NSS 3.70 Release

15 views
Skip to first unread message

Benjamin Beurdouche

unread,
Sep 4, 2021, 2:36:10 PMSep 4
to dev-tec...@mozilla.org
Dear all,


Network Security Services (NSS) 3.70 was released on 4 September 2021.

The HG tag is NSS_3_70_RTM. This version of NSS requires NSPR 4.32 or newer.

NSS 3.70 source distributions are available on ftp.mozilla.org for secure HTTPS download: <https://ftp.mozilla.org/pub/mozilla.org/security/nss/releases/NSS_3_70_RTM/src/>

Changes:
   - Documentation: release notes for NSS 3.70.
   - Documentation: release notes for NSS 3.69.1.
   - Bug 1726022 - Update test case to verify fix.
   - Bug 1714579 - Explicitly disable downgrade check in TlsConnectStreamTls13.EchOuterWith12Max
   - Bug 1714579 - Explicitly disable downgrade check in TlsConnectTest.DisableFalseStartOnFallback
   - Formatting for lib/util
   - Bug 1681975 - Avoid using a lookup table in nssb64d.
   - Bug 1724629 - Use HW accelerated SHA2 on AArch64 Big Endian.
   - Bug 1714579 - Change default value of enableHelloDowngradeCheck to true.
   - Formatting for gtests/pk11_gtest/pk11_hpke_unittest.cc
   - Bug 1726022 - Cache additional PBE entries.
   - Bug 1709750 - Read HPKE vectors from official JSON.
   - Documentation: update for NSS 3.69 release.

NSS 3.70 shared libraries are backwards-compatible with all older NSS 3.x shared libraries. A program linked with older NSS 3.x shared libraries will work with NSS 3.70 shared libraries without recompiling or relinking. Furthermore, applications that restrict their use of NSS APIs to the functions listed in NSS Public Functions will remain compatible with future versions of the NSS shared libraries.

Bugs discovered should be reported by filing a bug report at <https://bugzilla.mozilla.org/enter_bug.cgi?product=NSS>

Release notes will be available at <https://firefox-source-docs.mozilla.org/security/nss/releases/index.html> though you should expect a small delay.


** Additional notes ** 

Please join me in welcoming John Schanck and Dennis Jackson who recently joined me in the NSS team at Mozilla. They have contributed to those changes.

Once again, I would like to address many thanks to
- Bob for his help with important fixes;
- Martin for releasing 3.69;
- Julien for his continuous help with the NSS release;
- Ryan for the last minute uplift of 3.69.1 to Fx92 beta.

Best,
B.

Đoàn Trần Công Danh

unread,
Sep 5, 2021, 4:07:59 AMSep 5
to Benjamin Beurdouche, dev-tec...@mozilla.org
Hello teams,

On 2021-09-04 20:36:06+0200, Benjamin Beurdouche <beurd...@mozilla.com> wrote:
> Network Security Services (NSS) 3.70 was released on 4 September 2021.
>
> The HG tag is NSS_3_70_RTM. This version of NSS requires NSPR 4.32 or newer.
>
> NSS 3.70 source distributions are available on ftp.mozilla.org
> <http://ftp.mozilla.org/> for secure HTTPS download:
> <https://ftp.mozilla.org/pub/mozilla.org/security/nss/releases/NSS_3_70_RTM/src/
> <https://ftp.mozilla.org/pub/mozilla.org/security/nss/releases/NSS_3_70_RTM/src/>>

Not sure if anything happens in the meantime,
however, the NSS_3_70_RTM isn't available for download from
https://ftp.mozilla.org

Would you please check again?

--
Danh

Benjamin Beurdouche

unread,
Sep 5, 2021, 4:11:03 AMSep 5
to Đoàn Trần Công Danh, Thomas Klausner, dev-tec...@mozilla.org
It should work now...
B.
Reply all
Reply to author
Forward
0 new messages