Alerts This Week
Warning Icon 1 692
Alerts This Week
Warning Icon 1 692

Ubuntu 16: 2020-1234 Moderate: OpenSSL Encryption Vulnerability Fix

fedora
Calendar Grey June 14, 2015
Dist Fedora Esm H88
NSS 3.19.1 release mitigates Logjam vulnerability for Fedora 20 through essential security enhancements and detailed update guidelines.
Security fix for CVE-2015-4000 Update to the upstream NSS 3.19.1 release, which includes a fix for the recently published logjam attack

Summary

Utilities for Network Security Services and the Softoken module

Update Information:

Security fix for CVE-2015-4000

Update to the upstream NSS 3.19.1 release, which includes a fix for the recently published logjam attack.

The previous 3.19 release made several notable changes related to the TLS protocol, one of them was to disable the SSL 3 protocol by default.

For the full list of changes in the 3.19 and 3.19.1 releases, please refer to the upstream release notes documents:



Change Log

* Thu May 28 2015 Kai Engert - 3.19.1-1.0 - Update to NSS 3.19.1 * Tue May 19 2015 Kai Engert - 3.19.0-1.0 - Update to NSS 3.19 * Mon Mar 23 2015 Elio Maldonado - 3.18.0-1 - Update to nss-3.18.0 * Sat Dec 6 2014 Elio Maldonado - 3.17.4-1 - Update to nss-3.17.4 * Sat Dec 6 2014 Elio Maldonado - 3.17.3-1 - Update to nss-3.17.3 * Mon Oct 13 2014 Elio Maldonado - 3.17.2-1 - Update to nss-3.17.2 * Wed Sep 24 2014 Kai Engert - 3.17.1-1 - Update to nss-3.17.1 * Fri Aug 22 2014 Elio Maldonado - 3.16.2-2 - Update to nss-3.17.0 * Mon Jun 30 2014 Elio Maldonado - 3.16.2-1 - Update to nss-3.16.2 * Wed May 7 2014 Elio Maldonado - 3.16.1-1 - Update to nss-3.16.1 - Resolves: Bug 1094702 - nss-3.16.1 is available * Tue Mar 18 2014 Elio Maldonado - 3.16.0-0 - Update to nss-3.16.0 * Fri Feb 28 2014 Elio Maldonado - 3.15.5-1 - Update to nss-3.15.5 - Resolves: Bug 1066877 * Tue Jan 7 2014 Elio Maldonado - 3.15.4-1 - Update to NSS_3_15_4_RTM - Resolves: Bug 1049229 - nss-3.15.4 is available * Sun Dec 1 2013 Elio Maldonado - 3.15.3-1 - Update to NSS_3_15_3_RTM - Related: Bug 1031897 - CVE-2013-5605 CVE-2013-5606 CVE-2013-1741

References


[ 1 ] Bug #1223211 - CVE-2015-4000 LOGJAM: TLS connections which support export grade DHE key-exchange are vulnerable to MITM attacks https://bugzilla.redhat.com/show_bug.cgi?id=1223211

Update Instructions

This update can be installed with the "yum" update program. Use su -c 'yum update nss-util' at the command line. For more information, refer to "Managing Software with yum", available at .

Name: nss-util
Product: Fedora 20
Version: 3.19.1
Release: 1.0.fc20
Summary: Network Security Services Utilities Library

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Related News

Your message here