changeset 2241:eb363ec95d86

vulnerabilities disclosed
author Sebastien Jodogne <s.jodogne@gmail.com>
date Fri, 16 Dec 2016 19:59:48 +0100
parents df47c45694ed
children 4e8e0ad2001c
files NEWS
diffstat 1 files changed, 3 insertions(+), 0 deletions(-) [+]
line wrap: on
line diff
--- a/NEWS	Fri Dec 16 17:50:51 2016 +0100
+++ b/NEWS	Fri Dec 16 19:59:48 2016 +0100
@@ -51,6 +51,9 @@
 * Ignore "Group Length" tags in C-FIND queries
 * Fix handling of worklist SCP with ReferencedStudySequence and ReferencedPatientSequence
 * Fix handling of Move Originator AET and ID in C-MOVE SCP
+* Fix vulnerability ZSL-2016-5379 "Unquoted Service Path Privilege Escalation" in the
+  Windows service
+* Fix vulnerability ZSL-2016-5380 "Remote Memory Corruption Vulnerability" in DCMTK 3.6.0
 
 
 Version 1.1.0 (2016/06/27)