nss 2:3.45-1ubuntu2.2 source package in Ubuntu

Changelog

nss (2:3.45-1ubuntu2.2) eoan-security; urgency=medium

  * SECURITY UPDATE: Possible wrong length for cryptographic primitives input
    - debian/patches/CVE-2019-17006.patch: adds checks for length of crypto
      primitives in nss/lib/freebl/chacha20poly1305.c,
      nss/lib/freebl/ctr.c, nss/lib/freebl/gcm.c,
      nss/lib/freebl/intel-gcm-wrap.c,
      nss/lib/freebl/rsapkcs.c.
    - CVE-2019-17006

 -- <email address hidden> (Leonidas S. Barbosa)  Tue, 07 Jan 2020 15:31:35 -0300

Upload details

Uploaded by:
Leonidas S. Barbosa on 2020-01-08
Uploaded to:
Eoan
Original maintainer:
Ubuntu Developers
Architectures:
any
Section:
libs
Urgency:
Medium Urgency

See full publishing history Publishing

Series Pocket Published Component Section
Eoan updates on 2020-01-08 main libs
Eoan security on 2020-01-08 main libs

Downloads

File Size SHA-256 Checksum
nss_3.45.orig.tar.gz 72.5 MiB 112f05223d1fde902c170966bfc6f011b24a838be16969b110ecf2bb7bc24e8b
nss_3.45-1ubuntu2.2.debian.tar.xz 24.0 KiB 3af895d956b93d56bfd76eab94cdbfc51c9f21e6653a5e75c9ef53d2fbaa5037
nss_3.45-1ubuntu2.2.dsc 2.2 KiB 9316bfb9155edc73c47f36cb909401a6808a7165eb088e6d436b195246f3c715

View changes file

Binary packages built by this source

libnss3: Network Security Service libraries

 This is a set of libraries designed to support cross-platform development
 of security-enabled client and server applications. It can support SSLv2
 and v4, TLS, PKCS #5, #7, #11, #12, S/MIME, X.509 v3 certificates and
 other security standards.

libnss3-dbgsym: debug symbols for libnss3
libnss3-dev: Development files for the Network Security Service libraries

 This is a set of libraries designed to support cross-platform development
 of security-enabled client and server applications. It can support SSLv2
 and v4, TLS, PKCS #5, #7, #11, #12, S/MIME, X.509 v3 certificates and
 other security standards.
 .
 Install this package if you wish to develop your own programs using the
 Network Security Service Libraries.

libnss3-tools: Network Security Service tools

 This is a set of tools on top of the Network Security Service libraries.
 This package includes:
  * certutil: manages certificate and key databases (cert7.db and key3.db)
  * modutil: manages the database of PKCS11 modules (secmod.db)
  * pk12util: imports/exports keys and certificates between the cert/key
    databases and files in PKCS12 format.
  * shlibsign: creates .chk files for use in FIPS mode.
  * signtool: creates digitally-signed jar archives containing files and/or
    code.
  * ssltap: proxy requests for an SSL server and display the contents of
    the messages exchanged between the client and server.

libnss3-tools-dbgsym: debug symbols for libnss3-tools