Fedora 16 Update: nss-3.13.1-10.fc16

updates at fedoraproject.org updates at fedoraproject.org
Wed Jan 11 06:19:05 UTC 2012


--------------------------------------------------------------------------------
Fedora Update Notification
FEDORA-2012-0004
2012-01-01 20:56:06
--------------------------------------------------------------------------------

Name        : nss
Product     : Fedora 16
Version     : 3.13.1
Release     : 10.fc16
URL         : http://www.mozilla.org/projects/security/pki/nss/
Summary     : Network Security Services
Description :
Network Security Services (NSS) is a set of libraries designed to
support cross-platform development of security-enabled client and
server applications. Applications built with NSS can support SSL v2
and v3, TLS, PKCS #5, PKCS #7, PKCS #11, PKCS #12, S/MIME, X.509
v3 certificates, and other security standards.

--------------------------------------------------------------------------------
Update Information:

Revert the sense of the default behavior in the security fix for CVE-2011-3389 to restore interoperability with various servers.

Fix a segmentation violation when trying to turn on fips mode via Firefox as well as when using the modutil tool.
--------------------------------------------------------------------------------
ChangeLog:

* Fri Jan  6 2012 Elio Maldonado <emaldona at redhat.com> - 3.13.1-10
- Resolves: Bug 770682 - nss update breaks pidgin-sipe connectivity
- NSS_SSL_CBC_RANDOM_IV set to 0 by default and changed to 1 on user request
* Tue Dec 13 2011 elio maldonado <emaldona at redhat.com> - 3.13.1-9
- Revert to using current nss_softokn_version
- Patch to deal with lack of sha224 is no longer needed
* Tue Dec 13 2011 Elio Maldonado <emaldona at redhat.com> - 3.13.1-8
- Resolves: Bug 754771 - [PEM] an unregistered callback causes a SIGSEGV
* Mon Dec 12 2011 Elio Maldonado <emaldona at redhat.com> - 3.13.1-7
- Resolves: Bug 750376 - nss 3.13 breaks sssd TLS
- Fix how pem is built so that nss-3.13.x works with nss-softokn-3.12.y
- Only patch blapitest for the lack of sha224 on system freebl
- Completed the patch to make pem link against system freebl
* Mon Dec  5 2011 Elio Maldonado <emaldona at redhat.com> - 3.13.1-6
- Removed unwanted /usr/include/nss3 in front of the normal cflags include path
- Removed unnecessary patch dealing with CERTDB_TERMINAL_RECORD, it's visible
* Sun Dec  4 2011 Elio Maldonado <emaldona at redhat.com> - 3.13.1-5
- Statically link the pem module against system freebl found in buildroot
- Disabling sha224-related powerup selftest until we update softokn
- Disable sha224 and pss tests which nss-softokn 3.12.x doesn't support
* Fri Dec  2 2011 Elio Maldonado Batiz <emaldona at redhat.com> - 3.13.1-4
- Rebuild with nss-softokn from 3.12 in the buildroot
- Allows the pem module to statically link against 3.12.x freebl
- Required for using nss-3.13.x with nss-softokn-3.12.y for a merge inrto rhel git repo
- Build will be temprarily placed on buildroot override but not pushed in bodhi
* Fri Nov  4 2011 Elio Maldonado <emaldona at redhat.com> - 3.13.1-2
- Fix broken dependencies by updating the nss-util and nss-softokn versions
* Thu Nov  3 2011 Elio Maldonado <emaldona at redhat.com> - 3.13.1-1
- Update to NSS_3_13_1_RTM
- Update builtin certs to those from NSSCKBI_1_88_RTM
* Sat Oct 15 2011 Elio Maldonado <emaldona at redhat.com> - 3.13-1
- Update to NSS_3_13_RTM
* Sat Oct  8 2011 Elio Maldonado <emaldona at redhat.com> - 3.13-0.1.rc0.1
- Update to NSS_3_13_RC0
* Wed Sep 14 2011 Elio Maldonado <emaldona at redhat.com> - 3.12.11-3
- Fix attempt to free initilized pointer (#717338)
- Fix leak on pem_CreateObject when given non-existing file name (#734760)
- Fix pem_Initialize to return CKR_CANT_LOCK on multi-treaded calls (#736410)
--------------------------------------------------------------------------------
References:

  [ 1 ] Bug #770419 - ssl https slowness login problems
        https://bugzilla.redhat.com/show_bug.cgi?id=770419
  [ 2 ] Bug #770682 - nss update breaks pidgin-sipe connectivity
        https://bugzilla.redhat.com/show_bug.cgi?id=770682
  [ 3 ] Bug #770999 - segmentation violation when trying to turn on fips mode
        https://bugzilla.redhat.com/show_bug.cgi?id=770999
--------------------------------------------------------------------------------

This update can be installed with the "yum" update program.  Use 
su -c 'yum update nss' at the command line.
For more information, refer to "Managing Software with yum",
available at http://docs.fedoraproject.org/yum/.

All packages are signed with the Fedora Project GPG key.  More details on the
GPG keys used by the Fedora Project can be found at
https://fedoraproject.org/keys
--------------------------------------------------------------------------------


More information about the package-announce mailing list