[ALSA-2023:1368] Important: nss security and bug fix update
Type:
security
Severity:
important
Release date:
2023-03-23
Description:
Network Security Services (NSS) is a set of libraries designed to support the cross-platform development of security-enabled client and server applications. Security Fix(es): * nss: Arbitrary memory write via PKCS 12 (CVE-2023-0767) Bug Fix(es): * In FIPS mode, nss should reject RSASSA-PSS salt lengths larger than the output size of the hash function used, or provide an indicator. (BZ#2177434) * Need to update FIPS review comments into NSS AlmaLinux-9. (BZ#2177875) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
Updated packages listed below:
Architecture Package Checksum
aarch64 nspr-4.34.0-17.el9_1.aarch64.rpm 0f742b4815f2c327eae17d2bba1901cb7e0cc56a42a461f1a9cd1e9558640a93
aarch64 nss-softokn-freebl-3.79.0-17.el9_1.aarch64.rpm 0f919fd039a327bde58be9b60e09b92e13f3c228ed1a27696bb527306d6a73bb
aarch64 nss-softokn-freebl-devel-3.79.0-17.el9_1.aarch64.rpm 1b5dba13cbb68a6ae9463021ae04e41cf179471af5ca637bd1f46654622eb8ff
aarch64 nss-util-devel-3.79.0-17.el9_1.aarch64.rpm 4aed292cf425eb8747c3b7d00c1a132af87c2048c1aeb42ba3593d90c7e3df54
aarch64 nspr-devel-4.34.0-17.el9_1.aarch64.rpm 51da9f76b68ea6697fc135786da76bc4b25c27f2254188ad124b770b014fe4ba
aarch64 nss-tools-3.79.0-17.el9_1.aarch64.rpm 5250c9e59888e8d193994863c1e305b6736a20badf89ab0bb27ec7f93401f693
aarch64 nss-softokn-3.79.0-17.el9_1.aarch64.rpm 5f5e0b65b53c4fa4ec6cd920fbebcc99d9611c2a53a7261844bfd98f58824119
aarch64 nss-devel-3.79.0-17.el9_1.aarch64.rpm 6de3f5cdb4153672fe7b3520de6cc66596780bab5f5722e96b0f04345061c8b9
aarch64 nss-softokn-devel-3.79.0-17.el9_1.aarch64.rpm 75cd6beafb5294ee723b2a290b8d0fe0467368b5f1f60faefff1b107add1b1f1
aarch64 nss-3.79.0-17.el9_1.aarch64.rpm a2dc13ca79a52ea1e711cac44ce13305a2348372ea5e07f6c2d61ec2899c556f
aarch64 nss-sysinit-3.79.0-17.el9_1.aarch64.rpm ce15cd2ace04787f16e8b3d00dd50296f11961ad7e66d134c30c6fd8848817c0
aarch64 nss-util-3.79.0-17.el9_1.aarch64.rpm d7cf9a3ccbeec89d8abbd6028b2494637a62e215df47b0ad3a75449a4b011ae4
i686 nss-softokn-devel-3.79.0-17.el9_1.i686.rpm 037ed7dea41b19ccae56c44b5f3ce5ecca322aa3e159734288894a516c1bf0aa
i686 nspr-4.34.0-17.el9_1.i686.rpm 09a6cd6a30bad221aa1287050c1a3e9c99f9954728b1ca2cbbf4dce5baa3cf68
i686 nss-softokn-3.79.0-17.el9_1.i686.rpm 1f3f98ad6c64415dbbe8069ca4db4dd8c27af1b729d9b65717580188ae6ecb16
i686 nss-3.79.0-17.el9_1.i686.rpm 38d5d4e1d95ef169e4d09a2732404bd8b13c50e093224c397ff7fc49ad036c2e
