Index index by Group index by Distribution index by Vendor index by creation date index by Name Mirrors Help Search

gnutls-utils-3.8.10-9.el9_8 RPM for s390x

From AlmaLinux 9.8 AppStream for s390x

Name: gnutls-utils Distribution: AlmaLinux
Version: 3.8.10 Vendor: AlmaLinux
Release: 9.el9_8 Build date: Tue Oct 6 09:40:20 2026
Group: Unspecified Build host: s390x-builder02.almalinux.org
Size: 1017042 Source RPM: gnutls-3.8.10-9.el9_8.src.rpm
Packager: AlmaLinux Packaging Team <packager@almalinux.org>
Url: http://www.gnutls.org/
Summary: Command line tools for TLS protocol
GnuTLS is a secure communications library implementing the SSL, TLS and DTLS
protocols and technologies around them. It provides a simple C language
application programming interface (API) to access the secure communications
protocols as well as APIs to parse and write X.509, PKCS #12, OpenPGP and
other required structures.
This package contains command line TLS client and server and certificate
manipulation tools.

Provides

Requires

License

GPLv3+

Changelog

* Mon Sep 21 2026 Alexander Sosedkin <asosedkin@redhat.com> - 3.8.10-9
  - Mark ML-KEM FIPS-unapproved (RHEL-250213)
* Wed Jul 08 2026 Alexander Sosedkin <asosedkin@redhat.com> - 3.8.10-8
  - Rebuild to target RHEL-9.8
* Thu Jul 02 2026 Alexander Sosedkin <asosedkin@redhat.com> - 3.8.10-7
  - fips: Allow SigVer only with RSA keys with modulus >= 2048 bits
* Fri Jun 12 2026 Daiki Ueno  <dueno@redhat.com> - 3.8.10-6
  - Fix order of previous changelog entries (RHEL-172270)
* Tue Jun 09 2026 Daiki Ueno  <dueno@redhat.com> - 3.8.10-5
  - Use full hash+sign operations in pct_test (RHEL-172270)
* Thu Apr 30 2026 Alexander Sosedkin <asosedkin@redhat.com> - 3.8.10-4
  - Fix CVE-2026-33846 (DTLS fragment reassembly, High, heap overwrite)
  - Fix CVE-2026-42009 (DTLS fragment reassembly, High, undefined behaviour)
  - Fix CVE-2026-33845 (DTLS fragment reassembly, High, heap overread)
  - Fix CVE-2026-42010 (PSK authentication, High, authentication bypass)
  - Fix CVE-2026-3833 (Name constraints, Medium, name constraint bypass)
  - Fix CVE-2026-42011 (Name constraints, Medium, name constraint bypass)
  - Fix CVE-2026-42012 (CN fallback, Medium, certificate misuse)
  - Fix CVE-2026-42013 (CN fallback, Medium, certificate misuse)
  - Fix CVE-2026-42014 (PKCS#11 PIN change, Medium, use-after-free)
  - Fix CVE-2026-5260 (PKCS#11 RSA, Medium, heap overread)
  - Fix CVE-2026-42015 (PKCS#12 appending, Low, heap overwrite)
  - Fix CVE-2026-3832 (OCSP, Low, revocation bypass)
  - Fix CVE-2026-5419 (PKCS#7, Low, timing side-channel)
  - Fix upstream security issue #1808 (PSK rehandshake)
  - Fix upstream security issue #1810 (EKU OID prefix match)
  - Fix upstream security issue #1813 (pkcs11-provider persistent keys)
  - Fix upstream security issue #1818 (RSA correctness, OpenSSL format import)
  - Fix upstream security issue #1819 (PKCS#11 trust removal error path)
  - Fix upstream security issue #1822 (SCT extension parser OOB read)
  - Fix upstream security issue #1841 (key zeroization in hybrid kex)
  - Fix upstream security issue #1823 (malformed certtool template)
  - Fix upstream security issue #1817 (session parameter loading robustness)
  - Fix upstream security issue #1820 (PKCS#11 KDF succeeding w/o deriving)
  - gnutls-3.8.10-CVE-2025-9820.patch: update Makefile.in
* Fri Feb 06 2026 Alexander Sosedkin <asosedkin@redhat.com> - 3.8.10-3
  - Fix PKCS#11 token initialization label overflow (CVE-2025-9820)
  - Fix name constraint processing performance issue (CVE-2025-14831)
* Wed Jan 14 2026 Alexander Sosedkin <asosedkin@redhat.com> - 3.8.10-2
  - Reinstate and update the prematurely dropped rekeying patch
* Thu Nov 06 2025 Alexander Sosedkin <asosedkin@redhat.com> - 3.8.10-1
  - Rebase to 3.8.10
  - Revert defaulting to PBMAC1 in FIPS mode
  - Revert unapproving 1024-, 1280-, 1536- and 1792-bit RSA verification
* Tue Aug 05 2025 Daiki Ueno <dueno@redhat.com> - 3.8.3-9
  - key_update: rework the rekeying logic (RHEL-107499)
* Fri Jul 18 2025 Daiki Ueno <dueno@redhat.com> - 3.8.3-8
  - Add missing changelog entry
* Fri Jul 18 2025 Daiki Ueno <dueno@redhat.com> - 3.8.3-7
  - Fix CVE-2025-32988, CVE-2025-32989, CVE-2025-32990, and CVE-2025-6395
* Mon Feb 17 2025 Daiki Ueno <dueno@redhat.com> - 3.8.3-6
  - Bump nettle dependency to 3.10.1 (RHEL-52740)
* Wed Feb 12 2025 Alexander Sosedkin <asosedki@redhat.com> - 3.8.3-5
  - Backport the fix for CVE-2024-12243 (RHEL-78580)

