From a1355fe159552dcb58d693c46ca94ab3be11e598 Mon Sep 17 00:00:00 2001 From: "Ignacio R. Morelle" Date: Wed, 8 Apr 2015 00:43:38 -0300 Subject: [PATCH] Update changelogs with an entry for bug #23440 (CVE-2015-0844) The new section doesn't respect alphabetical order and goes at the top. This is on purpose. Please do not change this. --- changelog | 2 ++ players_changelog | 3 +++ 2 files changed, 5 insertions(+) diff --git a/changelog b/changelog index dea14e35c1d7..35a3c28aa77e 100644 --- a/changelog +++ b/changelog @@ -1,4 +1,6 @@ Version 1.13.0-dev: + * Security fixes: + * Fixed arbitrary file read from WML/Lua API (CVE-2015-0844, bug #23440). * Add-ons client: * The Update All button is now displayed on all Add-on Manager views instead of just the Upgradable filter view, and enabled only when there is at diff --git a/players_changelog b/players_changelog index 2af898f817ce..e7de3311ff6b 100644 --- a/players_changelog +++ b/players_changelog @@ -3,6 +3,9 @@ changes may be omitted). For a complete list of changes, see the main changelog: https://github.com/wesnoth/wesnoth/blob/master/changelog Version 1.13.0-dev: + * Security fixes: + * Fixed arbitrary file read from WML/Lua API (CVE-2015-0844, bug #23440). + * Add-ons client: * The Update All button is now displayed on all Add-on Manager views instead of just the Upgradable filter view, and enabled only when there is at