[El-errata] ELEA-2022-6440 Oracle Linux 8 nss and nspr bug fix and enhancement update

Errata Announcements for Oracle Linux el-errata at oss.oracle.com
Wed Sep 14 14:08:53 UTC 2022


Oracle Linux Enhancement Advisory ELEA-2022-6440

http://linux.oracle.com/errata/ELEA-2022-6440.html

The following updated rpms for Oracle Linux 8 have been uploaded to the Unbreakable Linux Network:

x86_64:
nspr-4.34.0-3.el8_6.i686.rpm
nspr-4.34.0-3.el8_6.x86_64.rpm
nspr-devel-4.34.0-3.el8_6.i686.rpm
nspr-devel-4.34.0-3.el8_6.x86_64.rpm
nss-3.79.0-10.el8_6.i686.rpm
nss-3.79.0-10.el8_6.x86_64.rpm
nss-devel-3.79.0-10.el8_6.i686.rpm
nss-devel-3.79.0-10.el8_6.x86_64.rpm
nss-softokn-3.79.0-10.el8_6.i686.rpm
nss-softokn-3.79.0-10.el8_6.x86_64.rpm
nss-softokn-devel-3.79.0-10.el8_6.i686.rpm
nss-softokn-devel-3.79.0-10.el8_6.x86_64.rpm
nss-softokn-freebl-3.79.0-10.el8_6.i686.rpm
nss-softokn-freebl-3.79.0-10.el8_6.x86_64.rpm
nss-softokn-freebl-devel-3.79.0-10.el8_6.i686.rpm
nss-softokn-freebl-devel-3.79.0-10.el8_6.x86_64.rpm
nss-sysinit-3.79.0-10.el8_6.x86_64.rpm
nss-tools-3.79.0-10.el8_6.x86_64.rpm
nss-util-3.79.0-10.el8_6.i686.rpm
nss-util-3.79.0-10.el8_6.x86_64.rpm
nss-util-devel-3.79.0-10.el8_6.i686.rpm
nss-util-devel-3.79.0-10.el8_6.x86_64.rpm

aarch64:
nspr-4.34.0-3.el8_6.aarch64.rpm
nspr-devel-4.34.0-3.el8_6.aarch64.rpm
nss-3.79.0-10.el8_6.aarch64.rpm
nss-devel-3.79.0-10.el8_6.aarch64.rpm
nss-softokn-3.79.0-10.el8_6.aarch64.rpm
nss-softokn-devel-3.79.0-10.el8_6.aarch64.rpm
nss-softokn-freebl-3.79.0-10.el8_6.aarch64.rpm
nss-softokn-freebl-devel-3.79.0-10.el8_6.aarch64.rpm
nss-sysinit-3.79.0-10.el8_6.aarch64.rpm
nss-tools-3.79.0-10.el8_6.aarch64.rpm
nss-util-3.79.0-10.el8_6.aarch64.rpm
nss-util-devel-3.79.0-10.el8_6.aarch64.rpm


SRPMS:
http://oss.oracle.com/ol8/SRPMS-updates/nspr-4.34.0-3.el8_6.src.rpm
http://oss.oracle.com/ol8/SRPMS-updates/nss-3.79.0-10.el8_6.src.rpm



Description of changes:

nspr
[4.34.0-3]
- Coverity fix changed selfserv from passive to active, change it back

[4.34.0-2]
- Fix coverify issue in NSPR 4.34

[4.34.0-1]
- Update to NSPR 4.34

nss
[3.79.0-11]
- Fix QA found failures:
-  remove extra '+' from sslpolicy.txt file causing test error values
-  only use GRND_RANDOM if the kernel is in FIPS mode.

[3.79.0-9]
- FIPS 140-3 changes

[3.79.0-8]
- Update fips default for pk12util to AES rather than TDES
- Fix bug in pkcs12 files with null passwords

[3.79.0-7]
- Better fix for test regressions

[3.79.0-6]
- fix nss.spec so it works in a rhel-8.1.0 buildroot

[3.79.0-5]
- FIPS 140-3 changes
-  Reject Small RSA keys, 1024 bit keys are marked as FIP OK when verifying, reject
   signature keys by policy
-  Allow applications to retrigger selftests on demand.

[3.79.0-4]
- Fix pkgconfig output

[3.79.0-3]
- NSR Coverity fix changed selfserv from passive to active, change it back

[3.79.0-2]
- Fix regressions found in test suites.

[3.79.0-1]
- Rebase to NSS 3.79
- Set FIPS Module ID
- skip attribute verification on attributes with default values
- don't export trust objects if they are default trust objects from dbm
- add dbtool to nss-tools




More information about the El-errata mailing list