NSS 3.120 Release

"'Dennis Jackson' via [email protected]" <[email protected]> Thu, 8 Jan 2026 17:07:47 +0000
Newsgroups gmane.comp.mozilla.crypto
Message-ID <CAON8YFONyT8YMGv-n1O0PsCzhJ61EHC=ZdNVc781x_6ewVrDtg@mail.gmail.com>
--000000000000d8b4470647e3743d
Content-Type: text/plain; charset="UTF-8"

Network Security Services (NSS) 3.120 was released on 8 January 2026.

The HG tag is NSS_3_120_RTM. This version of NSS requires NSPR 4.38 or
newer. The latest version of NSPR is 4.38.2.

NSS 3.120 source distributions are available on ftp.mozilla.org for secure
HTTPS download:
<https://ftp.mozilla.org/pub/security/nss/releases/NSS_3_120_RTM/src/>

Changes:

   - Bug 2008768 - Fix docs generation bug.
   - Bug 2007908 - CID 1678226: Dereferencing null pointer plaintext.data().
   - Bug 2004694 - Run PKCS12 fuzz target with --fuzz=tls in CI.
   - Bug 1978603 - Allowing RT be started several times.
   - Bug 2005751 - move linux decision and build tasks to d2g worker pools.

NSS 3.119 shared libraries are backwards-compatible with all older NSS 3.x
shared libraries. A program linked with older NSS 3.x shared libraries will
work with this new version of the shared libraries without recompiling or
relinking. Furthermore, applications that restrict their use of NSS APIs to
the functions listed in NSS Public Functions will remain compatible with
future versions of the NSS shared libraries.

Bugs discovered should be reported by filing a bug report at <
https://bugzilla.mozilla.org/enter_bug.cgi?product=NSS>

Release notes are available at <
https://firefox-source-docs.mozilla.org/security/nss/releases/index.html>.

-- 
You received this message because you are subscribed to the Google Groups "[email protected]" group.
To unsubscribe from this group and stop receiving emails from it, send an email to [email protected].
To view this discussion visit https://groups.google.com/a/mozilla.org/d/msgid/dev-tech-crypto/CAON8YFONyT8YMGv-n1O0PsCzhJ61EHC%3DZdNVc781x_6ewVrDtg%40mail.gmail.com.

--000000000000d8b4470647e3743d
Content-Type: text/html; charset="UTF-8"
Content-Transfer-Encoding: quoted-printable

<div dir=3D"ltr">Network Security Services (NSS) 3.120 was released on 8 Ja=
nuary 2026.<br><br>The HG tag is NSS_3_120_RTM. This version of NSS require=
s NSPR 4.38 or newer. The latest version of NSPR is 4.38.2.<br><br>NSS 3.12=
0 source distributions are available on <a href=3D"http://ftp.mozilla.org" =
target=3D"_blank">ftp.mozilla.org</a> for secure HTTPS download:<br>&lt;<a =
href=3D"https://ftp.mozilla.org/pub/security/nss/releases/NSS_3_120_RTM/src=
/" target=3D"_blank">https://ftp.mozilla.org/pub/security/nss/releases/NSS_=
3_120_RTM/src/</a>&gt;<br><br>Changes:<br><br>=C2=A0 =C2=A0- Bug 2008768 - =
Fix docs generation bug.<br>=C2=A0 =C2=A0- Bug 2007908 - CID 1678226: Deref=
erencing null pointer plaintext.data().<br>=C2=A0 =C2=A0- Bug 2004694 - Run=
 PKCS12 fuzz target with --fuzz=3Dtls in CI.<br>=C2=A0 =C2=A0- Bug 1978603 =
- Allowing RT be started several times.<br>=C2=A0 =C2=A0- Bug 2005751 - mov=
e linux decision and build tasks to d2g worker pools.<br><br>NSS
 3.119 shared libraries are backwards-compatible with all older NSS 3.x=20
shared libraries. A program linked with older NSS 3.x shared libraries=20
will work with this new version of the shared libraries without=20
recompiling or relinking. Furthermore, applications that restrict their=20
use of NSS APIs to the functions listed in NSS Public Functions will=20
remain compatible with future versions of the NSS shared libraries.<br><br>=
Bugs discovered should be reported by filing a bug report at &lt;<a href=3D=
"https://bugzilla.mozilla.org/enter_bug.cgi?product=3DNSS" target=3D"_blank=
">https://bugzilla.mozilla.org/enter_bug.cgi?product=3DNSS</a>&gt;<br><br>R=
elease notes are available at &lt;<a href=3D"https://firefox-source-docs.mo=
zilla.org/security/nss/releases/index.html" target=3D"_blank">https://firef=
ox-source-docs.mozilla.org/security/nss/releases/index.html</a>&gt;.<font c=
olor=3D"#888888"><br></font><br></div>

<p></p>

-- <br />
You received this message because you are subscribed to the Google Groups &=
quot;[email protected]&quot; group.<br />
To unsubscribe from this group and stop receiving emails from it, send an e=
mail to <a href=3D"mailto:[email protected]">dev-tech=
[email protected]</a>.<br />
To view this discussion visit <a href=3D"https://groups.google.com/a/mozill=
a.org/d/msgid/dev-tech-crypto/CAON8YFONyT8YMGv-n1O0PsCzhJ61EHC%3DZdNVc781x_=
6ewVrDtg%40mail.gmail.com?utm_medium=3Demail&utm_source=3Dfooter">https://g=
roups.google.com/a/mozilla.org/d/msgid/dev-tech-crypto/CAON8YFONyT8YMGv-n1O=
0PsCzhJ61EHC%3DZdNVc781x_6ewVrDtg%40mail.gmail.com</a>.<br />

--000000000000d8b4470647e3743d--