nss: security bump to version 3.23
authorGustavo Zacarias <gustavo@zacarias.com.ar>
Wed, 30 Mar 2016 19:51:07 +0000 (16:51 -0300)
committerThomas Petazzoni <thomas.petazzoni@free-electrons.com>
Thu, 31 Mar 2016 01:43:58 +0000 (03:43 +0200)
commitab61031a34df8875cec0d9c605f7f69840c11cfe
tree1655a56b89167ee18cbd79dd5e46205c582ae780
parent3025e84409f16407e50fd5f41e7cfd6c22066cee
nss: security bump to version 3.23

Fixes:
CVE-2016-1950 - Fixed a heap-based buffer overflow related to the
parsing of certain ASN.1 structures. An attacker could create a
specially-crafted certificate which, when parsed by NSS, would cause a
crash or execution of arbitrary code with the permissions of the user.

Signed-off-by: Gustavo Zacarias <gustavo@zacarias.com.ar>
Signed-off-by: Thomas Petazzoni <thomas.petazzoni@free-electrons.com>
package/libnss/libnss.hash
package/libnss/libnss.mk