Add affiliation of bug reporter to credits in the ChangeLog

This commit is contained in:
Hanno Becker 2017-12-07 15:03:22 +00:00
parent 7862cd0ca4
commit de42c59b91

View File

@ -14,7 +14,8 @@ Security
compatibility problems with non Mbed TLS peers and allowing
an offline 2^80 brute force attack on the HMAC key of a single,
uninterrupted (excluding session resumption) connection.
Found by Andreas Walz.
Found by Andreas Walz (ivESK, Offenburg University of Applied
Sciences).
Bugfix
* Fix ssl_parse_record_header() to silently discard invalid DTLS records