From ac282b5848d90db100955fee6ce47745f67e0f40 Mon Sep 17 00:00:00 2001 From: Daniel Baumann Date: Fri, 19 Apr 2024 04:30:12 +0200 Subject: Merging upstream version 115.9.0esr. Signed-off-by: Daniel Baumann --- security/nss/doc/rst/releases/nss_3_90_2.rst | 56 ++++++++++++++++++++++++++++ 1 file changed, 56 insertions(+) create mode 100644 security/nss/doc/rst/releases/nss_3_90_2.rst (limited to 'security/nss/doc/rst') diff --git a/security/nss/doc/rst/releases/nss_3_90_2.rst b/security/nss/doc/rst/releases/nss_3_90_2.rst new file mode 100644 index 0000000000..6210183540 --- /dev/null +++ b/security/nss/doc/rst/releases/nss_3_90_2.rst @@ -0,0 +1,56 @@ +.. _mozilla_projects_nss_nss_3_90_2_release_notes: + +NSS 3.90.2 release notes +======================== + +`Introduction <#introduction>`__ +-------------------------------- + +.. container:: + + Network Security Services (NSS) 3.90.2 was released on *15th February 2024**. + + +`Distribution Information <#distribution_information>`__ +-------------------------------------------------------- + +.. container:: + + The HG tag is NSS_3_90_2_RTM. NSS 3.90.2 requires NSPR 4.35 or newer. + + NSS 3.90.2 source distributions are available on ftp.mozilla.org for secure HTTPS download: + + - Source tarballs: + https://ftp.mozilla.org/pub/mozilla.org/security/nss/releases/NSS_3_90_2_RTM/src/ + + Other releases are available :ref:`mozilla_projects_nss_releases`. + +.. _changes_in_nss_3.90.2: + +`Changes in NSS 3.90.2 <#changes_in_nss_3.90.2>`__ +-------------------------------------------------- + +.. container:: + + - Bug 1780432 - (CVE-2023-5388) Timing attack against RSA decryption in TLS. + - Bug 1867408 - add a defensive check for large ssl_DefSend return values. + +`Compatibility <#compatibility>`__ +---------------------------------- + +.. container:: + + NSS 3.90.2 shared libraries are backwards-compatible with all older NSS 3.x shared + libraries. A program linked with older NSS 3.x shared libraries will work with + this new version of the shared libraries without recompiling or + relinking. Furthermore, applications that restrict their use of NSS APIs to the + functions listed in NSS Public Functions will remain compatible with future + versions of the NSS shared libraries. + +`Feedback <#feedback>`__ +------------------------ + +.. container:: + + Bugs discovered should be reported by filing a bug report on + `bugzilla.mozilla.org `__ (product NSS). -- cgit v1.2.3