ELSA-2024-12337

ELSA-2024-12337 - nss security update

Type:SECURITY
Impact:MODERATE
Release Date:2024-04-19

Description


[3.90.0-6_fips]
- Add FIPS package change: add fips suffix to Release and
set Epoch to 10 [Orabug: 35862190]
- Update FIPS module name for Oracle Linux [Orabug: 35862190]

[3.90.0-6]
- Fix ecc DER wrapping.

[3.90.0-5]
- Pick up validated constant time implementations of p256, p384, and p521
from upsream
- More Fips indicator changes

[3.90.0-4]
- FIPS review changes
- add PORT_SafeZero to avoid compiler optimizing a way zeroing memory.
- update the indicators for this release
- allow hashing of longer than int32 values in a single PKCS #11 call.

[3.90.0-3.3]
- Fix expired certs in tests
- Fix CVE-2023-5388


Related CVEs


CVE-2023-6135

Updated Packages


Release/ArchitectureFilenamesha256Superseded By AdvisoryChannel Label
Oracle Linux 9 (aarch64) nss-3.90.0-6.el9_3_fips.src.rpm8051764ad1d7e0563e7920d6529a1b95f894b2bd178f67e90ab7e81bec56f931-ol9_aarch64_u3_security_validation
nspr-4.35.0-6.el9_3_fips.aarch64.rpmd0086177f302c1a1ab6e3979c79f7c47c2859d0d8d9b5ad6dc6252bd3d5091fb-ol9_aarch64_u3_security_validation
nspr-devel-4.35.0-6.el9_3_fips.aarch64.rpmcfc691c9decdbb52f64bf3c3f31bf2761750987b588ace477789cd0e730c5b08-ol9_aarch64_u3_security_validation
nss-3.90.0-6.el9_3_fips.aarch64.rpmd3a4a901c9bd2beae01c91ac969607ade91a3c62a5449e94b333f9111a42f59a-ol9_aarch64_u3_security_validation
nss-devel-3.90.0-6.el9_3_fips.aarch64.rpmcd8e8d0623b3b182ea9bf59ed5c446bee7a9ab1478a0d9f25bea5fced4aa229c-ol9_aarch64_u3_security_validation
nss-pkcs11-devel-3.90.0-6.el9_3_fips.aarch64.rpm166784fa3082183a9a7d9e28aba4e4fb7fcc8117caff17253968abbcd4cf0128-ol9_aarch64_u3_security_validation
nss-softokn-3.90.0-6.el9_3_fips.aarch64.rpm67f3506044931ef68164997367fc1a21400c32a32532c2ffd0d8f7d0c7e785b8-ol9_aarch64_u3_security_validation
nss-softokn-devel-3.90.0-6.el9_3_fips.aarch64.rpm6bf3390fd4477749ccc2d33297c23d7dd3464387f185c3141931ccdd095e2ec9-ol9_aarch64_u3_security_validation
nss-softokn-freebl-3.90.0-6.el9_3_fips.aarch64.rpm244255aa8378d4f4e968b1a56b45e56af380f835a28252146c3d048cc70ca12b-ol9_aarch64_u3_security_validation
nss-softokn-freebl-devel-3.90.0-6.el9_3_fips.aarch64.rpm3e36710b7d9d6a987e6d8243530f908bad011ca1b320937979c0d043b0c5deb1-ol9_aarch64_u3_security_validation
nss-sysinit-3.90.0-6.el9_3_fips.aarch64.rpm49b713844617c1b4f0ca3423413451c096f17a1064a4574ada0a0850cb9e5bec-ol9_aarch64_u3_security_validation
nss-tools-3.90.0-6.el9_3_fips.aarch64.rpm7e5b5f51e6e1bcd785172993168e0c13119940416860e195eddc1ab9808e6d8c-ol9_aarch64_u3_security_validation
nss-util-3.90.0-6.el9_3_fips.aarch64.rpmd9ac6678d069cff60910bcc19ff6f5867638f97c6db8d1bd4046be06d7427169-ol9_aarch64_u3_security_validation
nss-util-devel-3.90.0-6.el9_3_fips.aarch64.rpma3305a132509d002410dd910e346a1e75e82cf46425fc2b666f9fc690e545a38-ol9_aarch64_u3_security_validation
Oracle Linux 9 (x86_64) nss-3.90.0-6.el9_3_fips.src.rpm8051764ad1d7e0563e7920d6529a1b95f894b2bd178f67e90ab7e81bec56f931-ol9_x86_64_u3_security_validation
nspr-4.35.0-6.el9_3_fips.i686.rpm70444c044430dd02789c36e5077eeb6aeeae88dcda1a6e4d2deb006b47923993-ol9_x86_64_u3_security_validation
