The GNU Transport Layer Security Library

Edit Package gnutls

The GnuTLS project aims to develop a library that provides a secure
layer over a reliable transport layer. Currently the GnuTLS library
implements the proposed standards of the IETF's TLS working group.

Refresh
Refresh
Source Files
Filename Size Changed
baselibs.conf 0000000147 147 Bytes
gnutls-3.0.26-skip-test-fwrite.patch 0000000801 801 Bytes
gnutls-3.2.11.tar.xz 0005135168 4.9 MB
gnutls-3.2.11.tar.xz.sig 0000000287 287 Bytes
gnutls-implement-trust-store-dir-3.2.8.diff 0000004617 4.51 KB
gnutls.changes 0000075936 74.2 KB
gnutls.keyring 0000084050 82.1 KB
gnutls.spec 0000008073 7.88 KB
Revision 69 (latest revision is 155)
Stephan Kulow's avatar Stephan Kulow (coolo) accepted request 222335 from Marcus Meissner's avatar Marcus Meissner (msmeissn) (revision 69)
- Upgraded to 3.2.11
  ** libgnutls: Tolerate servers that send the SUPPORTED ECC extension.
  ** libgnutls: Reduced the TLS and DTLS version requirements for all
     ciphersuites that are not GCM.
  ** libgnutls: When two initial keywords are specified then treat the
     second as having the '+' modifier.
  ** libgnutls:  When using a PKCS #11 module for verification ensure that
     it has been marked a trusted policy module in p11-kit. Moreover, when an
     empty (i.e., "pkcs11:") URL is specified, then try all trusted modules
     in the system for verification.
     http://p11-glue.freedesktop.org/doc/p11-kit/pkcs11-conf.html
  ** libgnutls: Fixed bug that prevented the rejection of v1 intermediate
     CA certificates. Reported and investigated by Suman Jana.
     CVE-2014-1959 / bnc#863989
  ** certtool: Added the --ask-pass option.
- gnutls-3.2.10-supported-ecc.patch: upstreamed
- gnutls-fix-missing-ipv6.patch: upstreamed

- Upgrade to 3.1.20 (released 2014-01-31)
  ** libgnutls: fixed null pointer derefence when printing a certificate
     DN and an LDAP description isn't present.
  ** libgnutls: gnutls_db_check_entry_time will correctly report the time;
     report and patch by Jonathan Roudiere.
- Upgrade to 3.2.9 (released 2014-01-24)
  ** libgnutls: The %DUMBFW option in priority string only
     appends data to client hello if the expected size is in the
     "black hole" range.
  ** libgnutls: %COMPAT implies %DUMBFW.
  ** libgnutls: gnutls_session_get_desc() returns a more compact
     ciphersuite description.
Comments 0
openSUSE Build Service is sponsored by