Fedora 16 Update: nss-3.13.5-1.fc16

updates at fedoraproject.org updates at fedoraproject.org
Mon Jul 30 22:24:44 UTC 2012


--------------------------------------------------------------------------------
Fedora Update Notification
FEDORA-2012-10602
2012-07-14 21:18:53
--------------------------------------------------------------------------------

Name        : nss
Product     : Fedora 16
Version     : 3.13.5
Release     : 1.fc16
URL         : http://www.mozilla.org/projects/security/pki/nss/
Summary     : Network Security Services
Description :
Network Security Services (NSS) is a set of libraries designed to
support cross-platform development of security-enabled client and
server applications. Applications built with NSS can support SSL v2
and v3, TLS, PKCS #5, PKCS #7, PKCS #11, PKCS #12, S/MIME, X.509
v3 certificates, and other security standards.

--------------------------------------------------------------------------------
Update Information:

Update nss to 3.13.5 and nspr to 4.9.1

You can find the upstream bug fixes in the nss-3.13.5 and nspr-4.9.1 releases with the following bugzilla queries:

https://bugzilla.mozilla.org/buglist.cgi?resolution=FIXED;classification=Components;query_format=advanced;target_milestone=3.13.5;product=NSS;list_id=3648079

and

https://bugzilla.mozilla.org/buglist.cgi?resolution=FIXED;classification=Components;query_format=advanced;target_milestone=4.9.1;product=NSPR;list_id=3648089

--------------------------------------------------------------------------------
ChangeLog:

