Adapt ChangeLog
diff --git a/ChangeLog b/ChangeLog
index 513f24f..58a51ff 100644
--- a/ChangeLog
+++ b/ChangeLog
@@ -7,6 +7,9 @@
      invalidated keys of a lifetime of less than a 1s. Fixes #1968.
    * Fix failure in hmac_drbg in the benchmark sample application, when
      MBEDTLS_THREADING_C is defined. Found by TrinityTonic, #1095
+   * Fix an unsafe bounds check when restoring an SSL session from a ticket.
+     This could lead to a buffer overflow, but only in case ticket authentication
+     was broken. Reported and fix suggested by Guido Vranken in #659.
 
 Changes
    * Add tests for session resumption in DTLS.