-------------------------------------------------------------------------------- Fedora Update Notification FEDORA-2012-10602 2012-07-14 21:18:53 --------------------------------------------------------------------------------
Name : nss Product : Fedora 16 Version : 3.13.5 Release : 1.fc16 URL : http://www.mozilla.org/projects/security/pki/nss/ Summary : Network Security Services Description : Network Security Services (NSS) is a set of libraries designed to support cross-platform development of security-enabled client and server applications. Applications built with NSS can support SSL v2 and v3, TLS, PKCS #5, PKCS #7, PKCS #11, PKCS #12, S/MIME, X.509 v3 certificates, and other security standards. -------------------------------------------------------------------------------- Update Information: Update nss to 3.13.5 and nspr to 4.9.1 You can find the upstream bug fixes in the nss-3.13.5 and nspr-4.9.1 releases with the following bugzilla queries: https://bugzilla.mozilla.org/buglist.cgi?resolution=FIXED;classification=Components;query_format=advanced;target_milestone=3.13.5;product=NSS;list_id=3648079 and https://bugzilla.mozilla.org/buglist.cgi?resolution=FIXED;classification=Components;query_format=advanced;target_milestone=4.9.1;product=NSPR;list_id=3648089 -------------------------------------------------------------------------------- ChangeLog: * Thu Jul 12 2012 Elio Maldonado <[email protected]> - 3.13.4-3 - Update to NSS_3_13_5_RTM - Resolves: Bug 830410 - Missing Requires %{?_isa} - Use Requires: %{name}%{?_isa} = %{version}-%{release} on tools - Drop zlib requires which rpmlint reports as error E: explicit-lib-dependency zlib - Enable sha224 portion of powerup selftest when running test suites - Require nspr 4.9.1 - Selective merge from master * Fri Apr 13 2012 Elio Maldonado <[email protected]> - 3.13.4-3 - Resolves: Bug 812423 - nss_Init leaks memory, fix from RHEL 6.3 * Sun Apr 8 2012 Elio Maldonado <[email protected]> - 3.13.4-2 - Resolves: Bug 805723 - Library needs partial RELRO support added - Patch coreconf/Linux.mk as done on RHEL 6.2 * Sat Apr 7 2012 Elio Maldonado <[email protected]> - 3.13.4-1 - Update to NSS_3_13_4_RTM - Update the nss-pem source archive to the latest version - Remove no longer needed patches - Resolves: Bug 806043 - use pem files interchangeably in a single process - Resolves: Bug 806051 - PEM various flaws detected by Coverity - Resolves: Bug 806058 - PEM pem_CreateObject leaks memory given a non-existing file name * Wed Mar 28 2012 Elio Maldonado <[email protected]> - 3.13.3-2 - Resolves: Bug 805723 - Library needs partial RELRO support added * Sat Mar 10 2012 Elio Maldonado <[email protected]> - 3.13.3-1 - Update to NSS_3_13_3_RTM - spec file cleanup: add references to upstream bugs - spec file cleanup: fix typo in Summary for sysinit - Pick up fixes from RHEL - Resolves: rhbz#800674 - Unable to contact LDAP Server during winsync - Resolves: rhbz#800682 - Qpid AMQP daemon fails to load after nss update - Resolves: rhbz#800676 - NSS workaround for freebl bug that causes openswan to drop connections * Thu Jan 26 2012 Elio Maldonado <[email protected]> - 3.13.1-12 - Resolves: Bug 784672 - nss should protect against being called before nss_Init * Fri Jan 6 2012 Elio Maldonado <[email protected]> - 3.13.1-10 - Resolves: Bug 770682 - nss update breaks pidgin-sipe connectivity - NSS_SSL_CBC_RANDOM_IV set to 0 by default and changed to 1 on user request * Tue Dec 13 2011 elio maldonado <[email protected]> - 3.13.1-9 - Revert to using current nss_softokn_version - Patch to deal with lack of sha224 is no longer needed * Tue Dec 13 2011 Elio Maldonado <[email protected]> - 3.13.1-8 - Resolves: Bug 754771 - [PEM] an unregistered callback causes a SIGSEGV * Mon Dec 12 2011 Elio Maldonado <[email protected]> - 3.13.1-7 - Resolves: Bug 750376 - nss 3.13 breaks sssd TLS - Fix how pem is built so that nss-3.13.x works with nss-softokn-3.12.y - Only patch blapitest for the lack of sha224 on system freebl - Completed the patch to make pem link against system freebl * Mon Dec 5 2011 Elio Maldonado <[email protected]> - 3.13.1-6 - Removed unwanted /usr/include/nss3 in front of the normal cflags include path - Removed unnecessary patch dealing with CERTDB_TERMINAL_RECORD, it's visible * Sun Dec 4 2011 Elio Maldonado <[email protected]> - 3.13.1-5 - Statically link the pem module against system freebl found in buildroot - Disabling sha224-related powerup selftest until we update softokn - Disable sha224 and pss tests which nss-softokn 3.12.x doesn't support * Fri Dec 2 2011 Elio Maldonado Batiz <[email protected]> - 3.13.1-4 - Rebuild with nss-softokn from 3.12 in the buildroot - Allows the pem module to statically link against 3.12.x freebl - Required for using nss-3.13.x with nss-softokn-3.12.y for a merge inrto rhel git repo - Build will be temprarily placed on buildroot override but not pushed in bodhi * Fri Nov 4 2011 Elio Maldonado <[email protected]> - 3.13.1-2 - Fix broken dependencies by updating the nss-util and nss-softokn versions * Thu Nov 3 2011 Elio Maldonado <[email protected]> - 3.13.1-1 - Update to NSS_3_13_1_RTM - Update builtin certs to those from NSSCKBI_1_88_RTM * Sat Oct 15 2011 Elio Maldonado <[email protected]> - 3.13-1 - Update to NSS_3_13_RTM * Sat Oct 8 2011 Elio Maldonado <[email protected]> - 3.13-0.1.rc0.1 - Update to NSS_3_13_RC0 * Wed Sep 14 2011 Elio Maldonado <[email protected]> - 3.12.11-3 - Fix attempt to free initilized pointer (#717338) - Fix leak on pem_CreateObject when given non-existing file name (#734760) - Fix pem_Initialize to return CKR_CANT_LOCK on multi-treaded calls (#736410) -------------------------------------------------------------------------------- References: [ 1 ] Bug #829088 - nss-softokn sha224 self-test fails in fips mode https://bugzilla.redhat.com/show_bug.cgi?id=829088 [ 2 ] Bug #830410 - Missing Requires %{?_isa} https://bugzilla.redhat.com/show_bug.cgi?id=830410 -------------------------------------------------------------------------------- This update can be installed with the "yum" update program. Use su -c 'yum update nss' at the command line. For more information, refer to "Managing Software with yum", available at http://docs.fedoraproject.org/yum/. All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/keys -------------------------------------------------------------------------------- _______________________________________________ package-announce mailing list [email protected] https://admin.fedoraproject.org/mailman/listinfo/package-announce
