Index index by Group index by Distribution index by Vendor index by creation date index by Name Mirrors Help Search

gnutls-utils-3.8.10-9.el9 RPM for s390x

From CentOS Stream 9 AppStream for s390x

Name: gnutls-utils Distribution: CentOS
Version: 3.8.10 Vendor: CentOS
Release: 9.el9 Build date: Mon Sep 21 20:15:32 2026
Group: Unspecified Build host: s390-07.stream.rdu2.redhat.com
Size: 1017026 Source RPM: gnutls-3.8.10-9.el9.src.rpm
Packager: builder@centos.org
Url: http://www.gnutls.org/
Summary: Command line tools for TLS protocol
GnuTLS is a secure communications library implementing the SSL, TLS and DTLS
protocols and technologies around them. It provides a simple C language
application programming interface (API) to access the secure communications
protocols as well as APIs to parse and write X.509, PKCS #12, OpenPGP and
other required structures.
This package contains command line TLS client and server and certificate
manipulation tools.

Provides

Requires

License

GPLv3+

Changelog

* Mon Sep 21 2026 Alexander Sosedkin <asosedkin@redhat.com> - 3.8.10-9
  - Mark ML-KEM FIPS-unapproved (RHEL-250213)
* Wed Jul 08 2026 Alexander Sosedkin <asosedkin@redhat.com> - 3.8.10-8
  - Rebuild to target RHEL-9.8
* Thu Jul 02 2026 Alexander Sosedkin <asosedkin@redhat.com> - 3.8.10-7
  - fips: Allow SigVer only with RSA keys with modulus >= 2048 bits
* Fri Jun 12 2026 Daiki Ueno  <dueno@redhat.com> - 3.8.10-6
  - Fix order of previous changelog entries (RHEL-172270)
* Tue Jun 09 2026 Daiki Ueno  <dueno@redhat.com> - 3.8.10-5
  - Use full hash+sign operations in pct_test (RHEL-172270)
* Thu Apr 30 2026 Alexander Sosedkin <asosedkin@redhat.com> - 3.8.10-4
  - Fix CVE-2026-33846 (DTLS fragment reassembly, High, heap overwrite)
  - Fix CVE-2026-42009 (DTLS fragment reassembly, High, undefined behaviour)
  - Fix CVE-2026-33845 (DTLS fragment reassembly, High, heap overread)
  - Fix CVE-2026-42010 (PSK authentication, High, authentication bypass)
  - Fix CVE-2026-3833 (Name constraints, Medium, name constraint bypass)
  - Fix CVE-2026-42011 (Name constraints, Medium, name constraint bypass)
  - Fix CVE-2026-42012 (CN fallback, Medium, certificate misuse)
  - Fix CVE-2026-42013 (CN fallback, Medium, certificate misuse)
  - Fix CVE-2026-42014 (PKCS#11 PIN change, Medium, use-after-free)
  - Fix CVE-2026-5260 (PKCS#11 RSA, Medium, heap overread)
  - Fix CVE-2026-42015 (PKCS#12 appending, Low, heap overwrite)
  - Fix CVE-2026-3832 (OCSP, Low, revocation bypass)
  - Fix CVE-2026-5419 (PKCS#7, Low, timing side-channel)
  - Fix upstream security issue #1808 (PSK rehandshake)
  - Fix upstream security issue #1810 (EKU OID prefix match)
  - Fix upstream security issue #1813 (pkcs11-provider persistent keys)
  - Fix upstream security issue #1818 (RSA correctness, OpenSSL format import)
  - Fix upstream security issue #1819 (PKCS#11 trust removal error path)
  - Fix upstream security issue #1822 (SCT extension parser OOB read)
  - Fix upstream security issue #1841 (key zeroization in hybrid kex)
  - Fix upstream security issue #1823 (malformed certtool template)
  - Fix upstream security issue #1817 (session parameter loading robustness)
  - Fix upstream security issue #1820 (PKCS#11 KDF succeeding w/o deriving)
  - gnutls-3.8.10-CVE-2025-9820.patch: update Makefile.in
* Fri Feb 06 2026 Alexander Sosedkin <asosedkin@redhat.com> - 3.8.10-3
  - Fix PKCS#11 token initialization label overflow (CVE-2025-9820)
  - Fix name constraint processing performance issue (CVE-2025-14831)
* Wed Jan 14 2026 Alexander Sosedkin <asosedkin@redhat.com> - 3.8.10-2
  - Reinstate and update the prematurely dropped rekeying patch
* Thu Nov 06 2025 Alexander Sosedkin <asosedkin@redhat.com> - 3.8.10-1
  - Rebase to 3.8.10
  - Revert defaulting to PBMAC1 in FIPS mode
  - Revert unapproving 1024-, 1280-, 1536- and 1792-bit RSA verification
* Tue Aug 05 2025 Daiki Ueno <dueno@redhat.com> - 3.8.3-9
  - key_update: rework the rekeying logic (RHEL-107499)
* Fri Jul 18 2025 Daiki Ueno <dueno@redhat.com> - 3.8.3-8
  - Add missing changelog entry
* Fri Jul 18 2025 Daiki Ueno <dueno@redhat.com> - 3.8.3-7
  - Fix CVE-2025-32988, CVE-2025-32989, CVE-2025-32990, and CVE-2025-6395
* Mon Feb 17 2025 Daiki Ueno <dueno@redhat.com> - 3.8.3-6
  - Bump nettle dependency to 3.10.1 (RHEL-52740)
* Wed Feb 12 2025 Alexander Sosedkin <asosedki@redhat.com> - 3.8.3-5
  - Backport the fix for CVE-2024-12243 (RHEL-78580)

