Changelog for padding CT fixes
Signed-off-by: Dave Rodgman <dave.rodgman@arm.com>
diff --git a/ChangeLog.d/padding-ct-changelog.txt b/ChangeLog.d/padding-ct-changelog.txt
new file mode 100644
index 0000000..f89f479
--- /dev/null
+++ b/ChangeLog.d/padding-ct-changelog.txt
@@ -0,0 +1,6 @@
+Security
+ * Fix non-constant-time behaviour in padding calculations in CBC
+ decryption, NIST SP 800-38F key wrapping, and RSAAES-OAEP decryption.
+ For CBC and RSAAES-OAEP, this may have been exploitable in a
+ padding oracle for a privileged local attacker with the ability to
+ observe memory access timings.