From: Nikos Mavrogiannopoulos Date: Sat, 7 Jul 2018 17:52:04 +0000 (+0200) Subject: doc update [ci skip] X-Git-Tag: gnutls_3_6_3~30 X-Git-Url: http://git.ipfire.org/cgi-bin/gitweb.cgi?a=commitdiff_plain;h=7be78eba6dc33c3ed0787f806c71d75b7c9fe4de;p=thirdparty%2Fgnutls.git doc update [ci skip] Signed-off-by: Nikos Mavrogiannopoulos --- diff --git a/NEWS b/NEWS index a6e480aace..304508eefe 100644 --- a/NEWS +++ b/NEWS @@ -50,8 +50,8 @@ See the end for copying conditions. ** Improved counter-measures for TLS CBC record padding. Kenny Paterson, Eyal Ronen and Adi Shamir reported that the existing counter-measures had certain issues and - were insufficient under a new Lucky13-type of attack which shares the cache and - chosen-plaintext. This affected the legacy CBC ciphersuites when the encrypt-then-MAC + were insufficient when the attacker could access the cache and perform chosen- + plaintext. This affected the legacy CBC ciphersuites when the encrypt-then-MAC TLS feature was not supported by the peer. ** Introduced the %FORCE_ETM priority string option. This option prevents the negotiation