-
Fri Feb 06 2026 Alexander Sosedkin <asosedkin@redhat.com> - 3.8.10-3
- Fix PKCS#11 token initialization label overflow (CVE-2025-9820)
- Fix name constraint processing performance issue (CVE-2025-14831)
-
Wed Jan 14 2026 Alexander Sosedkin <asosedkin@redhat.com> - 3.8.10-2
- Reinstate and update the prematurely dropped rekeying patch
-
Thu Nov 06 2025 Alexander Sosedkin <asosedkin@redhat.com> - 3.8.10-1
- Rebase to 3.8.10
- Revert defaulting to PBMAC1 in FIPS mode
- Revert unapproving 1024-, 1280-, 1536- and 1792-bit RSA verification
-
Tue Aug 05 2025 Daiki Ueno <dueno@redhat.com> - 3.8.3-9
- key_update: rework the rekeying logic (RHEL-107499)
-
Fri Jul 18 2025 Daiki Ueno <dueno@redhat.com> - 3.8.3-8
- Add missing changelog entry
-
Fri Jul 18 2025 Daiki Ueno <dueno@redhat.com> - 3.8.3-7
- Fix CVE-2025-32988, CVE-2025-32989, CVE-2025-32990, and CVE-2025-6395
-
Mon Feb 17 2025 Daiki Ueno <dueno@redhat.com> - 3.8.3-6
- Bump nettle dependency to 3.10.1 (RHEL-52740)
-
Wed Feb 12 2025 Alexander Sosedkin <asosedki@redhat.com> - 3.8.3-5
- Backport the fix for CVE-2024-12243 (RHEL-78580)
-
Fri Apr 05 2024 Daiki Ueno <dueno@redhat.com> - 3.8.3-4
- Bump release to ensure el9 package is greater than el9_* packages
-
Fri Mar 22 2024 Daiki Ueno <dueno@redhat.com> - 3.8.3-3
- Bump release to ensure el9 package is greater than el9_* packages