Files

/usr/bin/certtool
/usr/bin/danetool
/usr/bin/gnutls-cli
/usr/bin/gnutls-cli-debug
/usr/bin/gnutls-serv
/usr/bin/ocsptool
/usr/bin/p11tool
/usr/bin/psktool
/usr/bin/srptool
/usr/lib/.build-id
/usr/lib/.build-id/36
/usr/lib/.build-id/36/9f44dae6ab375837421d4d6ae07195544aee1a
/usr/lib/.build-id/5e
/usr/lib/.build-id/5e/c47d25f11a3b57607962134942f1c1367d966f
/usr/lib/.build-id/6a
/usr/lib/.build-id/6a/16c24b514ef9053ac181301cbbef18269e8e1b
/usr/lib/.build-id/9a
/usr/lib/.build-id/9a/f499af0201cf565617b918dabee13c1ed58b74
/usr/lib/.build-id/ae
/usr/lib/.build-id/ae/9d5c22613e2157c3d3651c430db2ab989c58b6
/usr/lib/.build-id/da
/usr/lib/.build-id/da/8ac7e9039988cff7d28e731dc424d4327bcd8f
/usr/lib/.build-id/e4
/usr/lib/.build-id/e4/0968fc7d2dc5032b1a467e59abe77f322eda41
/usr/lib/.build-id/ed
/usr/lib/.build-id/ed/705045a80c3a4dc9870baedb1539bffeda585c
/usr/lib/.build-id/fe
/usr/lib/.build-id/fe/260d029bf18d7bb45f53d5a12309e8ecc2549c
/usr/share/doc/gnutls-utils
/usr/share/doc/gnutls-utils/certtool.cfg
/usr/share/man/man1/certtool.1.gz
/usr/share/man/man1/danetool.1.gz
/usr/share/man/man1/gnutls-cli-debug.1.gz
/usr/share/man/man1/gnutls-cli.1.gz
/usr/share/man/man1/gnutls-serv.1.gz
/usr/share/man/man1/ocsptool.1.gz
/usr/share/man/man1/p11tool.1.gz
/usr/share/man/man1/psktool.1.gz
/usr/share/man/man1/srptool.1.gz
/usr/share/man/man1/tpmtool.1.gz


Generated by rpm2html 1.8.1

Fabrice Bellet, Thu Oct 8 06:55:30 2026