Граф коммитов

3301 Коммитов

Автор SHA1 Сообщение Дата
Wan-Teh Chang d20cedab70 Bug 466745: Upgraded NSS to NSS_3_12_3_BETA3. 2009-02-10 09:18:32 -08:00
Daniel Holbert 79f11bb4f4 Bug 473236 - follow up patch v3b: restore original executable status for previously-executable Makefiles in nss folder. a=ted
Probably unnecessary, but it's conceivable that someone might execute them directly ( they do have a #! line at the top), and their executable status is going to get turned on at our next NSS snapshot-importing anyway.
2009-01-23 11:55:40 -08:00
Daniel Holbert c755eee8e7 Bug 473236 - Remove executable bit from files that don't need it. (Only changes file mode -- no code changes.) r=bsmedberg 2009-01-21 22:55:08 -08:00
Kai Engert 33aeead737 Bug 473837, land NSS_3_12_3_BETA2
r=wtc
2009-01-21 04:43:31 +01:00
Kai Engert c60926b237 removing accidentally added leftover files from patching, a=dholbert 2009-01-16 20:35:31 +01:00
Kai Engert 60f2b94cdf Backout 6c571dc80a99, bug 473837 2009-01-16 20:15:28 +01:00
Kai Engert bcdc73c101 Bug 473837, Import NSS_3_12_3_BETA1
r=wtc
2009-01-16 20:01:34 +01:00
Kai Engert f8a04239b0 Bug 461082, Deliver NSS 3.12.2 and NSPR 4.7.2 to Mozilla
r=wtc
2008-10-23 02:38:29 +02:00
Kai Engert a4b179abf6 Bug 453227, fix import cert failure, see comment 80 and 81, update to NSS_3_12_1_RC2, r=wtc 2008-09-05 20:13:38 +02:00
Kai Engert 7ad8828630 Bug 450646, Upgrade Mozilla to NSS 3.12.1 release candidate 1
r=rrelyea
2008-08-15 06:12:54 +02:00
Benjamin Smedberg 2f67dc2ab9 Import NSS_3_12_RC4 2008-06-06 08:40:11 -04:00
roc+@cs.cmu.edu 0054412272 Bug 374866. Reftests for text-transform. r=dbaron 2007-03-22 16:01:14 -07:00
alexei.volkov.bugs%sun.com 655919b614 448324 - ocsp checker returns incorrect error code on request with invalid signing cert. r=nelson 2008-08-12 00:46:47 +00:00
christophe.ravel.bugs%sun.com f7bd02836a Remove Beta flag for NSS 3.12.1 RC1 build. 2008-08-11 20:50:49 +00:00
christophe.ravel.bugs%sun.com bdb964a5e4 Prepare NSS 3.12.1 RC1. 2008-08-11 20:48:30 +00:00
nelson%bolyard.com d8dc8ad7ea Bug 427479: Include file case changes for mingw cross compilation on a linux host
patch by Mook <mook.moz+mozbz@gmail.com>, r=nelson
2008-08-11 08:14:10 +00:00
alexei.volkov.bugs%sun.com faeeb25710 430380 - policies : explicit trust anchor results in false positives with vfychain. r=nelson 2008-08-11 05:00:48 +00:00
alexei.volkov.bugs%sun.com 38fc33cb24 Fix to memleak tinderbox: make sure the real error get propagated to a caller function. 2008-08-11 02:29:43 +00:00
alexei.volkov.bugs%sun.com a249160bad 444404 - libpkix reports "unknown issuer" for nearly all certificate errors. r=nelson 2008-08-10 23:34:37 +00:00
nelson%bolyard.com bde4029bc9 Bug 444850 � NSS misbehaves badly in the presence of a disabled PKCS#11 slot
r=julien.pierre, rrelyea
2008-08-09 01:26:05 +00:00
julien.pierre.boogz%sun.com 8c12f3e1cf Fix for bug 449146 . remove dead libsec function declarations. r=nelson 2008-08-07 00:00:09 +00:00
julien.pierre.boogz%sun.com 110e38bff1 Fix for bug 129303 . Add missing declaration for PK11_GetAllSlotsForCert. r=nelson 2008-08-04 22:44:17 +00:00
nelson%bolyard.com 2d55242a3f Bug 448200. fix systemic misspellings of deprecated and function, r=julien.pierre 2008-08-04 22:32:17 +00:00
nelson%bolyard.com 5b37883388 Don't abort search for certs when a slot reports error, v2
bug 444850, r=julien,wtc
2008-07-26 02:52:03 +00:00
alexei.volkov.bugs%sun.com ad464da6d0 Bug 430859 ��� PKIX: Policy mapping fails verification with error "invalid arguments". r=nelson 2008-07-23 23:02:25 +00:00
nelson%bolyard.com 9102251942 Bug 444850. Don't ask the module to use an invalid session handle in
find_objects.  r=alexei,julien sr=wtc.