* Thu Jul 12 2012 Elio Maldonado <emaldona at redhat.com> - 3.13.4-3
- Update to NSS_3_13_5_RTM
- Resolves: Bug 830410 - Missing Requires %{?_isa}
- Use Requires: %{name}%{?_isa} = %{version}-%{release} on tools
- Drop zlib requires which rpmlint reports as error E: explicit-lib-dependency zlib
- Enable sha224 portion of powerup selftest when running test suites
- Require nspr 4.9.1
- Selective merge from master
* Fri Apr 13 2012 Elio Maldonado <emaldona at redhat.com> - 3.13.4-3
- Resolves: Bug 812423 - nss_Init leaks memory, fix from RHEL 6.3
* Sun Apr  8 2012 Elio Maldonado <emaldona at redhat.com> - 3.13.4-2
- Resolves: Bug 805723 - Library needs partial RELRO support added
- Patch coreconf/Linux.mk as done on RHEL 6.2
* Sat Apr  7 2012 Elio Maldonado <emaldona at redhat.com> - 3.13.4-1
- Update to NSS_3_13_4_RTM
- Update the nss-pem source archive to the latest version
- Remove no longer needed patches
- Resolves: Bug 806043 - use pem files interchangeably in a single process
- Resolves: Bug 806051 - PEM various flaws detected by Coverity
- Resolves: Bug 806058 - PEM pem_CreateObject leaks memory given a non-existing file name
* Wed Mar 28 2012 Elio Maldonado <emaldona at redhat.com> - 3.13.3-2
- Resolves: Bug 805723 - Library needs partial RELRO support added
* Sat Mar 10 2012 Elio Maldonado <emaldona at redhat.com> - 3.13.3-1
- Update to NSS_3_13_3_RTM
- spec file cleanup: add references to upstream bugs
- spec file cleanup: fix typo in Summary for sysinit
- Pick up fixes from RHEL
- Resolves: rhbz#800674 - Unable to contact LDAP Server during winsync
- Resolves: rhbz#800682 - Qpid AMQP daemon fails to load after nss update
- Resolves: rhbz#800676 - NSS workaround for freebl bug that causes openswan to drop connections
* Thu Jan 26 2012 Elio Maldonado <emaldona at redhat.com> - 3.13.1-12
- Resolves: Bug 784672 - nss should protect against being called before nss_Init
* Fri Jan  6 2012 Elio Maldonado <emaldona at redhat.com> - 3.13.1-10
- Resolves: Bug 770682 - nss update breaks pidgin-sipe connectivity
- NSS_SSL_CBC_RANDOM_IV set to 0 by default and changed to 1 on user request
* Tue Dec 13 2011 elio maldonado <emaldona at redhat.com> - 3.13.1-9
- Revert to using current nss_softokn_version
- Patch to deal with lack of sha224 is no longer needed
* Tue Dec 13 2011 Elio Maldonado <emaldona at redhat.com> - 3.13.1-8
- Resolves: Bug 754771 - [PEM] an unregistered callback causes a SIGSEGV
* Mon Dec 12 2011 Elio Maldonado <emaldona at redhat.com> - 3.13.1-7
- Resolves: Bug 750376 - nss 3.13 breaks sssd TLS
- Fix how pem is built so that nss-3.13.x works with nss-softokn-3.12.y
- Only patch blapitest for the lack of sha224 on system freebl
- Completed the patch to make pem link against system freebl
* Mon Dec  5 2011 Elio Maldonado <emaldona at redhat.com> - 3.13.1-6
- Removed unwanted /usr/include/nss3 in front of the normal cflags include path
- Removed unnecessary patch dealing with CERTDB_TERMINAL_RECORD, it's visible
* Sun Dec  4 2011 Elio Maldonado <emaldona at redhat.com> - 3.13.1-5
- Statically link the pem module against system freebl found in buildroot
- Disabling sha224-related powerup selftest until we update softokn
- Disable sha224 and pss tests which nss-softokn 3.12.x doesn't support
* Fri Dec  2 2011 Elio Maldonado Batiz <emaldona at redhat.com> - 3.13.1-4
- Rebuild with nss-softokn from 3.12 in the buildroot
- Allows the pem module to statically link against 3.12.x freebl
- Required for using nss-3.13.x with nss-softokn-3.12.y for a merge inrto rhel git repo
- Build will be temprarily placed on buildroot override but not pushed in bodhi
* Fri Nov  4 2011 Elio Maldonado <emaldona at redhat.com> - 3.13.1-2
- Fix broken dependencies by updating the nss-util and nss-softokn versions
* Thu Nov  3 2011 Elio Maldonado <emaldona at redhat.com> - 3.13.1-1
- Update to NSS_3_13_1_RTM
- Update builtin certs to those from NSSCKBI_1_88_RTM
* Sat Oct 15 2011 Elio Maldonado <emaldona at redhat.com> - 3.13-1
- Update to NSS_3_13_RTM
* Sat Oct  8 2011 Elio Maldonado <emaldona at redhat.com> - 3.13-0.1.rc0.1
- Update to NSS_3_13_RC0
* Wed Sep 14 2011 Elio Maldonado <emaldona at redhat.com> - 3.12.11-3
- Fix attempt to free initilized pointer (#717338)
- Fix leak on pem_CreateObject when given non-existing file name (#734760)
- Fix pem_Initialize to return CKR_CANT_LOCK on multi-treaded calls (#736410)
--------------------------------------------------------------------------------
References:

  [ 1 ] Bug #829088 - nss-softokn sha224 self-test fails in fips mode
        https://bugzilla.redhat.com/show_bug.cgi?id=829088
  [ 2 ] Bug #830410 - Missing Requires %{?_isa}
        https://bugzilla.redhat.com/show_bug.cgi?id=830410
--------------------------------------------------------------------------------

This update can be installed with the "yum" update program.  Use 
su -c 'yum update nss' at the command line.
For more information, refer to "Managing Software with yum",
available at http://docs.fedoraproject.org/yum/.

All packages are signed with the Fedora Project GPG key.  More details on the
GPG keys used by the Fedora Project can be found at
https://fedoraproject.org/keys
--------------------------------------------------------------------------------


More information about the package-announce mailing list