ELSA-2024-12337

ELSA-2024-12337 - nss security update

Type:SECURITY
Severity:MODERATE
Release Date:2024-04-19

Description


[3.90.0-6_fips]
- Add FIPS package change: add fips suffix to Release and
set Epoch to 10 [Orabug: 35862190]
- Update FIPS module name for Oracle Linux [Orabug: 35862190]

[3.90.0-6]
- Fix ecc DER wrapping.

[3.90.0-5]
- Pick up validated constant time implementations of p256, p384, and p521
from upsream
- More Fips indicator changes

[3.90.0-4]
- FIPS review changes
- add PORT_SafeZero to avoid compiler optimizing a way zeroing memory.
- update the indicators for this release
- allow hashing of longer than int32 values in a single PKCS #11 call.

[3.90.0-3.3]
- Fix expired certs in tests
- Fix CVE-2023-5388


Related CVEs


CVE-2023-6135

Updated Packages


Release/ArchitectureFilenameMD5sumSuperseded By AdvisoryChannel Label
Oracle Linux 9 (aarch64) nss-3.90.0-6.el9_3_fips.src.rpmacf3db74e96cd97995e7e65eadfd7f43-ol9_aarch64_u3_security_validation
nspr-4.35.0-6.el9_3_fips.aarch64.rpmd034e3616d66ad71121e9634a2da9e70-ol9_aarch64_u3_security_validation
nspr-devel-4.35.0-6.el9_3_fips.aarch64.rpm43c7347eeb7b5735589f703515add1c1-ol9_aarch64_u3_security_validation
nss-3.90.0-6.el9_3_fips.aarch64.rpm9616ffae34faadd33a375e34d588dff9-ol9_aarch64_u3_security_validation
nss-devel-3.90.0-6.el9_3_fips.aarch64.rpm7e83c8878f3f3402bea0ffd016da7693-ol9_aarch64_u3_security_validation
nss-pkcs11-devel-3.90.0-6.el9_3_fips.aarch64.rpm3be7fde65951368a87338131aa87b3d7-ol9_aarch64_u3_security_validation
nss-softokn-3.90.0-6.el9_3_fips.aarch64.rpma94f28930faa3b7495d83084b33f8f06-ol9_aarch64_u3_security_validation
nss-softokn-devel-3.90.0-6.el9_3_fips.aarch64.rpma92f23fab53996f0b3dc3855191b1657-ol9_aarch64_u3_security_validation
nss-softokn-freebl-3.90.0-6.el9_3_fips.aarch64.rpm21862e22fd5e88fa00c71543d668b244-ol9_aarch64_u3_security_validation
nss-softokn-freebl-devel-3.90.0-6.el9_3_fips.aarch64.rpm252f7db79b407e831d50aef61008560e-ol9_aarch64_u3_security_validation
nss-sysinit-3.90.0-6.el9_3_fips.aarch64.rpm234112f04ccf632973dc0b97676ec023-ol9_aarch64_u3_security_validation
nss-tools-3.90.0-6.el9_3_fips.aarch64.rpm2476197dbe572725908790f18cbdd8b6-ol9_aarch64_u3_security_validation
nss-util-3.90.0-6.el9_3_fips.aarch64.rpm99c06f4a3e8454b1d72a4ccfc36e4335-ol9_aarch64_u3_security_validation
nss-util-devel-3.90.0-6.el9_3_fips.aarch64.rpmd3ad232ae13322afadc3c87672b49c05-ol9_aarch64_u3_security_validation
Oracle Linux 9 (x86_64) nss-3.90.0-6.el9_3_fips.src.rpmacf3db74e96cd97995e7e65eadfd7f43-ol9_x86_64_u3_security_validation
nspr-4.35.0-6.el9_3_fips.i686.rpme7e75f20ebfab1be78e6a53877224ce1-ol9_x86_64_u3_security_validation