2008-07-22 04:34:02 +00:00
nelson%bolyard.com 5f6b469029 Bug 384459, ignore issuer and serial number components of authority key ID
extension when they don't match.  Don't report them in certutil either.
r=rrelyea, sr=wtc
2008-07-22 02:40:11 +00:00
julien.pierre.boogz%sun.com 597ef54edf Fix for bug 442618 . Eliminate dead function CERT_CertPackageType . r=nelson 2008-07-21 20:09:48 +00:00
alexei.volkov.bugs%sun.com 9d25bddcee Bug 418544 ��� Pathological OCSP inefficiency with libPKIX. Part two. r=nelson 2008-07-11 22:06:23 +00:00
alexei.volkov.bugs%sun.com b0b6a2e3a5 Bug 418544 ��� Pathological OCSP inefficiency with libPKIX. Part one. r=nelson 2008-07-11 20:42:46 +00:00
alexei.volkov.bugs%sun.com a14c3f6852 430405 - Error log is not produced by CERT_PKIXVerifyCert. Patch part two. r=nelson 2008-07-11 19:12:31 +00:00
nelson%bolyard.com 77fe4e6e20 Backing out previous commit, which turned tinderbox red. sheriff Nelson. 2008-07-11 04:49:03 +00:00
alexei.volkov.bugs%sun.com 17c64eacc9 430405 - Error log is not produced by CERT_PKIXVerifyCert. Patch part two. r=nelson 2008-07-10 22:52:28 +00:00
alexei.volkov.bugs%sun.com 88ced7e852 Additional fix for 430405. Previous patch leaked PKIX_Error object. 2008-07-09 18:42:26 +00:00
alexei.volkov.bugs%sun.com ab8040de74 Bug 430405 - Error log is not produced by CERT_PKIXVerifyCert. r=nelson 2008-07-09 00:22:20 +00:00
alexei.volkov.bugs%sun.com a0910b3ea0 436599 - PKIX: AIA extension is not used in some Bridge CA / known certs configuration. r=nelson 2008-07-09 00:02:50 +00:00
alexei.volkov.bugs%sun.com 4f79327427 408847 - pkix_OcspChecker_Check does not support specified responder (and given signercert). r=nelson 2008-07-08 21:34:53 +00:00
rrelyea%redhat.com 7b267a5be3 Bug 436417 ��� PK11_ImportDERPrivateKeyInfoAndReturnKey fails when RSA priv key already exists in softoken (edit) 2008-07-04 00:02:33 +00:00
rrelyea%redhat.com 7e8673ef2f bug 438878
r=wtc (address review comment 4)
2008-06-27 20:56:03 +00:00
alexei.volkov.bugs%sun.com 93e08ea450 Bug 430859 ��� PKIX: Policy mapping fails verification with error "invalid arguments". Initial fix. r=nelson 2008-06-27 00:16:15 +00:00
rrelyea%redhat.com e2f798b263 export PK11_FindCertFromDERCertItem()
bug 438876 r=wtc
2008-06-26 20:50:04 +00:00
alexei.volkov.bugs%sun.com 8e644a6a4e Bug 417399 ��� Arena Allocation results are not checked in pkix_pl_InfoAccess_ParseLocation. r=nelson 2008-06-25 18:49:49 +00:00
nelson%bolyard.com cb2e1cc4ba Bug 436957: Fix decoding in CERT_DecodeCRLDistributionPoints, r=julien.pierre
Modified Files:
	cmd/lib/secutil.c cmd/lib/secutil.h tests/cert/certext.txt
 	lib/certhigh/xcrldist.c
2008-06-20 21:14:27 +00:00
nelson%bolyard.com 05aab7f9d8 Bug 372241: Need more versatile form of CERT_NameToAscii, r=julien 2008-06-20 16:57:03 +00:00
nelson%bolyard.com 45095a2db7 Back out last revision, which failed a tinderbox test. 2008-06-19 03:21:35 +00:00
nelson%bolyard.com af1239f772 Bug 436957: Fix decoding in CERT_DecodeCRLDistributionPoints, r=julien.pierre 2008-06-19 01:41:22 +00:00
