db89b28b84e3e6f05a38a31075f341f016a494a7: Backed out changeset 272dde8958e9
Martin Thomson <martin.thomson@gmail.com> - Fri, 05 Jan 2018 11:36:26 +1100 - rev 14205
Push 2950 by martin.thomson@gmail.com at Fri, 05 Jan 2018 00:38:35 +0000
Backed out changeset 272dde8958e9 This seems to trigger assertion failures in PR_Unlock across a number of utilities. It seems intermittent and limited to win32 builds. It's also possible that this is a latent bug, but right now the change is making things noticeably worse.
5a07078fb33827a3dec05f64a12690a0be789fa3: Bug 1427921 - Update to TLS 1.3 draft-23, r=ekr
Martin Thomson <martin.thomson@gmail.com> - Thu, 04 Jan 2018 11:35:03 +1100 - rev 14204
Push 2949 by martin.thomson@gmail.com at Thu, 04 Jan 2018 23:37:33 +0000
Bug 1427921 - Update to TLS 1.3 draft-23, r=ekr
6079667d91e84d6f312dd938832afed79be79329: Bug 1427977, January 2018 batch of root CA changes, r=kwilson
Kai Engert <kaie@kuix.de> - Thu, 04 Jan 2018 17:50:49 +0100 - rev 14203
Push 2948 by kaie@kuix.de at Thu, 04 Jan 2018 16:50:22 +0000
Bug 1427977, January 2018 batch of root CA changes, r=kwilson
272dde8958e9960345857ed38c694a0667e00de5: Bug 1054373, Crash in PK11_DoesMechanism due to race condition, r=rsleevi
Robert Relyea <rrelyea@redhat.com> - Thu, 04 Jan 2018 13:38:25 +0100 - rev 14202
Push 2947 by kaie@kuix.de at Thu, 04 Jan 2018 12:38:11 +0000
Bug 1054373, Crash in PK11_DoesMechanism due to race condition, r=rsleevi
7a3ff26a6b12e3ca7cf60f89f6d037b514458e85: Backed out changeset 919051b7381e
Robert Relyea <rrelyea@redhat.com> - Wed, 03 Jan 2018 17:45:05 -0800 - rev 14201
Push 2946 by rrelyea@redhat.com at Thu, 04 Jan 2018 02:02:46 +0000
Backed out changeset 919051b7381e
919051b7381e1e7e36c92ed0bbbbbbd7bd71a588: Crash in PK11_DoesMechanism due to race condition
Robert Relyea <rrelyea@redhat.com> - Wed, 03 Jan 2018 16:28:05 -0800 - rev 14200
Push 2945 by rrelyea@redhat.com at Thu, 04 Jan 2018 00:28:25 +0000
Crash in PK11_DoesMechanism due to race condition bug 1054373 r=rsleevi
82aff3e2439e4396e5f25c88900520bdb8b5128f: Bug 1427653 - fix clang-format in docker images, r=mt
Franziskus Kiefer <franziskuskiefer@gmail.com> - Wed, 03 Jan 2018 10:20:05 +0100 - rev 14199
Push 2944 by franziskuskiefer@gmail.com at Wed, 03 Jan 2018 09:52:47 +0000
Bug 1427653 - fix clang-format in docker images, r=mt Differential Revision: https://phabricator.services.mozilla.com/D350
29b2a346746fb03316cf97c8c7b0837b714c255b: Bug 1426361, certutil: check CKF_LOGIN_REQUIRED as well as CKF_USER_PIN_INITIALIZED, r=rrelyea
Daiki Ueno <dueno@redhat.com> - Wed, 20 Dec 2017 12:50:02 +0100 - rev 14198
Push 2943 by dueno@redhat.com at Tue, 02 Jan 2018 13:43:16 +0000
Bug 1426361, certutil: check CKF_LOGIN_REQUIRED as well as CKF_USER_PIN_INITIALIZED, r=rrelyea
5a14f42384eb22b67e0465949c03555eff41e4af: Bug 1423557, cryptohi: make RSA-PSS parameter check stricter, r=mt
