| nss-pkcs11-devel-3.90.0-2.el7_9.i686
              [117 KiB] | Changelog
              by Bob Relyea (2023-08-07): - fix EMS bug
- disbale ECH
- fix gtests in spec file
- restore missing test case | 
            | nss-pkcs11-devel-3.90.0-2.el7_9.x86_64
              [117 KiB] | Changelog
              by Bob Relyea (2023-08-07): - fix EMS bug
- disbale ECH
- fix gtests in spec file
- restore missing test case | 
            | nss-pkcs11-devel-3.79.0-5.el7_9.x86_64
              [117 KiB] | Changelog
              by Bob Relyea (2023-03-08): - fix CVE-2023-0767 | 
            | nss-pkcs11-devel-3.79.0-5.el7_9.i686
              [117 KiB] | Changelog
              by Bob Relyea (2023-03-08): - fix CVE-2023-0767 | 
            | nss-pkcs11-devel-3.79.0-4.el7_9.i686
              [117 KiB] | Changelog
              by Bob Relyea (2022-07-21): - fix regression for pkcs12. | 
            | nss-pkcs11-devel-3.79.0-4.el7_9.x86_64
              [117 KiB] | Changelog
              by Bob Relyea (2022-07-21): - fix regression for pkcs12. | 
            | nss-pkcs11-devel-3.67.0-4.el7_9.i686
              [116 KiB] | Changelog
              by Bob Relyea (2021-11-18): - fix CVE-2021-43527 | 
            | nss-pkcs11-devel-3.67.0-4.el7_9.x86_64
              [116 KiB] | Changelog
              by Bob Relyea (2021-11-18): - fix CVE-2021-43527 | 
            | nss-pkcs11-devel-3.67.0-3.el7_9.i686
              [116 KiB] | Changelog
              by Bob Relyea (2021-09-12): - revert sql default language in man pages
- fix SEC_PKCS12EnableCipher so python-nss tests will still work. | 
            | nss-pkcs11-devel-3.67.0-3.el7_9.x86_64
              [116 KiB] | Changelog
              by Bob Relyea (2021-09-12): - revert sql default language in man pages
- fix SEC_PKCS12EnableCipher so python-nss tests will still work. | 
            | nss-pkcs11-devel-3.53.1-7.el7_9.x86_64
              [116 KiB] | Changelog
              by Bob Relyea (2021-03-03): - Fix HSM load failure because of CKO_Profile
- Allow builds with strict-proto | 
            | nss-pkcs11-devel-3.53.1-7.el7_9.i686
              [116 KiB] | Changelog
              by Bob Relyea (2021-03-03): - Fix HSM load failure because of CKO_Profile
- Allow builds with strict-proto | 
            | nss-pkcs11-devel-3.53.1-3.el7_9.x86_64
              [115 KiB] | Changelog
              by Daiki Ueno (2020-08-01): - Disable dh timing test because it's unreliable on s390 (from Bob Relyea)
- Explicitly enable upgradedb/sharedb test cycles | 
            | nss-pkcs11-devel-3.53.1-3.el7_9.i686
              [115 KiB] | Changelog
              by Daiki Ueno (2020-08-01): - Disable dh timing test because it's unreliable on s390 (from Bob Relyea)
- Explicitly enable upgradedb/sharedb test cycles | 
            | nss-pkcs11-devel-3.44.0-7.el7_7.i686
              [115 KiB] | Changelog
              by Bob Relyea (2019-12-06): - Increase timeout on ssl_gtest so that slow platforms can complete when
   running on a busy system. | 
            | nss-pkcs11-devel-3.44.0-7.el7_7.x86_64
              [115 KiB] | Changelog
              by Bob Relyea (2019-12-06): - Increase timeout on ssl_gtest so that slow platforms can complete when
   running on a busy system. | 
            | nss-pkcs11-devel-3.44.0-4.el7.x86_64
              [114 KiB] | Changelog
              by Bob Relyea (2019-06-05): - Fix certutil man page
- Fix extracting a public key from a private key for dh, ec, and dsa | 
            | nss-pkcs11-devel-3.44.0-4.el7.i686
              [114 KiB] | Changelog
              by Bob Relyea (2019-06-05): - Fix certutil man page
- Fix extracting a public key from a private key for dh, ec, and dsa | 
            | nss-pkcs11-devel-3.36.0-7.el7_5.x86_64
              [112 KiB] | Changelog
              by Daiki Ueno (2018-08-29): - Backport upstream fix for CVE-2018-12384
- Remove nss-lockcert-api-change.patch, which turned out to be a
  mistake (the symbol was not exported from libnss) | 
            | nss-pkcs11-devel-3.36.0-7.el7_5.i686
