1
0
mirror of https://github.com/mirror/wget.git synced 2025-04-14 21:40:42 +08:00

* NEWS: Update

This commit is contained in:
Tim Rühsen 2020-02-14 16:31:59 +01:00
parent e6b76459db
commit fa92fc336b

22
NEWS
View File

@ -5,6 +5,28 @@ See the end for copying conditions.
Please send GNU Wget bug reports to <bug-wget@gnu.org>.
* Changes in Wget 1.21 (unreleased)
** Remove all uses of alloca
In some places the length of untrusted strings has been used, e.g.
strings from the command line or from remote.
** Fix buffer overflows in progress bar code in some locales
** Fix two null pointer accesses
** Amend cookie file header to be recognized by the 'file' command
** Post Handshake Authentication for OpenSSL
** Require gettext version 0.19.3+
** Add configure flags --enable-fsanitize-ubsan, --enable-fsanitize-asan
and --enable-fsanitize-msan for gcc and clang
** Make several smaller fixes, enhance fuzzing, enhance building
* Changes in Wget 1.20.3
** Fixed a buffer overflow vulnerability