-
Thu Nov 09 2017 Ilya Okomin <ilya.okomin@oracle.com> - 3.28.3-8.0.1
- Add fips140-2 DSA Known Answer Test fix [Orabug 26679337]
- Add fips140-2 ECDSA/RSA/DSA Pairwise Consistency Test fix [Orabug 26617814],
[Orabug 26617879], [Orabug 26617849]
- Add fips140-2 ECDSA Known Answer Test fix [Orabug 26679353]
-
Thu Aug 03 2017 Bob Relyea <rrelyea@redhat.com> - 3.28.3-8
- fix fips post so that they actually run at startup
-
Wed Aug 02 2017 Daiki Ueno <dueno@redhat.com> - 3.28.3-7
- let nss-softokn-freebl depend on recent version of nspr (rhbz#1477308),
patch by Kyle Walker
-
Fri May 26 2017 Daiki Ueno <dueno@redhat.com> - 3.28.3-6
- restore nss-softokn-3.16-add_encrypt_derive.patch
-
Wed May 17 2017 Daiki Ueno <dueno@redhat.com> - 3.28.3-5
- fix login handling for FIPS slots, patch from rhbz#1390154
- backport upstream fix for CVE-2017-5462 (DRBG leak)
-
Thu Mar 23 2017 Bob Relyea <rrelyea@redhat.com> - 3.28.3-4
- include new PKCS12 NSS specific mechanisms.
- alias CKM_TLS_KDF to CKM_TLS_MAC to preserve ABI
- add RSA PSS oid to decrypting PKCS #5 key blobs.
- move ec public key check from softokn to freebl so apps like Java can benefit.
-
Tue Mar 07 2017 Daiki Ueno <dueno@redhat.com> - 3.28.3-3
- Fix RSA-PSS corner case when the modulus is not of size multiple of 8
-
Mon Mar 06 2017 Daiki Ueno <dueno@redhat.com> - 3.28.3-2
- Update to NSS 3.28.3
- Remove upstreamed patches for the previous FIPS validation
- Package lowkeyi.h and lowkeyti.h in freebl-devel
- Pick up a patch in the Fedora package to fix build issue
-
Tue Jun 28 2016 Kai Engert <kaie@redhat.com> - 3.16.2.3-14.4
- escape all percent characters in all changelog comments
-
Wed Apr 20 2016 Elio Maldonado <emaldona@redhat.com> - 3.16.2.3-14.3
- Fix a flaw in %check for nss not building on arm
- Resolves: Bug 1200856