From: Aurelien Jarno Date: Sun, 12 Jul 2020 19:58:43 +0000 (+0200) Subject: Add NEWS entry for CVE-2020-6096 (bug 25620) X-Git-Tag: glibc-2.32~46 X-Git-Url: http://git.ipfire.org/cgi-bin/gitweb.cgi?a=commitdiff_plain;h=17400c4bcd57d84add1da3aa93248ef2efdb0ccb;p=thirdparty%2Fglibc.git Add NEWS entry for CVE-2020-6096 (bug 25620) Reviewed-by: Carlos O'Donell --- diff --git a/NEWS b/NEWS index 81b014a7ee4..5051e804eaf 100644 --- a/NEWS +++ b/NEWS @@ -174,6 +174,11 @@ Security related changes: CVE-2020-1752: A use-after-free vulnerability in the glob function when expanding ~user has been fixed. + CVE-2020-6096: A signed comparison vulnerability in the ARMv7 memcpy and + memmove functions has been fixed. Discovered by Jason Royes and Samual + Dytrych of the Cisco Security Assessment and Penetration Team (See + TALOS-2020-1019). + The following bugs are resolved with this release: [The release manager will add the list generated by