nspr-4.35.0-6.el9_3_fips.x86_64.rpm56a20197f5c19933e000d2e3c25a1acb-ol9_x86_64_u3_security_validation
nspr-devel-4.35.0-6.el9_3_fips.i686.rpm6eaae2f09c4348efe3aee0060c2c79be-ol9_x86_64_u3_security_validation
nspr-devel-4.35.0-6.el9_3_fips.x86_64.rpm4ec1ea0b0b1f1a5a42f814127808e901-ol9_x86_64_u3_security_validation
nss-3.90.0-6.el9_3_fips.i686.rpm6cedc3767dc50f5a4014776163c84b5b-ol9_x86_64_u3_security_validation
nss-3.90.0-6.el9_3_fips.x86_64.rpm2eef6cd9b55796f51e8f03b4656c1eed-ol9_x86_64_u3_security_validation
nss-devel-3.90.0-6.el9_3_fips.i686.rpmdb2c4fac788aeecad4f98fd91cdf9dfa-ol9_x86_64_u3_security_validation
nss-devel-3.90.0-6.el9_3_fips.x86_64.rpm221c2ef353ae9135788cc8dc8e7b942a-ol9_x86_64_u3_security_validation
nss-pkcs11-devel-3.90.0-6.el9_3_fips.x86_64.rpmad6fe6e841e3d9e164cdb787d18128e1-ol9_x86_64_u3_security_validation
nss-softokn-3.90.0-6.el9_3_fips.i686.rpm1ed0c0561a6d40d8b7229954c1d071b7-ol9_x86_64_u3_security_validation
nss-softokn-3.90.0-6.el9_3_fips.x86_64.rpm4aef5e9b26abfb5698bdad89a8dc16cc-ol9_x86_64_u3_security_validation
nss-softokn-devel-3.90.0-6.el9_3_fips.i686.rpmb3fec576906b0d029747dcb6df246a72-ol9_x86_64_u3_security_validation
nss-softokn-devel-3.90.0-6.el9_3_fips.x86_64.rpm478191823a48a15f6ae315c48b2fe3a4-ol9_x86_64_u3_security_validation
nss-softokn-freebl-3.90.0-6.el9_3_fips.i686.rpm0410900fd7025e66700dce7d3354f903-ol9_x86_64_u3_security_validation
nss-softokn-freebl-3.90.0-6.el9_3_fips.x86_64.rpm6b82ffc8fc0a5c5615beea4bf56b51de-ol9_x86_64_u3_security_validation
nss-softokn-freebl-devel-3.90.0-6.el9_3_fips.i686.rpmc038f863a31ad7da561c839daab14e48-ol9_x86_64_u3_security_validation
nss-softokn-freebl-devel-3.90.0-6.el9_3_fips.x86_64.rpmcc9f1b0ad0abbeddd5eac6abff0ca4e7-ol9_x86_64_u3_security_validation
nss-sysinit-3.90.0-6.el9_3_fips.x86_64.rpm7781a613d0513787d4a658785e3bae8c-ol9_x86_64_u3_security_validation
nss-tools-3.90.0-6.el9_3_fips.x86_64.rpma1c0a7026d6be7b940769f120460acbb-ol9_x86_64_u3_security_validation
nss-util-3.90.0-6.el9_3_fips.i686.rpma1e99fda4a461a4793135dacf9683db3-ol9_x86_64_u3_security_validation
nss-util-3.90.0-6.el9_3_fips.x86_64.rpmd642b697cd4282c82e546e13fd120a52-ol9_x86_64_u3_security_validation
nss-util-devel-3.90.0-6.el9_3_fips.i686.rpm527e78a269ad37de2797d48fc3c5301a-ol9_x86_64_u3_security_validation
nss-util-devel-3.90.0-6.el9_3_fips.x86_64.rpmd52d2a4a2d77df513429f1ef12cc8bd7-ol9_x86_64_u3_security_validation



This page is generated automatically and has not been checked for errors or omissions. For clarification or corrections please contact the Oracle Linux ULN team

software.hardware.complete