The NSS Development Team announces the release of NSS 3.17.4.
Network Security Services (NSS) 3.17.4 is a patch release for NSS 3.17.
No new functionality is introduced in this release.
Notable Changes:
* If an SSL/TLS connection fails, because client and server don't have
any common protocol version enabled, NSS has been changed to report
error code SSL_ERROR_UNSUPPORTED_VERSION (instead of reporting
SSL_ERROR_NO_CYPHER_OVERLAP).
* libpkix was fixed to prefer the newest certificate, if multiple
certificates match.
* fixed a memory corruption issue during failure of keypair generation.
* fixed a failure to reload a PKCS#11 module in FIPS mode.
* fixed interoperability of NSS server code with a LibreSSL client.
The full release notes are available at
https://developer.mozilla.org/en-US/docs/Mozilla/Projects/NSS/NSS_3.17.4_release_notes
The HG tag is NSS_3_17_4_RTM. NSS 3.17.4 requires NSPR 4.10.7 or newer.
NSS 3.17.4 source distributions are also available on
ftp.mozilla.org
for secure HTTPS download:
https://ftp.mozilla.org/pub/mozilla.org/security/nss/releases/NSS_3_17_4_RTM/src/
A complete list of all bugs resolved in this release can be obtained at
https://bugzilla.mozilla.org/buglist.cgi?resolution=FIXED&classification=Components&query_format=advanced&target_milestone=3.17.4&product=NSS
SHA1SUMS
76beddfea9f1503920e40d7066aa704bbaeef558 nss-3.17.4.tar.gz
3641d13371107a879aed1a6ffcbaf20d8e572114 nss-3.17.4-with-nspr-4.10.7.tar.gz
SHA256SUMS
1d98ad1881a4237ec98cbe472fc851480f0b0e954dfe224d047811fb96ff9d79 nss-3.17.4.tar.gz
21c7bc1f2c2c44d1e0abe66dd96a93ea2a2f3214261404ccb21e5d1075c27f2e nss-3.17.4-with-nspr-4.10.7.tar.gz