From 9e4d9346a7429e14d03bdb1c19862a43338e57b8 Mon Sep 17 00:00:00 2001 From: Daniel Stenberg Date: Tue, 21 Mar 2000 14:18:39 +0000 Subject: [PATCH] curl_unescape() update --- CHANGES | 9 ++++++++- 1 file changed, 8 insertions(+), 1 deletion(-) diff --git a/CHANGES b/CHANGES index 0d1971dee8..7026b9d391 100644 --- a/CHANGES +++ b/CHANGES @@ -6,7 +6,14 @@ History of Changes -Version XX +Version 6.5.1 + +Daniel (20 March 2000): +- An anynomous post on sourceforge correctly pointed out a possible buffer + overflow in the curl_unescape() function for URL convertions. The main + problem with this bug is that the ftp download uses that function and this + single- byte overflow could lead to very odd bugs (as one reported by Janne + Johansson). Daniel (19 March 2000): - Marco G. Salvagno supplied me with a series of patches