846be6085c
* bmo#1623338 - ride along: remove a duplicated doc page * bmo#1623338 - remove a reference to IRC * bmo#1831983 - clang-format lib/freebl/stubs.c * bmo#1831983 - Add a constant time select function * bmo#1774657 - Updating an old dbm with lots of certs with keys to sql results in a database that is slow to access. * bmo#1830973 - output early build errors by default * bmo#1804505 - Update the technical constraints for KamuSM * bmo#1822921 - Add BJCA Global Root CA1 and CA2 root certificates * bmo#1790763 - Enable default UBSan Checks * bmo#1786018 - Add explicit handling of zero length records * bmo#1829391 - Tidy up DTLS ACK Error Handling Path * bmo#1786018 - Refactor zero length record tests * bmo#1829112 - Fix compiler warning via correct assert * bmo#1755267 - run linux tests on nss-t/t-linux-xlarge-gcp * bmo#1806496 - In FIPS mode, nss should reject RSASSA-PSS salt lengths larger than the output size of the hash function used, or provide an indicator * bmo#1784163 - Fix reading raw negative numbers * bmo#1748237 - Repairing unreachable code in clang built with gyp * bmo#1783647 - Integrate Vale Curve25519 * bmo#1799468 - Removing unused flags for Hacl* * bmo#1748237 - Adding a better error message * bmo#1727555 - Update HACL* till 51a72a953a4ee6f91e63b2816ae5c4e62edf35d6 * bmo#1782980 - Fall back to the softokn when writing certificate trust * bmo#1806010 - FIPS-104-3 requires we restart post programmatically * bmo#1826650 - cmd/ecperf: fix dangling pointer warning on gcc 13 * bmo#1818766 - Update ACVP dockerfile for compatibility with debian package changes OBS-URL: https://build.opensuse.org/package/show/mozilla:Factory/mozilla-nss?expand=0&rev=418
41 lines
1.1 KiB
Diff
41 lines
1.1 KiB
Diff
Index: nss/lib/freebl/pqg.c
|
|
===================================================================
|
|
--- nss.orig/lib/freebl/pqg.c
|
|
+++ nss/lib/freebl/pqg.c
|
|
@@ -1232,6 +1232,9 @@ cleanup:
|
|
MP_TO_SEC_ERROR(err);
|
|
rv = SECFailure;
|
|
}
|
|
+ if (rv != SECSuccess) {
|
|
+ mp_zero(G);
|
|
+ }
|
|
return rv;
|
|
}
|
|
|
|
Index: nss/lib/softoken/sftkdb.c
|
|
===================================================================
|
|
--- nss.orig/lib/softoken/sftkdb.c
|
|
+++ nss/lib/softoken/sftkdb.c
|
|
@@ -1538,7 +1538,7 @@ loser:
|
|
PORT_ZFree(data, dataSize);
|
|
}
|
|
if (arena) {
|
|
- PORT_FreeArena(arena, PR_FALSE);
|
|
+ PORT_FreeArena(arena, PR_TRUE);
|
|
}
|
|
return crv;
|
|
}
|
|
Index: nss/lib/softoken/sftkpwd.c
|
|
===================================================================
|
|
--- nss.orig/lib/softoken/sftkpwd.c
|
|
+++ nss/lib/softoken/sftkpwd.c
|
|
@@ -1459,7 +1459,7 @@ loser:
|
|
PORT_ZFree(newKey.data, newKey.len);
|
|
}
|
|
if (result) {
|
|
- SECITEM_FreeItem(result, PR_TRUE);
|
|
+ SECITEM_ZfreeItem(result, PR_TRUE);
|
|
}
|
|
if (rv != SECSuccess) {
|
|
(*keydb->db->sdb_Abort)(keydb->db);
|