From 17f8bab0f29236c75687369c74a07141f3a151cbb14c9fd3a6a0df8a4b917ffb Mon Sep 17 00:00:00 2001 From: Wolfgang Rosenauer Date: Wed, 5 Feb 2014 06:01:36 +0000 Subject: [PATCH] * MFSA 2014-12/CVE-2014-1490/CVE-2014-1491 NSS ticket handling issues OBS-URL: https://build.opensuse.org/package/show/mozilla:Factory/mozilla-nss?expand=0&rev=150 --- mozilla-nss.changes | 2 ++ 1 file changed, 2 insertions(+) diff --git a/mozilla-nss.changes b/mozilla-nss.changes index eeb0005..38df0a7 100644 --- a/mozilla-nss.changes +++ b/mozilla-nss.changes @@ -12,6 +12,8 @@ Tue Jan 7 08:39:04 UTC 2014 - wr@rosenauer.org * When false start is enabled, libssl will sometimes return unencrypted, unauthenticated data from PR_Recv (CVE-2013-1740, bmo#919877) + * MFSA 2014-12/CVE-2014-1490/CVE-2014-1491 + NSS ticket handling issues New functionality * Implemented OCSP querying using the HTTP GET method, which is the new default, and will fall back to the HTTP POST method.