Daiki Ueno <dueno@redhat.com> - Tue, 02 Jan 2018 10:19:21 +0100 - rev 14197
Push 2942 by dueno@redhat.com at Tue, 02 Jan 2018 13:14:27 +0000
Bug 1423557, cryptohi: make RSA-PSS parameter check stricter, r=mt Summary: This adds a check on unsupported hash/mask algorithms and invalid trailer field, when converting SECKEYRSAPSSParams to CK_RSA_PKCS_PSS_PARAMS for both signing and verification. It also add missing support for SHA224 as underlying hash algorithm. Reviewers: mt Reviewed By: mt Bug #: 1423557 Differential Revision: https://phabricator.services.mozilla.com/D322
e577b1df8dabb31466cebad07fdbe0883290bede: Bug 1312142, Softoken still does not handle login state correctly for user db slots in FIPS mode, r=kaie
Bob Relyea <rrelyea@redhat.com> - Thu, 21 Dec 2017 14:53:18 +0100 - rev 14196
Push 2941 by kaie@kuix.de at Thu, 21 Dec 2017 13:52:56 +0000
Bug 1312142, Softoken still does not handle login state correctly for user db slots in FIPS mode, r=kaie
481de926f1fa18b7b62e80b59f28f2aef7ab3034: Bug 1409516, NSS Tests detect FIPS buildconfiguration using certutil --build-flags. gyp builds with --enable-fips enable init tests. Enable cert_rsa_exponent test. Add Linux64 FIPS gyp build to taskcluster/CI. r=franziskus
Kai Engert <kaie@kuix.de> - Tue, 19 Dec 2017 16:44:11 +0100 - rev 14195
Push 2940 by kaie@kuix.de at Tue, 19 Dec 2017 15:43:57 +0000
Bug 1409516, NSS Tests detect FIPS buildconfiguration using certutil --build-flags. gyp builds with --enable-fips enable init tests. Enable cert_rsa_exponent test. Add Linux64 FIPS gyp build to taskcluster/CI. r=franziskus
04fc9a90997b1c0cb7053d9fb4d35f4a16acbd0f: Dummy change to trigger a build to test latest NSPR commits
Kai Engert <kaie@kuix.de> - Mon, 18 Dec 2017 11:05:28 +0100 - rev 14194
Push 2939 by kaie@kuix.de at Mon, 18 Dec 2017 10:05:05 +0000
Dummy change to trigger a build to test latest NSPR commits
b2e81720b4c0634775640062089ee9851c918d47: Bug 1424282, certutil -D should use API CERT_FindCertByNicknameOrEmailAddrCX to prevent unnecessary password prompt, r=rrelyea
Kai Engert <kaie@kuix.de> - Thu, 14 Dec 2017 10:13:44 +0100 - rev 14193
Push 2938 by kaie@kuix.de at Thu, 14 Dec 2017 09:13:23 +0000
Bug 1424282, certutil -D should use API CERT_FindCertByNicknameOrEmailAddrCX to prevent unnecessary password prompt, r=rrelyea
f5cb448b91f9a2efacdf50fd6405acb00eaa9869: Bug 1419342 - add Curve25519 F* spec to NSS, r=beurdouche,ttaubert
Franziskus Kiefer <franziskuskiefer@gmail.com> - Wed, 13 Dec 2017 13:07:09 -0600 - rev 14192
Push 2937 by franziskuskiefer@gmail.com at Wed, 13 Dec 2017 19:08:15 +0000
Bug 1419342 - add Curve25519 F* spec to NSS, r=beurdouche,ttaubert Summary: Cuve25519 spec and some other small fixes. Reviewers: ttaubert, beurdouche Reviewed By: ttaubert, beurdouche Differential Revision: https://phabricator.services.mozilla.com/D333
3483c9e74def40a7176ba42503c7e3a921a671a3: Bug 1399763 - follow-up to fix non-intel poly1305, r=me
