Adapt ChangeLog
diff --git a/ChangeLog b/ChangeLog
index 0a9dc4f..5c4ff8b 100644
--- a/ChangeLog
+++ b/ChangeLog
@@ -7,6 +7,9 @@
MBEDTLS_THREADING_C is defined. Found by TrinityTonic, #1095
* Fix a bug in the update function for SSL ticket keys which previously
invalidated keys of a lifetime of less than a 1s. Fixes #1968.
+ * Fix a bug in the record decryption routine ssl_decrypt_buf()
+ which lead to accepting properly authenticated but improperly
+ padded records in case of CBC ciphersuites using Encrypt-then-MAC.
Changes
* Add tests for session resumption in DTLS.