              [112 KiB] | Changelog
              by Daiki Ueno (2018-08-29): - Backport upstream fix for CVE-2018-12384
- Remove nss-lockcert-api-change.patch, which turned out to be a
  mistake (the symbol was not exported from libnss) | 
            | nss-pkcs11-devel-3.36.0-5.el7_5.i686
              [112 KiB] | Changelog
              by Daiki Ueno (2018-04-18): - Restore CERT_LockCertTrust and CERT_UnlockCertTrust back in cert.h | 
            | nss-pkcs11-devel-3.36.0-5.el7_5.x86_64
              [112 KiB] | Changelog
              by Daiki Ueno (2018-04-18): - Restore CERT_LockCertTrust and CERT_UnlockCertTrust back in cert.h | 
            | nss-pkcs11-devel-3.34.0-4.el7.x86_64
              [111 KiB] | Changelog
              by Daiki Ueno (2018-01-15): - Re-enable nss-is-token-present-race.patch | 
            | nss-pkcs11-devel-3.34.0-4.el7.i686
              [111 KiB] | Changelog
              by Daiki Ueno (2018-01-15): - Re-enable nss-is-token-present-race.patch | 
            | nss-pkcs11-devel-3.28.4-12.el7_4.x86_64
              [115 KiB] | Changelog
              by Daiki Ueno (2017-08-04): - Backport patch to simplify transcript calculation for CertificateVerify | 
            | nss-pkcs11-devel-3.28.4-12.el7_4.i686
              [116 KiB] | Changelog
              by Daiki Ueno (2017-08-04): - Backport patch to simplify transcript calculation for CertificateVerify | 
            | nss-pkcs11-devel-3.28.4-8.el7.x86_64
              [115 KiB] | Changelog
              by Kai Engert (2017-05-05): - Include CKBI 2.14 and updated CA constraints from NSS 3.28.5 | 
            | nss-pkcs11-devel-3.28.4-8.el7.i686
              [116 KiB] | Changelog
              by Kai Engert (2017-05-05): - Include CKBI 2.14 and updated CA constraints from NSS 3.28.5 | 
            | nss-pkcs11-devel-3.28.4-1.2.el7_3.x86_64
              [114 KiB] | Changelog
              by Kai Engert (2017-05-16): - Include CKBI 2.14 and updated CA constraints from NSS 3.28.5 | 
            | nss-pkcs11-devel-3.28.4-1.2.el7_3.i686
              [115 KiB] | Changelog
              by Kai Engert (2017-05-16): - Include CKBI 2.14 and updated CA constraints from NSS 3.28.5 | 
            | nss-pkcs11-devel-3.28.4-1.0.el7_3.x86_64
              [114 KiB] | Changelog
              by Daiki Ueno (2017-04-07): - Rebase to NSS 3.28.4 | 
            | nss-pkcs11-devel-3.28.4-1.0.el7_3.i686
              [115 KiB] | Changelog
              by Daiki Ueno (2017-04-07): - Rebase to NSS 3.28.4 | 
            | nss-pkcs11-devel-3.28.2-1.6.el7_3.i686
              [114 KiB] | Changelog
              by Daiki Ueno (2017-02-20): - Restore ssl-server-min-key-sizes.patch
- Disable TLS_ECDHE_{RSA,ECDSA}_WITH_AES_128_CBC_SHA256 by default
- Enable 4 AES_256_GCM_SHA384 ciphersuites, enabled by the downstream
  patch in the previous release
- Fix crash with tstclnt -W | 
            | nss-pkcs11-devel-3.28.2-1.6.el7_3.x86_64
              [114 KiB] | Changelog
              by Daiki Ueno (2017-02-20): - Restore ssl-server-min-key-sizes.patch
- Disable TLS_ECDHE_{RSA,ECDSA}_WITH_AES_128_CBC_SHA256 by default
- Enable 4 AES_256_GCM_SHA384 ciphersuites, enabled by the downstream
  patch in the previous release
- Fix crash with tstclnt -W | 
            | nss-pkcs11-devel-3.21.3-2.el7_3.i686
              [112 KiB] | Changelog
              by Kai Engert (2016-11-08): - Mozilla #1314604 / Red Hat CVE-2016-8635 | 
            | nss-pkcs11-devel-3.21.3-2.el7_3.x86_64
              [111 KiB] | Changelog
              by Kai Engert (2016-11-08): - Mozilla #1314604 / Red Hat CVE-2016-8635 | 
            | nss-pkcs11-devel-3.21.0-9.el7_2.i686
              [111 KiB] | Changelog
              by Kai Engert (2016-04-15): - Rebuild to require the latest nss-util build and nss-softokn build. | 
            | nss-pkcs11-devel-3.21.0-9.el7_2.x86_64
              [110 KiB] | Changelog
              by Kai Engert (2016-04-15): - Rebuild to require the latest nss-util build and nss-softokn build. | 