i686 nss-util-3.79.0-17.el9_1.i686.rpm 50b2a96ea7da80acadefddbb023423decb1da92804c266bda43f5510938fa0db
i686 nss-softokn-freebl-devel-3.79.0-17.el9_1.i686.rpm 516bac8235032912ee7498e7b90366847e1083ef46c7cb8f2163bb2012df85a0
i686 nspr-devel-4.34.0-17.el9_1.i686.rpm 5f06c5aa7fe9b129d3e1ff41a1b8e25bcc4cf247e89e481cd10e01df5a11da49
i686 nss-softokn-freebl-3.79.0-17.el9_1.i686.rpm 84170d7a119d36f1056bced0eab20fc1c076d9ceb16fff4832c02e49ab4e3be0
i686 nss-devel-3.79.0-17.el9_1.i686.rpm 8692e8f274be73fb2b69251e0eea94fb93960d0423532b0906b75b6b89bea170
i686 nss-util-devel-3.79.0-17.el9_1.i686.rpm f83026297a4ee70764353f61497f8fc5a6e965e45a9c3cf820d93ae7d94a3714
ppc64le nss-softokn-freebl-devel-3.79.0-17.el9_1.ppc64le.rpm 003fde7e0be41e278b8a99f3e44d7496f8e7a0d15985b5b40efc460c76b2d8c2
ppc64le nss-sysinit-3.79.0-17.el9_1.ppc64le.rpm 0921ad0624dff40c3af5d67d91601ab80e89cc353de5db76c191cfbe33749f20
ppc64le nspr-4.34.0-17.el9_1.ppc64le.rpm 10ab87af8ac80d3669fba16469229e9dffad34c5461c6aa72ba68b0154c97d38
ppc64le nss-3.79.0-17.el9_1.ppc64le.rpm 3b2c3b3bfb02f6a42022fea2dcaeee72e4501b1dcdf145e7e83a5a8398adec67
ppc64le nss-devel-3.79.0-17.el9_1.ppc64le.rpm 73de2e4437872170ddb399ff0c72e3a44334a26b32a2937ca3f6996b4dc92545
ppc64le nss-softokn-freebl-3.79.0-17.el9_1.ppc64le.rpm 77a1029a42d7ca936f694c3533b1d7dc397a172a0a9e35b4baa7051dc80a0106
ppc64le nss-tools-3.79.0-17.el9_1.ppc64le.rpm 82d4650de20db414fa27c0f901311744a8ca0c44c70fcc616a96b0dac2ac12c8
ppc64le nss-util-3.79.0-17.el9_1.ppc64le.rpm a125bf32c1dad524dc318cb84c428b5e44ece3f67ab573aaabcf38580e06502d
ppc64le nss-softokn-devel-3.79.0-17.el9_1.ppc64le.rpm c920f02981e6eed9132516526d00fd97d3bd8c460ea11267dd85fd8c7626f6f1
ppc64le nss-softokn-3.79.0-17.el9_1.ppc64le.rpm d2db2c8696079e964e7f027234a9635398c00c6df1b43f00e6dbe3cc2f78ddd3
ppc64le nss-util-devel-3.79.0-17.el9_1.ppc64le.rpm d5a5b608f315020d93dfa133f635e197e3be7de059e902869bd0e8dc398ac475
ppc64le nspr-devel-4.34.0-17.el9_1.ppc64le.rpm fc4f15b347c49ed5313c907f1f9699afbbe4932c32788cb0411d99ff04ec898a
s390x nss-softokn-3.79.0-17.el9_1.s390x.rpm 0796d3166e340374679ce3462174aa4a46c0ae759719da80da764af8eeade677
s390x nss-tools-3.79.0-17.el9_1.s390x.rpm 0d5a585b43713871f401441c7ee8ccc7f03a2619513c3b2fa6af5016fccaf835
s390x nspr-devel-4.34.0-17.el9_1.s390x.rpm 3604637223fe2e56d2e631561b98141afd85835987e5d80f327e6f12eb4fc695
s390x nss-devel-3.79.0-17.el9_1.s390x.rpm 6fba075a25e91f5f58ffb00d28c533b7da4a877569034d9718a6a5a5ef545c3d
