932ffb74083cee8d5ef2f2934969870b4a354fc8: Release notes for NSS 3.76.1
John M. Schanck <jschanck@mozilla.com> - Fri, 25 Mar 2022 12:57:44 -0700 - rev 16178
Push 4115 by jschanck@mozilla.com at Mon, 28 Mar 2022 15:52:05 +0000
Release notes for NSS 3.76.1
e0b44032a5a0d9c5314daeb5b980e98ae1bcc927: Release notes for NSS 3.68.3
John M. Schanck <jschanck@mozilla.com> - Fri, 25 Mar 2022 12:55:55 -0700 - rev 16177
Push 4115 by jschanck@mozilla.com at Mon, 28 Mar 2022 15:52:05 +0000
Release notes for NSS 3.68.3
a92b878e13a57052277fbc428940262b71f5e591: Added tag NSS_3_76_1_RTM for changeset 0e6c67470eed NSS_3_76_1_BRANCH
John M. Schanck <jschanck@mozilla.com> - Fri, 25 Mar 2022 13:24:13 -0700 - rev 16176
Push 4114 by jschanck@mozilla.com at Mon, 28 Mar 2022 15:50:56 +0000
Added tag NSS_3_76_1_RTM for changeset 0e6c67470eed
0e6c67470eed5044ace519e2405ddfa7186f0dc2: Release notes for NSS 3.76.1 NSS_3_76_1_BRANCH NSS_3_76_1_RTM
John M. Schanck <jschanck@mozilla.com> - Fri, 25 Mar 2022 12:57:44 -0700 - rev 16175
Push 4114 by jschanck@mozilla.com at Mon, 28 Mar 2022 15:50:56 +0000
Release notes for NSS 3.76.1
41966ff1253b09fdb39ca99ba4127831f7c958b1: Bug 1756271 - Remove token member from NSSSlot struct. r=rrelyea NSS_3_76_1_BRANCH
John M. Schanck <jschanck@mozilla.com> - Wed, 23 Mar 2022 17:51:52 +0000 - rev 16174
Push 4114 by jschanck@mozilla.com at Mon, 28 Mar 2022 15:50:56 +0000
Bug 1756271 - Remove token member from NSSSlot struct. r=rrelyea Differential Revision: https://phabricator.services.mozilla.com/D139547
48ff4cd9badaa7e58e1889d6a6a69076a66e0c87: Set version numbers to 3.76.1 final NSS_3_76_1_BRANCH
John M. Schanck <jschanck@mozilla.com> - Fri, 25 Mar 2022 10:02:38 -0700 - rev 16173
Push 4114 by jschanck@mozilla.com at Mon, 28 Mar 2022 15:50:56 +0000
Set version numbers to 3.76.1 final
9d28373d98c3488bd6ea8eb6dcfd1c03c731932f: Added tag NSS_3_68_3_RTM for changeset e3da860d9d1c NSS_3_68_3_BRANCH
John M. Schanck <jschanck@mozilla.com> - Fri, 25 Mar 2022 13:24:59 -0700 - rev 16172
Push 4113 by jschanck@mozilla.com at Mon, 28 Mar 2022 15:41:24 +0000
Added tag NSS_3_68_3_RTM for changeset e3da860d9d1c
e3da860d9d1c08135bd6aca0eb26a1ece8f77ba1: Bug 1756271 - Remove token member from NSSSlot struct. r=rrelyea NSS_3_68_3_BRANCH NSS_3_68_3_RTM
John M. Schanck <jschanck@mozilla.com> - Wed, 23 Mar 2022 17:51:52 +0000 - rev 16171
Push 4113 by jschanck@mozilla.com at Mon, 28 Mar 2022 15:41:24 +0000
Bug 1756271 - Remove token member from NSSSlot struct. r=rrelyea Differential Revision: https://phabricator.services.mozilla.com/D139547
1931b2b09b551434b6b138382b3b6223d0a222ae: Bug 1755555 - Hold tokensLock through nssToken_GetSlot calls in nssTrustDomain_GetActiveSlots. r=rrelyea NSS_3_68_3_BRANCH
John M. Schanck <jschanck@mozilla.com> - Thu, 24 Feb 2022 00:21:34 +0000 - rev 16170
Push 4113 by jschanck@mozilla.com at Mon, 28 Mar 2022 15:41:24 +0000
