id summary reporter owner description type status priority milestone component version severity resolution keywords cc 7158 gnutls-3.4.7 Pierre Labastie Fernando de Oliveira "New point version ftp://ftp.gnutls.org/gcrypt/gnutls/v3.4/gnutls-3.4.7.tar.xz ftp://ftp.gnutls.org/gcrypt/gnutls/v3.4/gnutls-3.4.7.tar.xz.sig [http://www.gnutls.org/security.html] Only refers to GnuTLS version < 3.3.14, which is not our case: {{{ Tag GNUTLS-SA-2015-4 ... }}} [https://lists.gnupg.org/pipermail/gnutls-help/2015-November/004015.html] {{{ [gnutls-help] gnutls 3.4.7 Nikos Mavrogiannopoulos nmav at gnutls.org Sun Nov 22 13:46:35 CET 2015 Hello, I've just released gnutls 3.4.7. This version fixes bugs and adds minor features to the next stable branch. * Version 3.4.7 (released 2015-11-22) ** libgnutls: Properly require TLS 1.2 in all CBC-SHA256 and CBC-SHA384 ciphersuites. This solves an interoperability issue with openssl. Reported by Viktor Dukhovni. ** libgnutls: Corrected the setting of salt size in gnutls_pkcs12_mac_info(). ** libgnutls: On a rehandshake allow switching from anonymous to ECDHE and DHE ciphersuites. ** libgnutls: Corrected regression from 3.3.x which prevented ARCFOUR128 from using arbitrary key sizes. Reported by Andreas Schneider. ** libgnutls: Added GNUTLS_SKIP_GLOBAL_INIT macro to allow programs skipping the implicit global initialization. ** gnutls.pc: Don't include libtool specific options to link flags. Reported by Dan Kegel. ** tools: Better support for FTP AUTH TLS negotiation ** API and ABI modifications: gnutls_x509_crt_set_issuer_unique_id: Added gnutls_x509_crt_set_subject_unique_id: Added gnutls_certificate_set_flags: Added GNUTLS_CERTIFICATE_SKIP_KEY_CERT_MATCH: Added regards, Nikos }}}" enhancement closed normal 7.9 BOOK SVN normal fixed