diff options
author | Armin Kuster <akuster808@gmail.com> | 2019-01-02 08:36:13 -0800 |
---|---|---|
committer | Richard Purdie <richard.purdie@linuxfoundation.org> | 2019-01-03 21:16:00 +0000 |
commit | 3de1dca025864408b3728091d5efed62e11770ee (patch) | |
tree | 0a611576b01a73cb009e7c1cfce7316c1501cb7c | |
parent | 87ff1f031f147053829b2c70e043e2719ffad5d6 (diff) | |
download | poky-3de1dca025864408b3728091d5efed62e11770ee.tar.gz |
nss: update to 3.41
Bug fix only update.
Bug 1252891 - Implemented EKU handling for IPsec IKE.
Bug 1423043 - Enable half-closed states for TLS.
Bug 1493215 - Enabled the following ciphersuites by default:
TLS_ECDHE_ECDSA_WITH_AES_256_GCM_SHA384
TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384
TLS_DHE_RSA_WITH_AES_256_GCM_SHA384
TLS_RSA_WITH_AES_256_GCM_SHA384
Bug 1412829, Reject empty supported_signature_algorithms in Certificate Request in TLS 1.2
Bug 1485864 - Cache side-channel variant of the Bleichenbacher attack (CVE-2018-12404)
Bug 1481271 - Resend the same ticket in ClientHello after HelloRetryRequest
Bug 1493769 - Set session_id for external resumption tokens
Bug 1507179 - Reject CCS after handshake is complete in TLS 1.3
(From OE-Core rev: e0e6b80d76efbe044ce9b8923897195b28c2680c)
Signed-off-by: Armin Kuster <akuster808@gmail.com>
Signed-off-by: Richard Purdie <richard.purdie@linuxfoundation.org>
-rw-r--r-- | meta/recipes-support/nss/nss_3.41.bb (renamed from meta/recipes-support/nss/nss_3.40.bb) | 4 |
1 files changed, 2 insertions, 2 deletions
diff --git a/meta/recipes-support/nss/nss_3.40.bb b/meta/recipes-support/nss/nss_3.41.bb index afc50817f1..5ab22b1226 100644 --- a/meta/recipes-support/nss/nss_3.40.bb +++ b/meta/recipes-support/nss/nss_3.41.bb | |||
@@ -31,8 +31,8 @@ SRC_URI = "http://ftp.mozilla.org/pub/mozilla.org/security/nss/releases/${VERSIO | |||
31 | file://nss-fix-SHA_HTONL-bug-for-arm-32be.patch \ | 31 | file://nss-fix-SHA_HTONL-bug-for-arm-32be.patch \ |
32 | " | 32 | " |
33 | 33 | ||
34 | SRC_URI[md5sum] = "f7aec858d192ae03d0e9a35a730c70fa" | 34 | SRC_URI[md5sum] = "eec62a289387a7ce2fd9cca1f76600f3" |
35 | SRC_URI[sha256sum] = "0562087b8bda072bf5964f8acf851f9c0997a59c384f4887cb517b3b628b32dd" | 35 | SRC_URI[sha256sum] = "ab2e18f5d0dd0079c0005396f9beb9a41e9a1bbc7e6c1d0a99affcef0471712d" |
36 | 36 | ||
37 | UPSTREAM_CHECK_URI = "https://developer.mozilla.org/en-US/docs/Mozilla/Projects/NSS/NSS_Releases" | 37 | UPSTREAM_CHECK_URI = "https://developer.mozilla.org/en-US/docs/Mozilla/Projects/NSS/NSS_Releases" |
38 | UPSTREAM_CHECK_REGEX = "NSS_(?P<pver>.+)_release_notes" | 38 | UPSTREAM_CHECK_REGEX = "NSS_(?P<pver>.+)_release_notes" |