Document CVE assignment for Berkeley DB issue
authorJeremy Harris <jgh146exb@wizmail.org>
Sun, 13 Aug 2017 10:07:33 +0000 (11:07 +0100)
committerJeremy Harris <jgh146exb@wizmail.org>
Sun, 13 Aug 2017 10:08:26 +0000 (11:08 +0100)
doc/doc-txt/ChangeLog

index dba462937bbc4c65ccde9302135d2529e3b6b1f6..18a43d29220bfd416b08985ebd00fe3d6c351069 100644 (file)
@@ -28,7 +28,7 @@ JH/07 Fix smtp transport use of limited max_rcpt under mua_wrapper. Previously
 JH/19 Bug 2141: Use the full-complex API for Berkeley DB rather than the legacy-
       compatible one, to avoid the (poorly documented) possibility of a config
       file in the working directory redirecting the DB files, possibly correpting
-      some existing file.
+      some existing file.  CVE-2017-10140 assigned for BDB.
 
 JH/20 Bug 2147: Do not defer for a verify-with-callout-and-random which is not
       cache-hot.  Previously, although the result was properly cached, the