Files

/usr/bin/certtool
/usr/bin/danetool
/usr/bin/gnutls-cli
/usr/bin/gnutls-cli-debug
/usr/bin/gnutls-serv
/usr/bin/ocsptool
/usr/bin/p11tool
/usr/bin/psktool
/usr/bin/srptool
/usr/lib/.build-id
/usr/lib/.build-id/1f
/usr/lib/.build-id/1f/292f64c27aee4f66897fce3095e46037c151a8
/usr/lib/.build-id/2b
/usr/lib/.build-id/2b/6603b9cc6ab33e6d9a1b93ce4c0dcea6b9dcca
/usr/lib/.build-id/6a
/usr/lib/.build-id/6a/8addb8dc2c4bed65d85192c8db188305730809
/usr/lib/.build-id/6f
/usr/lib/.build-id/6f/e6bd5440c0d82cbf0ceffdca7e95e7c657e5d5
/usr/lib/.build-id/8b
/usr/lib/.build-id/8b/4b730b56396d6d25b18b043adfd517acfb36a8
/usr/lib/.build-id/98
/usr/lib/.build-id/98/3c8375fe19291b471c81ca0472d78cb6e95e81
/usr/lib/.build-id/b3
/usr/lib/.build-id/b3/e74855c5ee3ef1b3aa9e969338f0bf51ae0c2b
/usr/lib/.build-id/bc
/usr/lib/.build-id/bc/8b7e9b88c1bd951d3f82981232b66a5e0693d6
/usr/lib/.build-id/c1
/usr/lib/.build-id/c1/debea6e8cd206f751b531e50c57550c416c973
/usr/share/doc/gnutls-utils
/usr/share/doc/gnutls-utils/certtool.cfg
/usr/share/man/man1/certtool.1.gz
/usr/share/man/man1/danetool.1.gz
/usr/share/man/man1/gnutls-cli-debug.1.gz
/usr/share/man/man1/gnutls-cli.1.gz
/usr/share/man/man1/gnutls-serv.1.gz
/usr/share/man/man1/ocsptool.1.gz
/usr/share/man/man1/p11tool.1.gz
/usr/share/man/man1/psktool.1.gz
/usr/share/man/man1/srptool.1.gz
/usr/share/man/man1/tpmtool.1.gz


Generated by rpm2html 1.8.1

Fabrice Bellet, Thu Oct 1 04:12:52 2026