Franziskus Kiefer <franziskuskiefer@gmail.com> - Fri, 08 Dec 2017 16:26:51 -0800 - rev 14191
Push 2936 by franziskuskiefer@gmail.com at Sun, 10 Dec 2017 18:47:20 +0000
Bug 1399763 - follow-up to fix non-intel poly1305, r=me
59f3ff0efb518295aa30eb10dbc88f6381ffe0ed: Bug 1399763 - add license headers to spec files and make diff work, r=ttaubert
Franziskus Kiefer <franziskuskiefer@gmail.com> - Thu, 07 Dec 2017 16:02:37 -0800 - rev 14190
Push 2935 by franziskuskiefer@gmail.com at Fri, 08 Dec 2017 16:50:14 +0000
Bug 1399763 - add license headers to spec files and make diff work, r=ttaubert Differential Revision: https://phabricator.services.mozilla.com/D331
d5433562dee489df800d97c8afb72d3b6971cb9f: Bug 1399763 - formally verified code from HACL* for Poly1305 64bits, r=franziskus,ttaubert
Benjamin Beurdouche <benjamin.beurdouche@inria.fr> - Thu, 07 Dec 2017 11:27:22 -0800 - rev 14189
Push 2935 by franziskuskiefer@gmail.com at Fri, 08 Dec 2017 16:50:14 +0000
Bug 1399763 - formally verified code from HACL* for Poly1305 64bits, r=franziskus,ttaubert try: -p none -t hacl Summary: Code for Poly1305 Reviewers: franziskus, ttaubert Reviewed By: franziskus, ttaubert Bug #: 1399763 Differential Revision: https://phabricator.services.mozilla.com/D276
e9b09c7136cfa48d12560151b7aed6ae33e0231f: bug 1423145, NSS buildbot ABI check fails, reason unknown, need more detailed error logging, r=fkiefer
Kai Engert <kaie@kuix.de> - Tue, 05 Dec 2017 18:04:03 +0100 - rev 14188
Push 2934 by kaie@kuix.de at Tue, 05 Dec 2017 17:03:38 +0000
bug 1423145, NSS buildbot ABI check fails, reason unknown, need more detailed error logging, r=fkiefer
2fa960eb84a223677ac61845540a8e504c35ad85: Bug 1418780 - Check against integer underflow in ugly_split r=ttaubert
David Keeler <dkeeler@mozilla.com> - Tue, 05 Dec 2017 10:03:13 +0100 - rev 14187
Push 2933 by ttaubert@mozilla.com at Tue, 05 Dec 2017 09:04:34 +0000
Bug 1418780 - Check against integer underflow in ugly_split r=ttaubert Summary: Before this change, if the metadata for a dbm-format certificate (or presumably key) database were corrupted, ugly_split could do an unchecked subtraction resulting in unsigned integer underflow, and would attempt to operate on something it thought was very big, resulting in (at least) an out-of-bounds read. Reviewers: ttaubert Reviewed By: ttaubert Subscribers: keeler Bug #: 1418780 Differential Revision: https://phabricator.services.mozilla.com/D310
b88d7c2e5158fc6b645b71c42db7d7f27c5f5baa: Bug 1423016 - DTLS support for tstclnt. r=mt
EKR <ekr@rtfm.com> - Sat, 11 Nov 2017 11:50:18 +0800 - rev 14186
Push 2932 by ekr@mozilla.com at Tue, 05 Dec 2017 00:41:26 +0000
Bug 1423016 - DTLS support for tstclnt. r=mt Reviewers: mt Differential Revision: https://phabricator.services.mozilla.com/D314
(0) -10000 -3000 -1000 -300 -100 -50 -20 +20 +50 +100 +300 +1000 tip