nss 2:3.35-2ubuntu2.8 source package in Ubuntu
Changelog
nss (2:3.35-2ubuntu2.8) bionic-security; urgency=medium * SECURITY UPDATE: invalid state after HelloRetryRequest - debian/patches/CVE-2019-17023-1.patch: prevent negotiation of versions lower than 1.3 after HelloRetryRequest in nss/lib/ssl/ssl3con.c, nss/lib/ssl/tls13con.c. - debian/patches/CVE-2019-17023-2.patch: add new tests for version limitations after a HRR in nss/gtests/ssl_gtest/ssl_hrr_unittest.cc. - CVE-2019-17023 * SECURITY UPDATE: Timing attack during DSA key generation - debian/patches/CVE-2020-12399.patch: force a fixed length for DSA exponentiation in nss/lib/freebl/dsa.c. - CVE-2020-12399 -- Marc Deslauriers <email address hidden> Wed, 10 Jun 2020 13:04:22 -0400
Upload details
- Uploaded by:
- Marc Deslauriers
- Uploaded to:
- Bionic
- Original maintainer:
- Ubuntu Developers
- Architectures:
- any
- Section:
- libs
- Urgency:
- Medium Urgency
See full publishing history Publishing
Series | Published | Component | Section |
---|
Downloads
File | Size | SHA-256 Checksum |
---|---|---|
nss_3.35.orig.tar.gz | 9.2 MiB | f4127de09bede39f5fd0f789d33c3504c5d261e69ea03022d46b319b3e32f6fa |
nss_3.35-2ubuntu2.8.debian.tar.xz | 47.5 KiB | 9c5aa31d361c671c71efb29f58f87952907e248d7f8c039f83b54e38489fcd69 |
nss_3.35-2ubuntu2.8.dsc | 2.3 KiB | c3dd023827b9f021ad0f4e08ff3e644b428d54714c3d4e3c1c9ec71d3c787935 |
Available diffs
Binary packages built by this source
- libnss3: Network Security Service libraries
This is a set of libraries designed to support cross-platform development
of security-enabled client and server applications. It can support SSLv2
and v4, TLS, PKCS #5, #7, #11, #12, S/MIME, X.509 v3 certificates and
other security standards.
- libnss3-dbg: Debugging symbols for the Network Security Service libraries
This is a set of libraries designed to support cross-platform development
of security-enabled client and server applications. It can support SSLv2
and v4, TLS, PKCS #5, #7, #11, #12, S/MIME, X.509 v3 certificates and
other security standards.
.
This package provides the debugging symbols for the library.
- libnss3-dev: Development files for the Network Security Service libraries
This is a set of libraries designed to support cross-platform development
of security-enabled client and server applications. It can support SSLv2
and v4, TLS, PKCS #5, #7, #11, #12, S/MIME, X.509 v3 certificates and
other security standards.
.
Install this package if you wish to develop your own programs using the
Network Security Service Libraries.
- libnss3-tools: Network Security Service tools
This is a set of tools on top of the Network Security Service libraries.
This package includes:
* certutil: manages certificate and key databases (cert7.db and key3.db)
* modutil: manages the database of PKCS11 modules (secmod.db)
* pk12util: imports/exports keys and certificates between the cert/key
databases and files in PKCS12 format.
* shlibsign: creates .chk files for use in FIPS mode.
* signtool: creates digitally-signed jar archives containing files and/or
code.
* ssltap: proxy requests for an SSL server and display the contents of
the messages exchanged between the client and server.