alexei.volkov.bugs%sun.com 91f14ec21a Bug 440062 ��� incorrect list element count in PKIX_List_AppendItem function. r=nelson 2008-06-18 19:57:08 +00:00
alexei.volkov.bugs%sun.com 71bd8c3cd2 Bug 438685 ��� libpkix doesn't try all the issuers in a bridge with multiple certs. additional fix. r=nelson 2008-06-18 19:33:18 +00:00
wtc%google.com 0e21e202a7 Bug 436430: changed "UNIX time" to "NSPR time" in the comments. r=nelson. 2008-06-18 01:04:23 +00:00
wtc%google.com 243ad319b8 Bug 436430: removed the declarations of unimplemented functions
CERT_CreateNicknameCertList and CERT_CreateEmailAddrCertList.  r=nelson.
2008-06-18 01:02:32 +00:00
wtc%google.com 81fa027d03 Bug 436430: the |time| parameter of cert_VerifyCertChainPkix should be
PRTime instead of PRUint64.  r=nelson.
Modified Files:
	certdb/certi.h certhigh/certvfypkix.c
2008-06-18 01:00:47 +00:00
alexei.volkov.bugs%sun.com a9ab78ed9b Bug 430135 ��� Need improvement to pkix object leak testing. r=nelson 2008-06-17 22:29:09 +00:00
wtc%google.com a1bc3d8acb Bug 436430: NSS public headers should not use NSPR 1.0 compatibility types
and macros.  Replaced PRArenaPool by PLArenaPool and int64 by PRTime.  The
patch is generated by Nelson Bolyard <nelson@bolyard.com>.  r=wtc
Modified Files:
	certdb/cert.h certdb/certdb.h certdb/certt.h certhigh/ocsp.h
	cryptohi/cryptohi.h cryptohi/keyhi.h cryptohi/keythi.h
	freebl/blapit.h pk11wrap/pk11priv.h pk11wrap/pk11pub.h
	pk11wrap/secmodt.h pkcs12/p12.h pkcs12/p12t.h pkcs12/pkcs12t.h
	pkcs7/pkcs7t.h pkcs7/secpkcs7.h smime/cms.h util/nssb64.h
	util/secasn1.h util/secder.h util/secdig.h util/secitem.h
	util/secoid.h
2008-06-14 14:20:38 +00:00
nelson%bolyard.com 87409df236 Bug 434398: libPKIX cannot find issuer cert immediately after checking it with OCSP
Ensure that parsed certificates go into trust domain's cert cache.
Plug two leaks of certificate objects.   r=julien,Alexei
Eliminate dependence on old NSPR 1.0 symbol PRArenaPool, which is now PLArenaPool.
2008-06-14 05:05:23 +00:00
nelson%bolyard.com 0f8e270aa8 Bug 434099: NSS relies on unchecked PKCS#11 object attribute values, r=rrelyea 2008-06-14 04:38:32 +00:00
alexei.volkov.bugs%sun.com 499cf9ca30 Bug 438685 ��� libpkix doesn't try all the issuers in a bridge with multiple certs. r=nelson 2008-06-13 19:12:21 +00:00
alexei.volkov.bugs%sun.com 968302570f Bug 432303 ��� Replace PKIX_PL_Memcpy with memcpy. r=nelson 2008-06-12 17:22:45 +00:00
nelson%bolyard.com 9354e429d0 fix assertion failures and other crashes for bug 401928. r=rrelyea 2008-06-11 18:56:13 +00:00
nelson%bolyard.com 14a2c68a33 Bug 436577: uninitialized variable in sec_pkcs5CreateAlgorithmID
Patch by Bob Relyea <rrelyea@redhat.com>, r=wtc
2008-06-10 02:53:27 +00:00
wtc%google.com d112c7ab8b Bug 434187: merged nssCertificateStore_Check into
nssCertificateStore_Unlock because these two functions were always called
together.  r=julien.pierre
2008-06-06 01:19:31 +00:00
wtc%google.com 414905bd32 Bug 434187: fixed compiler warnings reported by GCC on Mac OS X.