nspr-4.35.0-6.el9_3_fips.x86_64.rpm07dbf7e12341630956221b5c81654723e6175530b58cfbcf9e0c0f8279e68d32-ol9_x86_64_u3_security_validation
nspr-devel-4.35.0-6.el9_3_fips.i686.rpmf8a5d069d685165449e2205e0a14df7615028d9dc1064d6f8fbb1387e2e128ae-ol9_x86_64_u3_security_validation
nspr-devel-4.35.0-6.el9_3_fips.x86_64.rpm64fddaaaaaee08b7d87a0eb444cddb20c88f9c9623b11e8625184fdf4d62f945-ol9_x86_64_u3_security_validation
nss-3.90.0-6.el9_3_fips.i686.rpm61232fb4a064eb9c89af921311a1cf14197e802bad1ec31dfddb83f85bd0c668-ol9_x86_64_u3_security_validation
nss-3.90.0-6.el9_3_fips.x86_64.rpm39defab80d14283242006d5197d4a4efb64b093923a7a6e667c8a8b68cc980b3-ol9_x86_64_u3_security_validation
nss-devel-3.90.0-6.el9_3_fips.i686.rpm6f5a2c0dce7e33032409ed136393d0739bba5077e81d4b221854a3328101f439-ol9_x86_64_u3_security_validation
nss-devel-3.90.0-6.el9_3_fips.x86_64.rpm1a0d7f9a34c11add455b82cb4edc233760433b36e0d372a46638bc7e571eb73b-ol9_x86_64_u3_security_validation
nss-pkcs11-devel-3.90.0-6.el9_3_fips.x86_64.rpm108315173eeefc894ae021c369c7adc4f95633e15573e6c1b94e646f84671597-ol9_x86_64_u3_security_validation
nss-softokn-3.90.0-6.el9_3_fips.i686.rpm8d0ff51f73c7b9ec44714a1ec45f077ae89358ae1a25efb001e8f019d114f1f9-ol9_x86_64_u3_security_validation
nss-softokn-3.90.0-6.el9_3_fips.x86_64.rpm51714f1b78333d52f3243b4daf1fe9b12da9978bf55dca459b587ecb34b56538-ol9_x86_64_u3_security_validation
nss-softokn-devel-3.90.0-6.el9_3_fips.i686.rpm4a78ad56080800e22e99df4364c40cea48bc5e9759da3ce07400c4e2ef9437d0-ol9_x86_64_u3_security_validation
nss-softokn-devel-3.90.0-6.el9_3_fips.x86_64.rpm17605d16b0920b7361eb607bf8acf3c648247a6721384718f966d5e8f8db9c66-ol9_x86_64_u3_security_validation
nss-softokn-freebl-3.90.0-6.el9_3_fips.i686.rpmaab27c3297da3e02bb4ece30e0c973315c5f323a1a95c08b592e8ad39079f21e-ol9_x86_64_u3_security_validation
nss-softokn-freebl-3.90.0-6.el9_3_fips.x86_64.rpm1bd6d52285187cee4679830c67376fa863e68ad42a58ae6c7dcca0cffa6a0ebc-ol9_x86_64_u3_security_validation
nss-softokn-freebl-devel-3.90.0-6.el9_3_fips.i686.rpmff0a7ecfb85053b09ce2202dadf2750e8daea6174dd575ec6c68ffbab5785735-ol9_x86_64_u3_security_validation
nss-softokn-freebl-devel-3.90.0-6.el9_3_fips.x86_64.rpm7759df9dd02110955ac6557fe6be8faf159906f07ac298d8103c05b8295e5e71-ol9_x86_64_u3_security_validation
nss-sysinit-3.90.0-6.el9_3_fips.x86_64.rpmdf58b4fe11fce443982fab9ee98d5db1b6deeb83a4797fc3ff92eb4b2e7f58e9-ol9_x86_64_u3_security_validation
nss-tools-3.90.0-6.el9_3_fips.x86_64.rpm4c6ee35363f433beef9ad7d20470c3413a3f35f0c56f08eeefbe7fbbe7886fab-ol9_x86_64_u3_security_validation
nss-util-3.90.0-6.el9_3_fips.i686.rpmf6076b7097ce35e67d84324b1d453fff699774b096283a34fa86fc1dd6630fb1-ol9_x86_64_u3_security_validation
nss-util-3.90.0-6.el9_3_fips.x86_64.rpm571d5f98bde2575dbc550452430fa1af372ad1c67526dc80d4cb3ae2579d13a4-ol9_x86_64_u3_security_validation
nss-util-devel-3.90.0-6.el9_3_fips.i686.rpmb1b970da6acbec56a425be16ff34ce28196c216c05e34cad746db78e05f4036d-ol9_x86_64_u3_security_validation
nss-util-devel-3.90.0-6.el9_3_fips.x86_64.rpm6ab4e11212404bc6103936b1f21c45ff85eedbfd0c71c6ef9cc0deb0dc1b0417-ol9_x86_64_u3_security_validation



This page is generated automatically and has not been checked for errors or omissions. For clarification or corrections please contact the Oracle Linux ULN team

software.hardware.complete