Name: | gnutls-dane |
---|---|
Version: | 3.7.6 |
Release: | 23.el9_3.4 |
Architecture: | aarch64 |
Group: | Unspecified |
Size: | 69612 |
License: | GPLv3+ and LGPLv2+ |
RPM: | gnutls-dane-3.7.6-23.el9_3.4.aarch64.rpm |
Source RPM: | gnutls-3.7.6-23.el9_3.4.src.rpm |
Build Date: | Thu Apr 18 2024 |
Build Host: | build-ol9-aarch64.oracle.com |
Vendor: | Oracle America |
URL: | http://www.gnutls.org/ |
Summary: | A DANE protocol implementation for GnuTLS |
Description: | GnuTLS is a secure communications library implementing the SSL, TLS and DTLS protocols and technologies around them. It provides a simple C language application programming interface (API) to access the secure communications protocols as well as APIs to parse and write X.509, PKCS #12, OpenPGP and other required structures. This package contains library that implements the DANE protocol for verifying TLS certificates through DNSSEC. |
- Fix timing side-channel in deterministic ECDSA (RHEL-28958) - Fix potential crash during chain building/verification (RHEL-28953)
- x509: detect loop in certificate chain (RHEL-21759) - fips: Zeroize temporary values in integrity check (RHEL-21870)
- auth/rsa_psk: minimize branching after decryption
- auth/rsa_psk: side-step potential side-channel (RHEL-16755)
- Mark SHA-1 signature verification non-approved in FIPS (#2102751)
- Skip KTLS test on old kernel if host and target arches are different
- Require use of extended master secret in FIPS mode by default (#2157953)
- Fix the previous change (#2175214)
- Bump release to ensure el9 package is greater than el9_* packages (#2175214)
- Update gnutls-3.7.8-fips-pct-dh.patch to the upstream version (#2168143)