r=julien.pierre
2008-06-06 01:16:31 +00:00
wtc%google.com a2b9272750 Bug 434187: assign PR_TRUE to a PRBool variable. r=nelson 2008-06-04 01:28:48 +00:00
wtc%google.com e90981a03e Bug 434187: fixed a MSVC compiler warning about signed/unsigned comparison.
r=nelson
2008-06-04 01:27:36 +00:00
wtc%google.com d428403a9d Bug 302416: remove the unused file nsprstub.c from CVS. r=rrelyea. 2008-05-31 04:38:16 +00:00
nelson%bolyard.com 7b577516d4 Bug 436428: remove unneeded assert from sec_PKCS7EncryptLength
Patch by Justin Dolske <dolske@mozilla.com>, r=nelson
2008-05-30 03:39:46 +00:00
rrelyea%redhat.com 8dcf58a640 Bug 427706 resolve regression from bug 427706.
This also includes reapplying the patch from 427706
r=kaie
2008-05-29 21:45:07 +00:00
kaie%kuix.de fbf0294d03 Bug 426886, Use "const" char* in PK11_ImportCertForKey
r=wtc, r=julien.pierre
2008-05-29 17:24:23 +00:00
kaie%kuix.de 8f34f63b58 Bug 433386, when system clock is off by more than two days, OSCP check fails, can result in crash if user tries to view
certificate
landing (cleaner) Patch v2
r=nelson
2008-05-29 17:11:00 +00:00
nelson%bolyard.com ac511107c1 Bug 433594: Crash destroying OCSP Cert ID, r=julien.pierre 2008-05-21 00:08:33 +00:00
julien.pierre.boogz%sun.com 244b9485f9 Fix for bug 434860 . Dead code in ocsp_CreateCertID . r=nelson 2008-05-20 23:34:03 +00:00
wtc%google.com 3fab89a7c2 Bug 431929: Fixed a memory leak on an error path in
get_token_objects_for_cache .  r=nelson.
2008-05-18 01:51:45 +00:00
wtc%google.com be8510e449 Bug 431805: initialize error_stack_index to an invalid TPD index instead of
0, which is a valid TPD index.  Improved comments.  r=nelson.
Modified Files:
	base/error.c nss/nssinit.c
2008-05-17 03:44:41 +00:00
wtc%google.com 15849b0b06 Bug 431929: Refactored duplicate code into common subroutines. 1. Replaced
nssToken_Find{Certificates,TrustObjects,CRLs} by nssToken_FindObjects.
2. Replaced get_token_{certs,trust,crls}_for_cache by
get_token_objects_for_cache.  r=nelson.
Modified Files:
	dev/dev.h dev/devtoken.c dev/devutil.c pk11wrap/pk11cert.c
2008-05-17 00:13:39 +00:00
nelson%bolyard.com 9773f2cc23 Bug 390296: NSS ignores subject CN even when SAN contains no dNSName
r=wtc
2008-05-16 03:38:39 +00:00
nelson%bolyard.com ab2a61ed7d Bug 429716: debug builds of libPKIX unconditionally dump socket traffic to stdout
r=alexei.volkov
2008-05-15 23:48:13 +00:00
wtc%google.com c212d6ec7a Bug 431929: Release the lock before returning. Acquire the lock after
null checks.  r=nelson.
2008-05-13 01:22:35 +00:00
wtc%google.com 95ac0e5e43 Bug 433177: fixed GCC compiler warnings. r=julien.pierre
Modified Files:
	freebl/ec.c freebl/genload.c freebl/ldvector.c util/dertime.c
	util/oidstring.c
2008-05-13 01:20:05 +00:00
wtc%google.com 52654fad56 Bug 431805: fixed the leak of the primordial thread's error stack. The
patch is contributed by Boying Lu <brian.lu@sun.com>.  r=wtc.
Modified files: base/base.h base/error.c nss/nssinit.c
2008-05-10 01:03:18 +00:00
wtc%google.com 81652fc8ad Bug 367664: added RISC OS support. The patch is contributed by
Peter Naulls <peter@chocky.org>.  r=wtc.
