From 61e0a3809185b84463a68df3dd39cdf004293c8c Mon Sep 17 00:00:00 2001 From: Glenn Randers-Pehrson Date: Sun, 3 Sep 2017 09:01:09 -0500 Subject: [PATCH] [libpng16] Reference CVE-2017-12652 in CHANGES. --- CHANGES | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/CHANGES b/CHANGES index d67df82d5..3fdd8fd30 100644 --- a/CHANGES +++ b/CHANGES @@ -5939,7 +5939,7 @@ Version 1.6.32beta06 [August 2, 2017] Version 1.6.32beta07 [August 3, 2017] Check length of all chunks except IDAT against user limit to fix an - OSS-fuzz issue. + OSS-fuzz issue (Fixes CVE-2017-12652). Version 1.6.32beta08 [August 3, 2017] Check length of IDAT against maximum possible IDAT size, accounting