Hide Forgot
setroubleshoot should be ported to use NSS library for cryptography. See the tracking bug for details and links on how it could be done.
The only use of cryptographic code I'm aware of is in code we got off the web to compute an UUID. That module has 5 different ways of computing a UUID, one uses md5 and the other sha, neither of which we ever use or call. I don't think there is anything to be done here except possibly deleting the unused code which triggered setroubleshoots inclusion in the list of packages to update. If you want I can delete the code. Do you want me to do that or just close the bug?
If the code is not called then it can be closed notabug.