTES
index d5388494..48f78281 100644
--- a/RELNOTES
+++ b/RELNOTES
@@ -8,8 +8,9 @@
NEW FEATURES
Version 4.1-ESV-R16-P1 is a security release of an extended support version
-(ESV) release. ESVs are intended for users who have longer upgrade
-constraints. Please see our web page:
+(ESV) release fixing possible buffer overwrite error in client and server
+while parsing haxadecimal literals in lease file. ESVs are intended for
+users who have longer upgrade constraints. Please see our web page:
http://www.isc.org/downloads/software-support-policy/
@@ -75,11 +76,11 @@ Email Vicky Risk, Product Manager at vicky@isc.org or discuss on
dhcp-users@lists.isc.org.
Changes since 4.1-ESV-R16
-
-- Corrected a buffer overwrite possible when parsing hexadecimal
- literals with more than 1024 octets.
- [Gitlab #182]
- CVE: CVE-2021-25217
+- ! Corrected a buffer overwrite possible when parsing hexadecimal
+ literals with more than 1024 octets. Reported by Jon Franklin from Dell,
+ and also by Pawel Wieczorkiewicz from Amazon Web Services.
+ [Gitlab #182]
+ CVE: CVE-2021-25217
Changes since 4.1-ESV-R16b1
diff --git a/common/parse.c b/common/parse.c
index 57ae1793..656b378b 100644
--- a/common/parse.c
+++ b/common/parse.c
@@ -3,7 +3,7 @@
Common parser code for dhcpd and dhclient. */
/*
- * Copyright (c) 2004-2019 by Internet Systems Consortium, Inc. ("ISC")
+ * Copyright (c) 2004-2021 by Internet Systems Consortium, Inc. ("ISC")
* Copyright (c) 1995-2003 by Internet Software Consortium
*
* Permission to use, copy, modify, and distribute this software for any
diff --git a/common/tests/option_unittest.c b/common/tests/option_unittest.c
index bea60837..b71a1add 100644
--- a/common/tests/option_unittest.c
+++ b/common/tests/option_unittest.c
@@ -1,5 +1,5 @@
/*
- * Copyright (C) 2018 Internet Systems Consortium, Inc. ("ISC")
+ * Copyright (C) 2018-2021 Internet Systems Consortium, Inc. ("ISC")
*
* This Source Code Form is subject to the terms of the Mozilla Public
* License, v. 2.0. If a copy of the MPL was not distributed with this