From d8a4851e90458eb27dc5ed9d8a0d1fdebd881fa7 Mon Sep 17 00:00:00 2001 From: Mark Andrews Date: Tue, 16 Jan 2024 14:36:12 +1100 Subject: [PATCH] Add CHANGES note for [GL #4507] --- CHANGES | 4 ++++ 1 file changed, 4 insertions(+) diff --git a/CHANGES b/CHANGES index 828f26d211..68fb7329e3 100644 --- a/CHANGES +++ b/CHANGES @@ -1,3 +1,7 @@ +6403. [security] qctx-zversion was not being cleared when it should have + been leading to an assertion failure if it needed to be + reused. (CVE-2024-4076) [GL #4507] + 6402. [security] A malicious DNS client that sends many queries with a SIG(0)-signed message can cause the server to respond slowly or not respond at all to other clients. Use the