Changelog for
gnutls-3.8.3-4.el9_4.x86_64.rpm :
* Fri Apr 05 2024 Daiki Ueno
- 3.8.3-4- Bump release to ensure el9 package is greater than el9_
* packages
* Fri Mar 22 2024 Daiki Ueno - 3.8.3-3- Bump release to ensure el9 package is greater than el9_
* packages
* Thu Mar 21 2024 Daiki Ueno - 3.8.3-2- Fix timing side-channel in deterministic ECDSA (RHEL-28959)- Fix potential crash during chain building/verification (RHEL-28954)
* Tue Jan 23 2024 Daiki Ueno - 3.8.3-1- Update to gnutls 3.8.3 (RHEL-14891)
* Mon Jan 22 2024 Daiki Ueno - 3.8.2-3- Skip KTLS test exercising ChaCha20-Poly1305 in TLS 1.3 as well (RHEL-18498)
* Fri Dec 08 2023 Daiki Ueno - 3.8.2-2- Bump nettle dependency to 3.9.1- Skip KTLS test exercising ChaCha20-Poly1305 in TLS 1.2 (RHEL-18498)
* Thu Nov 16 2023 Daiki Ueno - 3.8.2-1- Update to gnutls 3.8.2 (RHEL-14891)
* Sat Jul 29 2023 Daiki Ueno - 3.7.6-23- Mark SHA-1 signature verification non-approved in FIPS (#2102751)
* Tue Jul 18 2023 Daiki Ueno - 3.7.6-22- Skip KTLS test on old kernel if host and target arches are different
* Thu Jul 13 2023 Daiki Ueno - 3.7.6-21- Require use of extended master secret in FIPS mode by default (#2157953)
* Tue Mar 14 2023 Daiki Ueno - 3.7.6-20- Fix the previous change (#2175214)
* Fri Mar 10 2023 Daiki Ueno - 3.7.6-19- Bump release to ensure el9 package is greater than el9_
* packages (#2175214)
* Tue Feb 28 2023 Daiki Ueno - 3.7.6-18- Update gnutls-3.7.8-fips-pct-dh.patch to the upstream version (#2168143)
* Fri Feb 10 2023 Daiki Ueno - 3.7.6-17- Fix timing side-channel in TLS RSA key exchange (#2162601)
* Fri Feb 10 2023 Daiki Ueno - 3.7.6-16- fips: extend PCT to DH key generation (#2168143)
* Thu Dec 15 2022 Zoltan Fridrich - 3.7.6-15- fips: rename hmac file to its previous name (#2148269)
* Tue Nov 22 2022 Daiki Ueno - 3.7.6-14- cipher: add restriction on CCM tag length under FIPS mode (#2137807)- nettle: mark non-compliant RSA-PSS salt length to be not-approved (#2143266)
* Tue Nov 15 2022 Zoltan Fridrich - 3.7.6-13- fips: make XTS key check failure not fatal (#2130971)- enable source archive verification again (#2127094)- clear server\'s session ticket indication at rehandshake (#2136072)- crypto-api: add block cipher API with automatic padding (#2084161)- fips: remove library path checking from FIPS integrity check (#2140908)
* Tue Sep 27 2022 Daiki Ueno - 3.7.6-12- fips: mark PBKDF2 with short key and output sizes non-approved- fips: only mark HMAC as approved in PBKDF2- fips: mark gnutls_key_generate with short key sizes non-approved- fips: fix checking on hash algorithm used in ECDSA- fips: preserve operation context around FIPS selftests API
* Fri Aug 26 2022 Daiki Ueno - 3.7.6-11- Supply --with{,out}-{zlib,brotli,zstd} explicitly
* Thu Aug 25 2022 Daiki Ueno - 3.7.6-10- Revert nettle version pinning as it doesn\'t work well in side-tag
* Thu Aug 25 2022 Daiki Ueno - 3.7.6-9- Pin nettle version in Requires when compiled with FIPS
* Tue Aug 23 2022 Daiki Ueno - 3.7.6-8- Bundle GMP to privatize memory functions- Disable certificate compression support by default
* Tue Aug 23 2022 Daiki Ueno - 3.7.6-7- Update gnutls-3.7.6-cpuid-fixes.patch
* Sat Aug 20 2022 Daiki Ueno - 3.7.6-6- Mark RSA SigVer operation approved for known modulus sizes (#2091903)- accelerated: clear AVX bits if it cannot be queried through XSAVE
* Thu Aug 04 2022 Daiki Ueno - 3.7.6-5- Block DES-CBC usage in decrypting PKCS#12 bag under FIPS (#2115244)- sysrng: reseed source DRBG for prediction resistance
* Fri Jul 29 2022 Daiki Ueno - 3.7.6-4- Make gnutls-cli work with KTLS for testing- Fix double-free in gnutls_pkcs7_verify (#2109790)
* Mon Jul 25 2022 Daiki Ueno - 3.7.6-3- Limit input size for AES-GCM according to SP800-38D (#2095251)- Do not treat GPG verification errors as fatal- Remove gnutls-3.7.6-libgnutlsxx-const.patch
* Tue Jul 19 2022 Daiki Ueno - 3.7.6-2- Allow enabling KTLS with config file (#2042009)
* Fri Jul 01 2022 Daiki Ueno - 3.7.6-1- Update to gnutls 3.7.6 (#2097327)