summaryrefslogtreecommitdiff
diff options
context:
space:
mode:
authorThom May <thom@chef.io>2017-09-14 20:14:09 +0100
committerThom May <thom@chef.io>2017-09-14 20:14:09 +0100
commitf6c5328b9f1dcd8ee3388a94f60d96c84d8f3e70 (patch)
treeb1c732f49c1036546719e67671af02805ecb3271
parent5153de9e240f3feb67627cebc867eef2243a1810 (diff)
downloadchef-tm/relnotes_12.tar.gz
Update Chef 12 release notes with CVEstm/relnotes_12
Signed-off-by: Thom May <thom@chef.io>
-rw-r--r--RELEASE_NOTES.md16
1 files changed, 15 insertions, 1 deletions
diff --git a/RELEASE_NOTES.md b/RELEASE_NOTES.md
index 1be788ac43..a608ed415d 100644
--- a/RELEASE_NOTES.md
+++ b/RELEASE_NOTES.md
@@ -4,7 +4,21 @@ _This file holds "in progress" release notes for the current release under devel
## Security Fixes
-This release of Chef Client contains a new version of zlib, fixing 4
+This release of Chef Client contains Ruby 2.3.5, fixing 4 CVEs:
+
+ * CVE-2017-0898
+ * CVE-2017-10784
+ * CVE-2017-14033
+ * CVE-2017-14064
+
+It also contains a new version of Rubygems, fixing 4 CVEs:
+
+ * CVE-2017-0899
+ * CVE-2017-0900
+ * CVE-2017-0901
+ * CVE-2017-0902
+
+This release also contains a new version of zlib, fixing 4
CVEs:
* [CVE-2016-9840](https://www.cvedetails.com/cve/CVE-2016-9840/)