NSS:BugzillaBugsForNSS

From MozillaWiki
Jump to: navigation, search

Wiki/Bugzilla integration: https://github.com/LegNeato/mediawiki-bugzilla

Critical or Blocking NSS Bugs

Critical NSS Bug Status Chart

Blocking NSS Bug Status Chart


NEW Critical or Blocking NSS Bugs

No results.

0 Total; 0 Open (0%); 0 Resolved (0%); 0 Verified (0%);


No results.

0 Total; 0 Open (0%); 0 Resolved (0%); 0 Verified (0%);


Unconfirmed Critical or Blocking NSS Bugs

No results.

0 Total; 0 Open (0%); 0 Resolved (0%); 0 Verified (0%);


No results.

0 Total; 0 Open (0%); 0 Resolved (0%); 0 Verified (0%);


Assigned or Re-Opened Critical or Blocking NSS Bugs

No results.

0 Total; 0 Open (0%); 0 Resolved (0%); 0 Verified (0%);


No results.

0 Total; 0 Open (0%); 0 Resolved (0%); 0 Verified (0%);


No results.

0 Total; 0 Open (0%); 0 Resolved (0%); 0 Verified (0%);


No results.

0 Total; 0 Open (0%); 0 Resolved (0%); 0 Verified (0%);


P1 NSS Bugs


New NSS P1 Bugs

Full Query
ID Summary Priority Status
1773374 CERTCertificate leak in ssl3_FillInCachedSID when using a client certificate with TLS 1.3 P1 NEW
1869324 Test how NSS and Firefox are affected by rolling version 100+ P1 NEW

2 Total; 2 Open (100%); 0 Resolved (0%); 0 Verified (0%);


No results.

0 Total; 0 Open (0%); 0 Resolved (0%); 0 Verified (0%);


Assigned NSS P1 Bugs

Full Query
ID Summary Priority Status
1793811 Implement support for PBMAC1 in PKCS#12 P1 ASSIGNED
1827444 Need to add high level support for PQ signing. P1 ASSIGNED
1882585 Constant-time changes to RSA code P1 ASSIGNED
1883321 [meta] E2ES - Messaging Layer Security - Implement an MLS system module P1 ASSIGNED
1889684 [meta] June 2024 Batch of Root Changes P1 ASSIGNED

5 Total; 5 Open (100%); 0 Resolved (0%); 0 Verified (0%);


No results.

