diff --git a/ChangeLog.d/buf-overread-use-psa-static-ecdh.txt b/ChangeLog.d/buf-overread-use-psa-static-ecdh.txt index 023c73082..84b9f790d 100644 --- a/ChangeLog.d/buf-overread-use-psa-static-ecdh.txt +++ b/ChangeLog.d/buf-overread-use-psa-static-ecdh.txt @@ -2,5 +2,5 @@ Security * Fix a potential heap buffer overread in TLS 1.2 server-side when MBEDTLS_USE_PSA_CRYPTO is enabled, an opaque key (created with mbedtls_pk_setup_opaque()) is provisioned, and a static ECDH ciphersuite - is selected. This may result in an application crash. No path to - information leak has been identified. + is selected. This may result in an application crash or potentially an + information leak.