aboutsummaryrefslogtreecommitdiffstats
path: root/doc/security.rst
diff options
context:
space:
mode:
authorJack Lloyd <[email protected]>2017-03-24 10:58:30 -0400
committerJack Lloyd <[email protected]>2017-03-24 10:58:30 -0400
commitfcb23077fbd06db5d49be2f67e9c4aa31d8af359 (patch)
tree158b3e1bf73b049fa6f974f7d8e7bee08e87d18a /doc/security.rst
parentc0901e801d72bb2fdf3a205f6debf5ed954567f8 (diff)
Add relnotes and CVE
Diffstat (limited to 'doc/security.rst')
-rw-r--r--doc/security.rst2
1 files changed, 1 insertions, 1 deletions
diff --git a/doc/security.rst b/doc/security.rst
index 2a46ca3b2..e6467f675 100644
--- a/doc/security.rst
+++ b/doc/security.rst
@@ -18,7 +18,7 @@ https://keybase.io/jacklloyd and on most PGP keyservers.
2017
^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^
-* 2017-03-23: Incorrect bcrypt computation
+* 2017-03-23 (CVE-2016-7252): Incorrect bcrypt computation
Botan's implementation of bcrypt password hashing scheme truncated long
passwords at 56 characters, instead of at bcrypt's standard 72 characters