s390x nss-util-devel-3.79.0-17.el9_1.s390x.rpm 7bb6081a97b29dc34ccc25463845c93848c3026be02ca9ecccbbc339ad13f073
s390x nss-softokn-devel-3.79.0-17.el9_1.s390x.rpm b9f09e9fcbcb97108ff49aa2ab8e299d17c9d96e0dd8536f16477dd7e1a9f9d0
s390x nss-softokn-freebl-3.79.0-17.el9_1.s390x.rpm bb6e963376f70350554f1a0a70d300e376ab2be5aa5b41fe05cf3934416a460b
s390x nspr-4.34.0-17.el9_1.s390x.rpm be7337b988b961acf774873376f77af90485ffcd4f396bff56ba69f64be68481
s390x nss-3.79.0-17.el9_1.s390x.rpm bff5ef98bc9ea4b2a81c68103ef8f37fff55434692ff58e0e1b70ba96a7e4eb1
s390x nss-sysinit-3.79.0-17.el9_1.s390x.rpm e4f4a1d2bb6810f0eef4fbae35149a304579973744682cdc554b6799fbfac5ec
s390x nss-softokn-freebl-devel-3.79.0-17.el9_1.s390x.rpm edd863be9cfabd519a73a72c33cda418b964bedbe44460330d47376f867dffc1
s390x nss-util-3.79.0-17.el9_1.s390x.rpm ef30548b73fad044a7e37dae3523f1c0fddc8f8751072c12f849cf1558188328
x86_64 nss-tools-3.79.0-17.el9_1.x86_64.rpm 0afb7a109acf6dbcb4f95cfab102d90fc751f45ec2bbc980e7741da04764cd94
x86_64 nss-util-devel-3.79.0-17.el9_1.x86_64.rpm 0cd845eabedb9322f312e6df1b33a60c40ef4c99f6ceb5e0e2464921671b4e65
x86_64 nss-softokn-freebl-devel-3.79.0-17.el9_1.x86_64.rpm 19454db6e3fb93b62b311911ac6d85e0cef4e20c1ba89f7b2ab9c4df1682801b
x86_64 nss-devel-3.79.0-17.el9_1.x86_64.rpm 3bdc8e7c5a3b9c00023d91e0eb2d115cd3898d6b3ea7bc9174a0a13a0ab68e6e
x86_64 nss-sysinit-3.79.0-17.el9_1.x86_64.rpm 3e3b86bce1362597c0c3cb8ce5af0c5c53fb28b81a0d754b1485132a8550bde7
x86_64 nss-util-3.79.0-17.el9_1.x86_64.rpm 4f1e198a305dbc6090d589612c57e81bc87c32a95be6332a534a5a42a1da3a84
x86_64 nss-softokn-freebl-3.79.0-17.el9_1.x86_64.rpm 5dc8a9584b9fc299794b0af06bd065ffdc8d108c0c61baef67e70f7486b0b065
x86_64 nspr-4.34.0-17.el9_1.x86_64.rpm 7748609bc154fbead3e29b0548e9e31ec2f02037a3482847799a30e614c73afb
x86_64 nspr-devel-4.34.0-17.el9_1.x86_64.rpm bf636306f2bbcc8ca472dabc70adb15675df1481b0661f0b3e8d0fddc57d86f4
x86_64 nss-3.79.0-17.el9_1.x86_64.rpm c554e02c27842046d2d4a900d891029cd004c480cb4a88978e2256d10e0a3928
x86_64 nss-softokn-devel-3.79.0-17.el9_1.x86_64.rpm eb91e936e8769dca15aa42fd8df369d30f80b1b893a3c5a74e42602f4409023f
x86_64 nss-softokn-3.79.0-17.el9_1.x86_64.rpm f78fc7c5c4a22b7be7c6c4e3bd5df2a6ad326187da3c12d3e3b9f19bf9550313
Notes:
This page is generated automatically from Red Hat security data and has not been checked for errors. For clarification or corrections please contact the AlmaLinux Packaging Team.