diff --git a/ChangeLog.d/fix-null-pointer-dereference.txt b/ChangeLog.d/fix-null-pointer-dereference.txt index 1eb3c416a8..1dd7d61905 100644 --- a/ChangeLog.d/fix-null-pointer-dereference.txt +++ b/ChangeLog.d/fix-null-pointer-dereference.txt @@ -1,4 +1,5 @@ Security * Fix a NULL pointer dereference in mbedtls_x509_string_to_names() when mbedtls_calloc() fails to allocate memory. This was caused by failing to - check whether mbedtls_calloc() returned NULL. + check whether mbedtls_calloc() returned NULL. Found and reported by + Haruto Kimura (Stella). diff --git a/ChangeLog.d/inet_pton.txt b/ChangeLog.d/inet_pton.txt index 22e6806556..1acb8de84e 100644 --- a/ChangeLog.d/inet_pton.txt +++ b/ChangeLog.d/inet_pton.txt @@ -3,3 +3,4 @@ Security (e.g. on platforms with memory protection when the overread crosses page boundary) this could lead to DoS. Found and reported by Haruto Kimura (Stella). + CVE-2026-25833