| Index | index by Group | index by Distribution | index by Vendor | index by creation date | index by Name | Mirrors | Help | Search |
| Name: gnutls-utils | Distribution: CentOS |
| Version: 3.8.10 | Vendor: CentOS |
| Release: 9.el9 | Build date: Mon Sep 21 20:17:18 2026 |
| Group: Unspecified | Build host: x86-03.stream.rdu2.redhat.com |
| Size: 1027914 | Source RPM: gnutls-3.8.10-9.el9.src.rpm |
| Packager: builder@centos.org | |
| Url: http://www.gnutls.org/ | |
| Summary: Command line tools for TLS protocol | |
GnuTLS is a secure communications library implementing the SSL, TLS and DTLS protocols and technologies around them. It provides a simple C language application programming interface (API) to access the secure communications protocols as well as APIs to parse and write X.509, PKCS #12, OpenPGP and other required structures. This package contains command line TLS client and server and certificate manipulation tools.
GPLv3+
* Mon Sep 21 2026 Alexander Sosedkin <asosedkin@redhat.com> - 3.8.10-9 - Mark ML-KEM FIPS-unapproved (RHEL-250213) * Wed Jul 08 2026 Alexander Sosedkin <asosedkin@redhat.com> - 3.8.10-8 - Rebuild to target RHEL-9.8 * Thu Jul 02 2026 Alexander Sosedkin <asosedkin@redhat.com> - 3.8.10-7 - fips: Allow SigVer only with RSA keys with modulus >= 2048 bits * Fri Jun 12 2026 Daiki Ueno <dueno@redhat.com> - 3.8.10-6 - Fix order of previous changelog entries (RHEL-172270) * Tue Jun 09 2026 Daiki Ueno <dueno@redhat.com> - 3.8.10-5 - Use full hash+sign operations in pct_test (RHEL-172270) * Thu Apr 30 2026 Alexander Sosedkin <asosedkin@redhat.com> - 3.8.10-4 - Fix CVE-2026-33846 (DTLS fragment reassembly, High, heap overwrite) - Fix CVE-2026-42009 (DTLS fragment reassembly, High, undefined behaviour) - Fix CVE-2026-33845 (DTLS fragment reassembly, High, heap overread) - Fix CVE-2026-42010 (PSK authentication, High, authentication bypass) - Fix CVE-2026-3833 (Name constraints, Medium, name constraint bypass) - Fix CVE-2026-42011 (Name constraints, Medium, name constraint bypass) - Fix CVE-2026-42012 (CN fallback, Medium, certificate misuse) - Fix CVE-2026-42013 (CN fallback, Medium, certificate misuse) - Fix CVE-2026-42014 (PKCS#11 PIN change, Medium, use-after-free) - Fix CVE-2026-5260 (PKCS#11 RSA, Medium, heap overread) - Fix CVE-2026-42015 (PKCS#12 appending, Low, heap overwrite) - Fix CVE-2026-3832 (OCSP, Low, revocation bypass) - Fix CVE-2026-5419 (PKCS#7, Low, timing side-channel) - Fix upstream security issue #1808 (PSK rehandshake) - Fix upstream security issue #1810 (EKU OID prefix match) - Fix upstream security issue #1813 (pkcs11-provider persistent keys) - Fix upstream security issue #1818 (RSA correctness, OpenSSL format import) - Fix upstream security issue #1819 (PKCS#11 trust removal error path) - Fix upstream security issue #1822 (SCT extension parser OOB read) - Fix upstream security issue #1841 (key zeroization in hybrid kex) - Fix upstream security issue #1823 (malformed certtool template) - Fix upstream security issue #1817 (session parameter loading robustness) - Fix upstream security issue #1820 (PKCS#11 KDF succeeding w/o deriving) - gnutls-3.8.10-CVE-2025-9820.patch: update Makefile.in * Fri Feb 06 2026 Alexander Sosedkin <asosedkin@redhat.com> - 3.8.10-3 - Fix PKCS#11 token initialization label overflow (CVE-2025-9820) - Fix name constraint processing performance issue (CVE-2025-14831) * Wed Jan 14 2026 Alexander Sosedkin <asosedkin@redhat.com> - 3.8.10-2 - Reinstate and update the prematurely dropped rekeying patch * Thu Nov 06 2025 Alexander Sosedkin <asosedkin@redhat.com> - 3.8.10-1 - Rebase to 3.8.10 - Revert defaulting to PBMAC1 in FIPS mode - Revert unapproving 1024-, 1280-, 1536- and 1792-bit RSA verification * Tue Aug 05 2025 Daiki Ueno <dueno@redhat.com> - 3.8.3-9 - key_update: rework the rekeying logic (RHEL-107499) * Fri Jul 18 2025 Daiki Ueno <dueno@redhat.com> - 3.8.3-8 - Add missing changelog entry * Fri Jul 18 2025 Daiki Ueno <dueno@redhat.com> - 3.8.3-7 - Fix CVE-2025-32988, CVE-2025-32989, CVE-2025-32990, and CVE-2025-6395 * Mon Feb 17 2025 Daiki Ueno <dueno@redhat.com> - 3.8.3-6 - Bump nettle dependency to 3.10.1 (RHEL-52740) * Wed Feb 12 2025 Alexander Sosedkin <asosedki@redhat.com> - 3.8.3-5 - Backport the fix for CVE-2024-12243 (RHEL-78580)
/usr/bin/certtool /usr/bin/danetool /usr/bin/gnutls-cli /usr/bin/gnutls-cli-debug /usr/bin/gnutls-serv /usr/bin/ocsptool /usr/bin/p11tool /usr/bin/psktool /usr/bin/srptool /usr/lib/.build-id /usr/lib/.build-id/10 /usr/lib/.build-id/10/60021907a67586202f47ab71f66a3bb24af6e8 /usr/lib/.build-id/32 /usr/lib/.build-id/32/58f4c2e7e6a7ca35f71cfde2d93a62ac50d87b /usr/lib/.build-id/3f /usr/lib/.build-id/3f/3e4159f7b05ca4df0fb3106c1d6a9cb1150f3a /usr/lib/.build-id/4d /usr/lib/.build-id/4d/4f431b4ae27bee333fbe4d15c66d5732c1c020 /usr/lib/.build-id/86 /usr/lib/.build-id/86/4dfaae0f14f1093921ebd96f3dfb0806d653c7 /usr/lib/.build-id/a1 /usr/lib/.build-id/a1/7d22ee10340c5ed8cf3e174fc5f17d9590a028 /usr/lib/.build-id/a6 /usr/lib/.build-id/a6/d2c82887c0480eb2b1fc3c637e0a076aea9840 /usr/lib/.build-id/a8 /usr/lib/.build-id/a8/047325020a27873dc530655f04138d5ec0913f /usr/lib/.build-id/e7 /usr/lib/.build-id/e7/f1b9a9577b05a188972143c3888dc4dacd2cc1 /usr/share/doc/gnutls-utils /usr/share/doc/gnutls-utils/certtool.cfg /usr/share/man/man1/certtool.1.gz /usr/share/man/man1/danetool.1.gz /usr/share/man/man1/gnutls-cli-debug.1.gz /usr/share/man/man1/gnutls-cli.1.gz /usr/share/man/man1/gnutls-serv.1.gz /usr/share/man/man1/ocsptool.1.gz /usr/share/man/man1/p11tool.1.gz /usr/share/man/man1/psktool.1.gz /usr/share/man/man1/srptool.1.gz /usr/share/man/man1/tpmtool.1.gz
Generated by rpm2html 1.8.1
Fabrice Bellet, Thu Oct 8 04:27:05 2026