NSS 3.94 Release

Anna Weine <[email protected]> Tue, 3 Oct 2023 09:38:26 +0200
Newsgroups gmane.comp.mozilla.crypto
Message-ID <CAMeH0+pcccM1vvkBs9ngKuA9jKL+smTbwU2+gPXgcboB46WsBQ@mail.gmail.com>
--00000000000095bce20606cafaf9
Content-Type: text/plain; charset="UTF-8"

Dear all,

Network Security Services (NSS) 3.94 was released on 2 October 2023.

The HG tag is NSS_3_94_RTM. This version of NSS requires NSPR 4.35 or newer.

NSS 3.94 source distributions are available on ftp.mozilla.org for
secure HTTPS download:
<https://ftp.mozilla.org/pub/security/nss/releases/NSS_3_94_RTM/src/>

Changes:

 - Bug 1853737 - Updated code and commit ID for HACL*.
 - Bug 1840510 - update ACVP fuzzed test vector: refuzzed with current NSS.
 - Bug 1827303 - Softoken C_ calls should use system FIPS setting to select
NSC_ or FC_ variants.
 - Bug 1774659 - NSS needs a database tool that can dump the low level
representation of the database.
 - Bug 1852179 - declare string literals using char in pkixnames_tests.cpp.
 - Bug 1852179 - avoid implicit conversion for ByteString.
 - Bug 1818766 - update rust version for acvp docker.
 - Bug 1852011 - Moving the init function of the mpi_ints before clean-up
in ec.c
 - Bug 1615555 - P-256 ECDH and ECDSA from HACL*.
 - Bug 1840510 - Add ACVP test vectors to the repository
 - Bug 1849077 - Stop relying on std::basic_string<uint8_t>.
 - Bug 1847845 - Transpose the PPC_ABI check from Makefile to gyp.


NSS 3.94 shared libraries are backwards-compatible with all older NSS
3.x shared libraries. A program linked with older NSS 3.x shared
libraries will work with this new version of the shared libraries
without recompiling or relinking. Furthermore, applications that
restrict their use of NSS APIs to the functions listed in NSS Public
Functions will remain compatible with future versions of the NSS
shared libraries.

Bugs discovered should be reported by filing a bug report at
<https://bugzilla.mozilla.org/enter_bug.cgi?product=NSS>

Release notes are available at
<https://firefox-source-docs.mozilla.org/security/nss/releases/index.html>.

Best,
Anna

-- 
You received this message because you are subscribed to the Google Groups "[email protected]" group.
To unsubscribe from this group and stop receiving emails from it, send an email to [email protected].
To view this discussion on the web visit https://groups.google.com/a/mozilla.org/d/msgid/dev-tech-crypto/CAMeH0%2BpcccM1vvkBs9ngKuA9jKL%2BsmTbwU2%2BgPXgcboB46WsBQ%40mail.gmail.com.

--00000000000095bce20606cafaf9
Content-Type: text/html; charset="UTF-8"
Content-Transfer-Encoding: quoted-printable

<div dir=3D"ltr">Dear all,<br><br>Network Security Services (NSS) 3.94 was =
released on 2 October 2023.<br><br>The HG tag is NSS_3_94_RTM. This version=
 of NSS requires NSPR 4.35 or newer.<br><br>NSS 3.94 source distributions a=
re available on <a href=3D"http://ftp.mozilla.org">ftp.mozilla.org</a> for<=
br>secure HTTPS download:<br>&lt;<a href=3D"https://ftp.mozilla.org/pub/sec=
urity/nss/releases/NSS_3_94_RTM/src/">https://ftp.mozilla.org/pub/security/=
nss/releases/NSS_3_94_RTM/src/</a>&gt;<br><br>Changes:<br><br>=C2=A0- Bug 1=
853737 - Updated code and commit ID for HACL*. <br>=C2=A0- Bug 1840510 - up=
date ACVP fuzzed test vector: refuzzed with current NSS.<br>=C2=A0- Bug 182=
7303 - Softoken C_ calls should use system FIPS setting to select NSC_ or F=
C_ variants.<br>=C2=A0- Bug 1774659 - NSS needs a database tool that can du=
mp the low level representation of the database. <br>=C2=A0- Bug 1852179 - =
declare string literals using char in pkixnames_tests.cpp. <br>=C2=A0- Bug =
1852179 - avoid implicit conversion for ByteString.<br>=C2=A0- Bug 1818766 =
- update rust version for acvp docker.<br>=C2=A0- Bug 1852011 - Moving the =
init function of the mpi_ints before clean-up in ec.c <br>=C2=A0- Bug 16155=
55 - P-256 ECDH and ECDSA from HACL*. <br>=C2=A0- Bug 1840510 - Add ACVP te=
st vectors to the repository <br>=C2=A0- Bug 1849077 - Stop relying on std:=
:basic_string&lt;uint8_t&gt;.<br>=C2=A0- Bug 1847845 - Transpose the PPC_AB=
I check from Makefile to gyp.<br><br><br>NSS 3.94 shared libraries are back=
wards-compatible with all older NSS<br>3.x shared libraries. A program link=
ed with older NSS 3.x shared<br>libraries will work with this new version o=
f the shared libraries<br>without recompiling or relinking. Furthermore, ap=
plications that<br>restrict their use of NSS APIs to the functions listed i=
n NSS Public<br>Functions will remain compatible with future versions of th=
e NSS<br>shared libraries.<br><br>Bugs discovered should be reported by fil=
ing a bug report at<br>&lt;<a href=3D"https://bugzilla.mozilla.org/enter_bu=
g.cgi?product=3DNSS">https://bugzilla.mozilla.org/enter_bug.cgi?product=3DN=
SS</a>&gt;<br><br>Release notes are available at<br>&lt;<a href=3D"https://=
firefox-source-docs.mozilla.org/security/nss/releases/index.html">https://f=
irefox-source-docs.mozilla.org/security/nss/releases/index.html</a>&gt;.<br=
><br>Best,<br>Anna<br></div>

<p></p>

-- <br />
You received this message because you are subscribed to the Google Groups &=
quot;[email protected]&quot; group.<br />
To unsubscribe from this group and stop receiving emails from it, send an e=
mail to <a href=3D"mailto:[email protected]">dev-tech=
[email protected]</a>.<br />
To view this discussion on the web visit <a href=3D"https://groups.google.c=
om/a/mozilla.org/d/msgid/dev-tech-crypto/CAMeH0%2BpcccM1vvkBs9ngKuA9jKL%2Bs=
mTbwU2%2BgPXgcboB46WsBQ%40mail.gmail.com?utm_medium=3Demail&utm_source=3Dfo=
oter">https://groups.google.com/a/mozilla.org/d/msgid/dev-tech-crypto/CAMeH=
0%2BpcccM1vvkBs9ngKuA9jKL%2BsmTbwU2%2BgPXgcboB46WsBQ%40mail.gmail.com</a>.<=
br />

--00000000000095bce20606cafaf9--