Recommended update for ca-certificates-mozilla

Announcement ID: SUSE-RU-2019:0147-1
Rating: moderate
References:
Affected Products:
  • Basesystem Module 15
  • SUSE Linux Enterprise Desktop 15
  • SUSE Linux Enterprise High Performance Computing 15
  • SUSE Linux Enterprise Server 15
  • SUSE Linux Enterprise Server for SAP Applications 15

An update that has one fix can now be installed.

Description:

This update for ca-certificates-mozilla fixes the following issues:

The package was updated to the 2.30 version of the Mozilla NSS Certificate store. (bsc#1121446)

Removed Root CAs:

  • AC Raiz Certicamara S.A.
  • Certplus Root CA G1
  • Certplus Root CA G2
  • OpenTrust Root CA G1
  • OpenTrust Root CA G2
  • OpenTrust Root CA G3
  • Visa eCommerce Root

Added Root CAs:

  • Certigna Root CA (email and server auth)
  • GTS Root R1 (server auth)
  • GTS Root R2 (server auth)
  • GTS Root R3 (server auth)
  • GTS Root R4 (server auth)
  • OISTE WISeKey Global Root GC CA (email and server auth)
  • UCA Extended Validation Root (server auth)
  • UCA Global G2 Root (email and server auth)

Patch Instructions:

To install this SUSE update use the SUSE recommended installation methods like YaST online_update or "zypper patch".
Alternatively you can run the command listed for your product:

  • Basesystem Module 15
    zypper in -t patch SUSE-SLE-Module-Basesystem-15-2019-147=1

Package List:

  • Basesystem Module 15 (noarch)
    • ca-certificates-mozilla-2.30-4.9.1

References: