Subject: CVS commit: pkgsrc/security/gnutls
From: Adam Ciarcinski
Date: 2024-01-17 21:23:05
Message id: 20240117202305.597AAFA42@cvs.NetBSD.org

Log Message:
gnutls: updated to 3.8.3

Version 3.8.3 (released 2024-01-16)

** libgnutls: Fix more timing side-channel inside RSA-PSK key exchange
   [GNUTLS-SA-2024-01-14, CVSS: medium] [CVE-2024-0553]

** libgnutls: Fix assertion failure when verifying a certificate chain with a
   cycle of cross signatures
   [GNUTLS-SA-2024-01-09, CVSS: medium] [CVE-2024-0567]

** libgnutls: Fix regression in handling Ed25519 keys stored in PKCS#11 token
   certtool was unable to handle Ed25519 keys generated on PKCS#11
   with pkcs11-tool (OpenSC). This is a regression introduced in 3.8.2.

Files:
RevisionActionfile
1.246modifypkgsrc/security/gnutls/Makefile
1.160modifypkgsrc/security/gnutls/distinfo