Bug 1755555 - Hold tokensLock through nssToken_GetSlot calls in nssTrustDomain_GetActiveSlots. r=rrelyea Differential Revision: https://phabricator.services.mozilla.com/D138852
ba0086e6737d1ffdd2c4120e960e9b7adb0b6b34: Bug 1370866 - Check return value of PK11Slot_GetNSSToken. r=djackson NSS_3_68_3_BRANCH
John M. Schanck <jschanck@mozilla.com> - Wed, 23 Feb 2022 18:00:28 +0000 - rev 16169
Push 4113 by jschanck@mozilla.com at Mon, 28 Mar 2022 15:41:24 +0000
Bug 1370866 - Check return value of PK11Slot_GetNSSToken. r=djackson Differential Revision: https://phabricator.services.mozilla.com/D139420
c7b7c2f03ef297cfcaa79e0251abe847cfa6ecb1: Set version numbers to 3.68.3 final NSS_3_68_3_BRANCH
John M. Schanck <jschanck@mozilla.com> - Fri, 25 Mar 2022 09:50:31 -0700 - rev 16168
Push 4113 by jschanck@mozilla.com at Mon, 28 Mar 2022 15:41:24 +0000
Set version numbers to 3.68.3 final
b7e6501a8d0e1da93fcdeb414901c7f961b2279a: Added tag NSS_3_77_BETA1 for changeset f63fb86db692 NSS_3_77_BRANCH
John M. Schanck <jschanck@mozilla.com> - Thu, 24 Mar 2022 11:12:04 -0700 - rev 16167
Push 4112 by jschanck@mozilla.com at Thu, 24 Mar 2022 18:13:32 +0000
Added tag NSS_3_77_BETA1 for changeset f63fb86db692
f63fb86db692f9ea6f97d86e5b97c3dda4916ad0: Bug 1754890 - Add two D-TRUST 2020 root certificates. r=KathleenWilson NSS_3_77_BETA1
John M. Schanck <jschanck@mozilla.com> - Thu, 24 Mar 2022 04:06:02 +0000 - rev 16166
Push 4111 by jschanck@mozilla.com at Thu, 24 Mar 2022 04:08:07 +0000
Bug 1754890 - Add two D-TRUST 2020 root certificates. r=KathleenWilson Depends on D141920 Differential Revision: https://phabricator.services.mozilla.com/D141921
1fcbbd7e4f5f7773114b2fa28e394898ecb37c55: Bug 1751298 - Add Telia Root CA v2 root certificate. r=KathleenWilson
John M. Schanck <jschanck@mozilla.com> - Thu, 24 Mar 2022 04:06:02 +0000 - rev 16165
Push 4111 by jschanck@mozilla.com at Thu, 24 Mar 2022 04:08:07 +0000
Bug 1751298 - Add Telia Root CA v2 root certificate. r=KathleenWilson Depends on D141919 Differential Revision: https://phabricator.services.mozilla.com/D141920
b722e523d66297fe4bc1fac0ebb06203138eccbb: Bug 1751305 - Remove expired explicitly distrusted certificates from certdata.txt. r=KathleenWilson
John M. Schanck <jschanck@mozilla.com> - Thu, 24 Mar 2022 04:06:01 +0000 - rev 16164
Push 4111 by jschanck@mozilla.com at Thu, 24 Mar 2022 04:08:07 +0000
Bug 1751305 - Remove expired explicitly distrusted certificates from certdata.txt. r=KathleenWilson Differential Revision: https://phabricator.services.mozilla.com/D141919
853b64626b19a46f41f4ba9c684490dc15923c94: Bug 1005084 - support specific RSA-PSS parameters in mozilla::pkix r=jschanck
Dana Keeler <dkeeler@mozilla.com> - Wed, 23 Mar 2022 18:46:42 +0000 - rev 16163
Push 4110 by jschanck@mozilla.com at Wed, 23 Mar 2022 18:48:51 +0000
