ELSA-2021-0538

ELSA-2021-0538 - nss security and bug fix update

Type:SECURITY
Severity:MODERATE
Release Date:2021-02-17

Description


[3.53.1-17]
- Fix various corner cases with ike v1 app b support.

[3.53.1-16]
- Fix the following CVE
- CVE-2020-12403 chacha-poly issues
- CVE-2020-12400 constant time ECC.
- CVE-2020-6829 constant time ECC.

[3.53.1-15]
- Revert some policy changes the generate ABI runtime issues.

[3.53.1-14]
- Add support for enable/disable in policy. Now if your policy
file has disallow=x enable=y it will act just like our other
libraries.

[3.53.1-13]
- Add OAEP interface so applications can wrap keys with RSA-OAEP
rather than RSA-PKCS-1.

[3.53.1-12]
- fips need to reject small primes even if they are approved
- code to autodetect whether or not to use the cache needs to do so
in a way that doesn't mess with filesystem negative file caching.
- add kdf selftests


Related CVEs


CVE-2020-12403
CVE-2020-6829
CVE-2020-12400

Updated Packages


Release/ArchitectureFilenameMD5sumSuperseded By Advisory
Oracle Linux 8 (aarch64) nss-3.53.1-17.el8_3.src.rpm8c04824c501d2e3caece712eba91d2c8-
nss-3.53.1-17.el8_3.aarch64.rpm26099efa3edd6fbaac96e3ab5c8d8ce2-
nss-devel-3.53.1-17.el8_3.aarch64.rpm639caf9d6c47dab2a6773ee6a13516c6-
nss-softokn-3.53.1-17.el8_3.aarch64.rpm3c7bf6130185e555597fe7d7c35abb6b-
nss-softokn-devel-3.53.1-17.el8_3.aarch64.rpm85cf873004aebb77902d01709fc08ae6-
nss-softokn-freebl-3.53.1-17.el8_3.aarch64.rpm7e06e17dbfa981e2753b11b3dda237dc-
nss-softokn-freebl-devel-3.53.1-17.el8_3.aarch64.rpmd976e2ac96c8eb6798e158186f8c1293-
nss-sysinit-3.53.1-17.el8_3.aarch64.rpm9cd39f3d3911ce9eadf6d216cf9dcf76-
nss-tools-3.53.1-17.el8_3.aarch64.rpmb5d2021b12bf21b458065bcfab37019b-
nss-util-3.53.1-17.el8_3.aarch64.rpmafd600e0a66aa9bf4a3f1f832d3afd7a-
nss-util-devel-3.53.1-17.el8_3.aarch64.rpmb5a017ea0cc3ecfaa08c01543253fe37-
Oracle Linux 8 (x86_64) nss-3.53.1-17.el8_3.src.rpm8c04824c501d2e3caece712eba91d2c8-
nss-3.53.1-17.el8_3.i686.rpm23df6e56d02d9553293abd6594395408-
nss-3.53.1-17.el8_3.x86_64.rpmd17dc976e9261954ea2623dec33c893d-
nss-devel-3.53.1-17.el8_3.i686.rpm510bd5cdb69b77ad5e626e397eedb388-
nss-devel-3.53.1-17.el8_3.x86_64.rpmcb4a39e604439d00aa7491c8ff4f360d-
nss-softokn-3.53.1-17.el8_3.i686.rpmb3033820b1f8cdb8a01e27403d3bcfc4-
nss-softokn-3.53.1-17.el8_3.x86_64.rpm8a38cc2ee1cc2ce4d7ab0c4fc37fd925-
nss-softokn-devel-3.53.1-17.el8_3.i686.rpm388fdcf135f960cb31f3ff1948881c59-
nss-softokn-devel-3.53.1-17.el8_3.x86_64.rpm4df33430df02549653c91de14f422f5f-
nss-softokn-freebl-3.53.1-17.el8_3.i686.rpm5640bc72b727a48e877051b81e28c0ba-
nss-softokn-freebl-3.53.1-17.el8_3.x86_64.rpmc5a4e30d46919d28b39d51c919849ea2-
nss-softokn-freebl-devel-3.53.1-17.el8_3.i686.rpma87aa05293c518fdcf317cf1e80c28a1-
nss-softokn-freebl-devel-3.53.1-17.el8_3.x86_64.rpm37cc36e83ffa67394debe62988492b82-
nss-sysinit-3.53.1-17.el8_3.x86_64.rpmbc0b4e931b72e3f22360797923810788-
nss-tools-3.53.1-17.el8_3.x86_64.rpm50d4ea4abf73c00bd9ca820cf475a66f-
nss-util-3.53.1-17.el8_3.i686.rpmd8e1e1305ed304629225c65c25658868-
nss-util-3.53.1-17.el8_3.x86_64.rpm26fde50e03555a8ae9b38d659c6bd696-
nss-util-devel-3.53.1-17.el8_3.i686.rpm483726572d5c81bc929faacd1b78a454-
nss-util-devel-3.53.1-17.el8_3.x86_64.rpm25dfa3d9cde4a6a3711b68870283a5df-



This page is generated automatically and has not been checked for errors or omissions. For clarification or corrections please contact the Oracle Linux ULN team

software.hardware.complete