0 Total; 0 Open (0%); 0 Resolved (0%); 0 Verified (0%);


NSS Bugs Changed in the last month

Full Query
ID Summary Priority Status
215997 RSAES-OAEP decryption support in S/MIME P1 RESOLVED
275576 Add Camerfirma CA certificate to NSS P3 VERIFIED
466553 certutil -C may crash if -o is omitted P5 NEW
467344 certificates are grouped incorrectly by certutil and JSS P5 UNCONFIRMED
671060 Remove imcomplete Ephemeral-Static DH support from libsmime (CMSUtil_EncryptSymKey_ESDH) P5 RESOLVED
676100 Some ASN.1 Templates for key agreement in NSS are incorrect P4 RESOLVED
676118 Patch to add ability to encrypt and decrypt CMS messages using ECDH P2 RESOLVED
829677 Remove cert entries for Actively Distrusted certs P1 RESOLVED
1325335 Integrate HACL* EdDSA over Curve25519 P3 RESOLVED
1387183 [meta] Integrate verified cryptographic primitives into NSS from the HACL* library P3 NEW
1409872 remove entries for expired actively distrusted certs -- RESOLVED
1419173 Integration of HaCl* - Track the HACL* master branch and Curve25519 P1 RESOLVED
1548723 Certificate compression P3 RESOLVED
1569357 OneCRL Support for Custom Distrust Messaging P3 NEW
1725938 [meta] ECH P3 ASSIGNED
1741849 Add constant-time verification through valgrind P3 RESOLVED
1774659 NSS needs a database tool that can dump the low level representation of the database. -- RESOLVED
1804498 [meta] April 2023 Batch of Root Changes -- RESOLVED
1804505 Change KamuSM's Root Certificate Technical Constraints -- RESOLVED
1822921 Add BJCA Global Root CA1 and CA2 root certificates to NSS -- RESOLVED
1823875 AES CTS decryption does not update its own context's IV on full blocks input P3 UNCONFIRMED
1827970 [meta] libssl should avoid creating CERTCertificates before they are needed P3 NEW
1865450 Remove Expired Root Certificates from NSS - Security Communication RootCA1,O=SECOM Trust.net,C=JP -- RESOLVED
1866841 Integrate HACL* Kyber768 P3 NEW
1869289 [meta] NSS Stability P2 NEW
1871629 [meta] Kyber support P3 ASSIGNED
1872936 [meta] Test that cryptographic code follows constant-time coding discipline P3 ASSIGNED
1872998 OpenSC 0.24.0 client side TLS certificate leads to network timeout P5 UNCONFIRMED
1873095 Add D-Trust 2022 S/MIME Roots to NSS -- RESOLVED
1874017 Add Telekom Security Roots to NSS -- RESOLVED
1877387 Nginx container can't start up in RHEL8 FIPS mode after upgrade to nss-softokn-freebl-3.79.0-11.el8_7 or higher version -- RESOLVED
1879889 [python-nss] FTBFS with Python 3.12 P5 ASSIGNED
1879945 Remove Email trust bit from OISTE WISeKey Global Root GC CA -- RESOLVED
1880255 coreconf/config.mk:42: coreconf/MSYS_NT-10.0-203483.4.10.x86_64.mk: No such file or directory P2 ASSIGNED
1880256 cert.sh failure on windows2022 workers P2 ASSIGNED
1880857 Update ACVP docker to Rust 1.74 P3 RESOLVED
1880936 Assertion failure: !ss->opt.nextProtoNego.data, at /builds/worker/checkouts/gecko/security/nss/lib/ssl/ssl3exthandle.c:462 P3 NEW
1882585 Constant-time changes to RSA code P1 ASSIGNED
1883963 Run constant-time execution tests on annotated functions P2 ASSIGNED
1884793 RFE: PK11_DoesMechanismFlag is not exported P5 NEW
1885900 NSS deadlocks when attempting to sign with a certificate that requires a second password entry P2 NEW
1886829 Build dependency and checksum issue after NSS 3.85 -- RESOLVED
1887598 Auto-delete cache of test certificates P3 NEW
1887996 certutil fails to add CRL distribution point extension type URI -- RESOLVED
1888830 Integrate HACL* Raw RSA P3 ASSIGNED
1889153 EdDSA WebCrypto Improvements P2 ASSIGNED
1889671 Add Firmaprofesional CA Root-A Web to NSS -- NEW
1889684 [meta] June 2024 Batch of Root Changes P1 ASSIGNED
1890036 Allow imported public keys to be FIPS-approved P3 ASSIGNED
1890069 CKM_EC_EDWARDS_KEY_PAIR_GEN for CKK_EC_EDWARDS fails -- RESOLVED
1890188 ssl_gtest fail with LTO P5 UNCONFIRMED
1890199 Crash of Firefox 115 ESR with nss-3.90.x P3 ASSIGNED
1890590 Firefox displays SEC_ERROR_INADEQUATE_CERT_TYPE error for end entity cert with OCSP signing EKU P5 NEW
1890618 Expose a libssl function for getting the peer certificate chain as an array of DER certs P3 ASSIGNED
1891948 Explain the API contract for Certificate Compression Functions P3 ASSIGNED
1892671 RSAES-OAEP encryption support in S/MIME P2 NEW
1892872 Avoid storing CERTCertificates in resumption tokens P3 ASSIGNED
1893029 Merge pk11_kyberSlotList with pk11_ecSlotList to avoid moving Xyber shared secret components in PK11_ConcatSymKey P2 ASSIGNED
1893162 There is a memory leak defect on line 530 of the file /mozilla-unified/security/nss/lib/pk11wrap/pk11skey.c. P3 ASSIGNED
1893334 Add a pk11wrap function to read distrust-after attributes P3 NEW
1893404 NSS doesn't allow for ecdsa signatures shorter than maximum length when using softoken -- ASSIGNED

61 Total; 37 Open (60.66%); 23 Resolved (37.7%); 1 Verified (1.64%);