Modified Files:
	coreconf/config.mk coreconf/rules.mk
	coreconf/nsinstall/nsinstall.c nss/lib/freebl/unix_rand.c
Added Files:
	coreconf/RISCOS.mk
2008-05-09 23:56:02 +00:00
wtc%google.com 176ee3da35 Bug 430875: Documented the policy for the order of cipher suites in
SSL_ImplementedCiphers.  r=nelson.
2008-05-07 20:45:53 +00:00
kaie%kuix.de 2e47261781 Bug 431772, add network solutions and diginotar root certs to NSS
r=nelson, r=rrelyea
2008-05-03 03:08:01 +00:00
julien.pierre.boogz%sun.com cb56b00041 Bug 430916 : add sustaining asserts. r=nelson 2008-05-02 01:27:11 +00:00
nelson%bolyard.com f7ad359b14 Bug 391903: nssSlot object for nssckbi leaked when loaded by PSM.
r=rrelyea
2008-04-27 02:13:52 +00:00
nelson%bolyard.com 463abfd4c2 Bug 414003: don't scan past end of certitiface header and trailer strings.
r=rrelyea, sr=alexei.volkov
2008-04-27 02:08:58 +00:00
nelson%bolyard.com 303d22e86c Bug 420644: Improve SSL tracing of key derivation, r=julien.pierre 2008-04-27 02:06:05 +00:00
julien.pierre.boogz%sun.com df357b35b6 Fix for bug 428103. Define CERT_EncodeSubjectKeyID in a public header. r=nelson 2008-04-26 00:49:15 +00:00
julien.pierre.boogz%sun.com 3a6f6840e6 Fix build on AIX5.1 . Remove extraneous comma 2008-04-26 00:20:19 +00:00
rrelyea%redhat.com d1203dd0e8 Back out patch to bug 391903.
Windows tinderboxen are failing.
2008-04-23 16:37:19 +00:00
kaie%kuix.de 653d62e674 Bug 428105, CERT_SetOCSPTimeout is not defined in any public header file
r=nelson
2008-04-22 15:59:26 +00:00
rrelyea%redhat.com 25876106da Bug 391903 r=nelson.
leak objects from nssSlot_Create
2008-04-21 23:54:49 +00:00
alexei.volkov.bugs%sun.com 59c6360b6d 403543 - pkix: need a way to enable/disable AIA cert fetching. r=nelson 2008-04-21 22:38:35 +00:00
alexei.volkov.bugs%sun.com 156cbb3c32 397832 - libpkix leaks memory if a macro calls a function that returns an error. attachment 316504. r=nelson. 2008-04-21 19:36:42 +00:00
christophe.ravel.bugs%sun.com abc806d7d0 Set version to NSS 3.12.1 Beta on NSS trunk.
Note: NSS 3.12.0 RTM will be delivered from NSS_3_12_0_BRANCH.
2008-04-17 20:22:45 +00:00
alexei.volkov.bugs%sun.com 36b6a7ef66 429230 - memory leak in pkix_CheckCert function. r=nelson 2008-04-16 18:47:03 +00:00
alexei.volkov.bugs%sun.com 1379abcaee 397832 - libpkix leaks memory if a macro calls a function that returns an error. Object leak test changes for tinderbox (attachment 315629). r=nelson 2008-04-15 22:41:13 +00:00
alexei.volkov.bugs%sun.com c1f79daa1a 397832 - libpkix leaks memory if a macro calls a function that returns an error. r=nelson 2008-04-09 22:29:05 +00:00
rrelyea%redhat.com b5ae54b676 Update release number 2008-04-08 18:48:50 +00:00
rrelyea%redhat.com ad51e90bb8 backing out revision 1.20 as per bug 427706 2008-04-08 18:33:18 +00:00
kaie%kuix.de f5f3baa490 Bug 425469, Add multiple new roots: Geotrust, Thawte, Verisign, Trustwave, Comodo
r=rrelyea
2008-04-07 07:03:15 +00:00
rrelyea%redhat.com 2b94733d17 [Bug 400238] softtoken unexpectedly logged out
r nelson
Also addes test case
2008-04-05 01:42:53 +00:00