Network Security Services

Edit Package mozilla-nss

Network Security Services (NSS) is a set of libraries designed to
support cross-platform development of security-enabled server
applications. Applications built with NSS can support SSL v2 and v3,
TLS, PKCS #5, PKCS #7, PKCS #11, PKCS #12, S/MIME, X.509 v3
certificates, and other security standards.

Refresh
Refresh
Source Files
Filename Size Changed
add-relro-linker-option.patch 0000000433 433 Bytes
baselibs.conf 0000000319 319 Bytes
bmo-1400603.patch 0000012934 12.6 KB
cert9.db 0000009216 9 KB
key4.db 0000011264 11 KB
malloc.patch 0000000300 300 Bytes
mozilla-nss-rpmlintrc 0000000187 187 Bytes
mozilla-nss.changes 0000102864 100 KB
mozilla-nss.spec 0000012803 12.5 KB
nss-3.41.1.tar.gz 0023320948 22.2 MB
nss-config.in 0000002408 2.35 KB
nss-no-rpath.patch 0000001040 1.02 KB
nss-opt.patch 0000000739 739 Bytes
nss-sqlitename.patch 0000000891 891 Bytes
nss.pc.in 0000000250 250 Bytes
pkcs11.txt 0000000450 450 Bytes
setup-nsssysinit.sh 0000001255 1.23 KB
system-nspr.patch 0000000793 793 Bytes
Revision 142 (latest revision is 218)
Stephan Kulow's avatar Stephan Kulow (coolo) accepted request 669997 from Wolfgang Rosenauer's avatar Wolfgang Rosenauer (wrosenauer) (revision 142)
- update to NSS 3.41.1
  * (3.41) required by Firefox 65.0
  New functionality
  * Implemented EKU handling for IPsec IKE. (bmo#1252891)
  * Enable half-closed states for TLS. (bmo#1423043)
  * Enabled the following ciphersuites by default: (bmo#1493215)
    TLS_ECDHE_ECDSA_WITH_AES_256_GCM_SHA384
    TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384
    TLS_DHE_RSA_WITH_AES_256_GCM_SHA384
    TLS_RSA_WITH_AES_256_GCM_SHA384
  Notable changes
  * The following CA certificates were added:
    CN = Certigna Root CA
    CN = GTS Root R1
    CN = GTS Root R2
    CN = GTS Root R3
    CN = GTS Root R4
    CN = UCA Global G2 Root
    CN = UCA Extended Validation Root
  * The following CA certificates were removed:
    CN = AC Raíz Certicámara S.A.
    CN = Certplus Root CA G1
    CN = Certplus Root CA G2
    CN = OpenTrust Root CA G1
    CN = OpenTrust Root CA G2
    CN = OpenTrust Root CA G3
  Bugs fixed
  * Reject empty supported_signature_algorithms in Certificate
    Request in TLS 1.2 (bmo#1412829)
  * Cache side-channel variant of the Bleichenbacher attack (bmo#1485864)
Comments 0
openSUSE Build Service is sponsored by