Bug 642395 - further change to handling of bad certificates. r=kaie, a=beltzner. GECKO19117_2011012114_RELBRANCH
authorGervase Markham <gerv@gerv.net>
Fri, 18 Mar 2011 11:43:21 +0000
branchGECKO19117_2011012114_RELBRANCH
changeset 27362 8da078c0caf8347ae0f3251f70dc65b9e0a1187b
parent 27361 3ab1ade7d8c667287a524757dc154075e6281054
child 27363 5a5dcb215b8d58a7b37c489ff5f5937acd0bc707
push id2692
push userclegnitto@mozilla.com
push dateSat, 19 Mar 2011 19:32:45 +0000
reviewerskaie, beltzner
bugs642395
milestone1.9.1.17
Bug 642395 - further change to handling of bad certificates. r=kaie, a=beltzner.
security/manager/ssl/src/nsNSSCallbacks.cpp
--- a/security/manager/ssl/src/nsNSSCallbacks.cpp
+++ b/security/manager/ssl/src/nsNSSCallbacks.cpp
@@ -986,16 +986,18 @@ struct nsSerialBinaryBlacklistEntry
 };
 
 // bug 642395
 static struct nsSerialBinaryBlacklistEntry myUTNBlacklistEntries[] = {
   { 17, "\x00\x92\x39\xd5\x34\x8f\x40\xd1\x69\x5a\x74\x54\x70\xe1\xf2\x3f\x43" },
   { 17, "\x00\xd8\xf3\x5f\x4e\xb7\x87\x2b\x2d\xab\x06\x92\xe3\x15\x38\x2f\xb0" },
   { 16, "\x72\x03\x21\x05\xc5\x0c\x08\x57\x3d\x8e\xa5\x30\x4e\xfe\xe8\xb0" },
   { 17, "\x00\xb0\xb7\x13\x3e\xd0\x96\xf9\xb5\x6f\xae\x91\xc8\x74\xbd\x3a\xc0" },
+  { 16, "\x39\x2a\x43\x4f\x0e\x07\xdf\x1f\x8a\xa3\x05\xde\x34\xe0\xc2\x29" },
+  { 16, "\x3e\x75\xce\xd4\x6b\x69\x30\x21\x21\x88\x30\xae\x86\xa8\x2a\x71" },
   { 17, "\x00\xe9\x02\x8b\x95\x78\xe4\x15\xdc\x1a\x71\x0a\x2b\x88\x15\x44\x47" },
   { 17, "\x00\xd7\x55\x8f\xda\xf5\xf1\x10\x5b\xb2\x13\x28\x2b\x70\x77\x29\xa3" },
   { 16, "\x04\x7e\xcb\xe9\xfc\xa5\x5f\x7b\xd0\x9e\xae\x36\xe1\x0c\xae\x1e" },
   { 17, "\x00\xf5\xc8\x6a\xf3\x61\x62\xf1\x3a\x64\xf5\x4f\x6d\xc9\x58\x7c\x06" },
   { 0, 0 } // end marker
 };
 
 SECStatus PR_CALLBACK AuthCertificateCallback(void* client_data, PRFileDesc* fd,