Bug 1005084 - support specific RSA-PSS parameters in mozilla::pkix r=jschanck This patch adds support to mozilla::pkix for certificates signed with RSA-PSS using one of the following parameters permitted by the CA/Browser Forum Baseline Requirements 1.8.1: * SHA-256, MGF-1 with SHA-256, and a salt length of 32 bytes * SHA-384, MGF-1 with SHA-384, and a salt length of 48 bytes * SHA-512, MGF-1 with SHA-512, and a salt length of 64 bytes Differential Revision: https://phabricator.services.mozilla.com/D141539
800111fa3bf8225fd45a50cc192a032b62b54fc6: Bug 1753535 - Remove obsolete stateEnd check in SEC_ASN1DecoderUpdate. r=rrelyea
John M. Schanck <jschanck@mozilla.com> - Wed, 23 Mar 2022 18:07:30 +0000 - rev 16162
Push 4109 by jschanck@mozilla.com at Wed, 23 Mar 2022 18:09:38 +0000
Bug 1753535 - Remove obsolete stateEnd check in SEC_ASN1DecoderUpdate. r=rrelyea The `stateEnd->parent != state` check was added in Bug 95458 to avoid a crash in `sec_asn1d_free_child`. The diagnosis in Bug 95458 is incorrect---the crash was actually due to a `PORT_Assert(0)` that was meant to highlight a memory leak when `SEC_ASN1DecoderStart` was called with `their_pool==NULL`. The offending assertion was removed in Bug 95311, which makes the `stateEnd` check obsolete. In Bug 1753535 it was observed that the `stateEnd` check could read from a poisoned region of an arena when the decoder was used in a streaming mode. This read-after-poison could lead to an arena memory leak, although this is mitigated by the fact that the read-after-poison is on an error-handling path where the caller typically frees the entire arena. Differential Revision: https://phabricator.services.mozilla.com/D140861
55052f78244cb4a39ef2a19aebd19fbface06829: Bug 1756271 - Remove token member from NSSSlot struct. r=rrelyea
John M. Schanck <jschanck@mozilla.com> - Wed, 23 Mar 2022 17:51:52 +0000 - rev 16161
Push 4108 by jschanck@mozilla.com at Wed, 23 Mar 2022 17:53:58 +0000
Bug 1756271 - Remove token member from NSSSlot struct. r=rrelyea Differential Revision: https://phabricator.services.mozilla.com/D139547
b83ad33acd678c78c91b836ad42310e75cac3361: Bug 1602379 - Provide secure variants of mpp_pprime and mpp_make_prime. r=mt
John M. Schanck <jschanck@mozilla.com> - Wed, 23 Mar 2022 15:32:48 +0000 - rev 16160
Push 4107 by jschanck@mozilla.com at Wed, 23 Mar 2022 15:35:01 +0000
Bug 1602379 - Provide secure variants of mpp_pprime and mpp_make_prime. r=mt Differential Revision: https://phabricator.services.mozilla.com/D139866
ffa1e4ce758af719cf355eb5566d4d358b4e1319: Backed out changeset 6c1092f5203f
John M. Schanck <jschanck@mozilla.com> - Tue, 22 Mar 2022 12:57:53 -0700 - rev 16159
Push 4106 by jschanck@mozilla.com at Tue, 22 Mar 2022 19:58:55 +0000
Backed out changeset 6c1092f5203f Caused Windows gyp build failures for cmd/mpitests
(0) -10000 -3000 -1000 -300 -100 -50 -20 +20 +50 +100 tip