            | nss-pkcs11-devel-3.19.1-19.el7_2.i686
              [110 KiB] | Changelog
              by Elio Maldonado (2015-12-15): - Prevent TLS 1.2 Transcript Collision attacks against MD5 in key exchange protocol
- Resolves: Bug 1289883 | 
            | nss-pkcs11-devel-3.19.1-19.el7_2.x86_64
              [109 KiB] | Changelog
              by Elio Maldonado (2015-12-15): - Prevent TLS 1.2 Transcript Collision attacks against MD5 in key exchange protocol
- Resolves: Bug 1289883 | 
            | nss-pkcs11-devel-3.19.1-7.el7_1.2.i686
              [108 KiB] | Changelog
              by Scientific Linux Auto Patch Process (2015-11-04): - Eliminated rpmbuild "bogus date" error due to inconsistent weekday,
  by assuming the date is correct and changing the weekday. | 
            | nss-pkcs11-devel-3.19.1-7.el7_1.2.x86_64
              [107 KiB] | Changelog
              by Scientific Linux Auto Patch Process (2015-11-04): - Eliminated rpmbuild "bogus date" error due to inconsistent weekday,
  by assuming the date is correct and changing the weekday. | 
            | nss-pkcs11-devel-3.19.1-3.el7_1.x86_64
              [106 KiB] | Changelog
              by Scientific Linux Auto Patch Process (2015-06-25): - Eliminated rpmbuild "bogus date" error due to inconsistent weekday,
  by assuming the date is correct and changing the weekday. | 
            | nss-pkcs11-devel-3.19.1-3.el7_1.i686
              [107 KiB] | Changelog
              by Scientific Linux Auto Patch Process (2015-06-25): - Eliminated rpmbuild "bogus date" error due to inconsistent weekday,
  by assuming the date is correct and changing the weekday. | 
            | nss-pkcs11-devel-3.18.0-2.2.el7_1.x86_64
              [106 KiB] | Changelog
              by Kai Engert (2015-04-28): - On RHEL 7.1 keep the TLS version defaults unchanged. | 
            | nss-pkcs11-devel-3.18.0-2.2.el7_1.i686
              [107 KiB] | Changelog
              by Kai Engert (2015-04-28): - On RHEL 7.1 keep the TLS version defaults unchanged. | 
            | nss-pkcs11-devel-3.16.2.3-2.el7_0.x86_64
              [105 KiB] | Changelog
              by Elio Maldonado (2014-11-25): - Restore patch for certutil man page
- supply missing options descriptions
- Resolves: Bug 1165525 - Upgrade to NSS 3.16.2.3 for Firefox 31.3 | 
            | nss-pkcs11-devel-3.16.2.3-2.el7_0.i686
              [106 KiB] | Changelog
              by Elio Maldonado (2014-11-25): - Restore patch for certutil man page
- supply missing options descriptions
- Resolves: Bug 1165525 - Upgrade to NSS 3.16.2.3 for Firefox 31.3 | 
            | nss-pkcs11-devel-3.16.2-7.el7_0.i686
              [105 KiB] | Changelog
              by Elio Maldonado (2014-09-24): - Resolves: Bug 1145433 - CVE-2014-1568 | 
            | nss-pkcs11-devel-3.16.2-7.el7_0.x86_64
              [104 KiB] | Changelog
              by Elio Maldonado (2014-09-24): - Resolves: Bug 1145433 - CVE-2014-1568 | 
            | nss-pkcs11-devel-3.16.2-2.el7_0.x86_64
              [104 KiB] | Changelog
              by Elio Maldonado (2014-08-06): - Restore missing options descriptions fix for certutil manpage
- Document certutil options --dump-ext-val, --extGeneric, and --extSAN
- Related: Bug 1124659 - Rebase RHEL 7 to at least NSS 3.16.1 | 
            | nss-pkcs11-devel-3.16.2-2.el7_0.i686
              [105 KiB] | Changelog
              by Elio Maldonado (2014-08-06): - Restore missing options descriptions fix for certutil manpage
- Document certutil options --dump-ext-val, --extGeneric, and --extSAN
- Related: Bug 1124659 - Rebase RHEL 7 to at least NSS 3.16.1 | 
            | nss-pkcs11-devel-3.15.4-7.el7_0.x86_64
              [97 KiB] | Changelog
              by Elio Maldonado (2014-07-04): - Fix race-condition in certificate validation
- Resolves: Bug 1116201 | 
            | nss-pkcs11-devel-3.15.4-7.el7_0.i686
              [99 KiB] | Changelog
              by Elio Maldonado (2014-07-04): - Fix race-condition in certificate validation
- Resolves: Bug 1116201 |