From 18b640c57094236e6c991ba16f87467085a1d55a Mon Sep 17 00:00:00 2001 From: Siddhesh Poyarekar Date: Fri, 8 Jan 2021 09:17:06 +0530 Subject: [PATCH] Update NEWS for CVE-2019-25013. --- NEWS | 3 +++ 1 file changed, 3 insertions(+) diff --git a/NEWS b/NEWS index 8f40026458..face78cd10 100644 --- a/NEWS +++ b/NEWS @@ -84,6 +84,9 @@ Security related changes: CVE-2020-29562: An assertion failure has been fixed in the iconv function when invoked with UCS4 input containing an invalid character. + CVE-2019-25013: A buffer overflow has been fixed in the iconv function when + invoked with EUC-KR input containing invalid multibyte input sequences. + The following bugs are resolved with this release: [The release manager will add the list generated by