Bugzilla will be upgraded to version 5.0. The upgrade date is tentatively scheduled for 2 December 2018, pending final testing and feedback.
Bug 1200905 - Rebase nss to 3.18 for Firefox 38 ESR [RHEL-5.11]
Rebase nss to 3.18 for Firefox 38 ESR [RHEL-5.11]
Status: CLOSED ERRATA
Product: Red Hat Enterprise Linux 5
Classification: Red Hat
Component: nss (Show other bugs)
5.11
Unspecified Unspecified
unspecified Severity unspecified
: rc
: ---
Assigned To: Elio Maldonado Batiz
Hubert Kario
: Rebase
: 1200942 (view as bug list)
Depends On: 1200921
Blocks: 1200500
  Show dependency treegraph
 
Reported: 2015-03-11 11:40 EDT by Elio Maldonado Batiz
Modified: 2015-05-05 02:36 EDT (History)
7 users (show)

See Also:
Fixed In Version: nss-3.18.0-6.el5_11
Doc Type: Rebase: Bug Fixes and Enhancements
Doc Text:
The nss packages have been upgraded to upstream version 3.18.0, and the nspr packages have been upgraded to upstream version 4.10.8. The upgraded versions provide a number of bug fixes and enhancements over the previous versions. Notably, these upgrades allow users to upgrade to Mozilla Firefox 38 Extended Support Release.
Story Points: ---
Clone Of:
Environment:
Last Closed: 2015-05-05 02:36:20 EDT
Type: Bug
Regression: ---
Mount Type: ---
Documentation: ---
CRM:
Verified Versions:
Category: ---
oVirt Team: ---
RHEL 7.3 requirements from Atomic Host:
Cloudforms Team: ---


Attachments (Terms of Use)
Patch to keep 1024 bit legacy CA certificates enabled in the NSS root CA module (117.31 KB, patch)
2015-03-25 13:29 EDT, Kai Engert (:kaie) (inactive account)
no flags Details | Diff


External Trackers
Tracker ID Priority Status Summary Last Updated
Red Hat Product Errata RHBA-2015:0925 normal SHIPPED_LIVE nss and nspr bug fix and enhancement update 2015-05-05 06:36:01 EDT

  None (edit)
Description Elio Maldonado Batiz 2015-03-11 11:40:21 EDT
Firefox 38 ESR, upstream release date is May 12 2015, requires nss-3.18.
Comment 1 Kai Engert (:kaie) (inactive account) 2015-03-11 13:14:10 EDT
*** Bug 1200942 has been marked as a duplicate of this bug. ***
Comment 2 RHEL Product and Program Management 2015-03-14 13:33:19 EDT
This request was not resolved in time for the current release.
Red Hat invites you to ask your support representative to
propose this request, if still desired, for consideration in
the next release of Red Hat Enterprise Linux.
Comment 5 Kai Engert (:kaie) (inactive account) 2015-03-25 13:29:09 EDT
Created attachment 1006379 [details]
Patch to keep 1024 bit legacy CA certificates enabled in the NSS root CA module

I suggest to include this patch in the NSS 3.18 package.

It keeps the trust flags of legacy root CA certificates enabled, as they were before Mozilla decided to phase them out in Firefox.

This patch has the certificates that were changed in the upstream releases version 2.1, 2.2 and 2.3

See also this page which documents the changes:
https://fedoraproject.org/wiki/CA-Certificates
Comment 13 errata-xmlrpc 2015-05-05 02:36:20 EDT
Since the problem described in this bug report should be
resolved in a recent advisory, it has been closed with a
resolution of ERRATA.

For information on the advisory, and where to find the updated
files, follow the link below.

If the solution does not work for you, open a new bug report.

https://rhn.redhat.com/errata/RHBA-2015-0925.html

Note You need to log in before you can comment on or make changes to this bug.