Recommended update for openssl-certs

Announcement ID: SUSE-RU-2020:14485-1
Rating: moderate
References:
Affected Products:
  • SUSE Linux Enterprise Point of Service 11 SP3
  • SUSE Linux Enterprise Server 11 SP4
  • SUSE Linux Enterprise Server 11 SP4 LTSS 11-SP4

An update that has one fix can now be installed.

Description:

This update for openssl-certs fixes the following issues:

  • update to 2.42 state of the Mozilla NSS Certificate store (bsc#1174673) Removed CAs:
  • LuxTrust Global Root 2
  • Staat der Nederlanden Root CA - G2
  • Symantec Class 1 Public Primary Certification Authority - G4
  • Symantec Class 2 Public Primary Certification Authority - G4
  • VeriSign Class 3 Public Primary Certification Authority - G3 Added CAs:
  • certSIGN Root CA G2
  • e-Szigno Root CA 2017
  • Microsoft ECC Root Certificate Authority 2017
  • Microsoft RSA Root Certificate Authority 2017

Patch Instructions:

To install this SUSE update use the SUSE recommended installation methods like YaST online_update or "zypper patch".
Alternatively you can run the command listed for your product:

  • SUSE Linux Enterprise Point of Service 11 SP3
    zypper in -t patch sleposp3-openssl-certs-14485=1
  • SUSE Linux Enterprise Server 11 SP4 LTSS 11-SP4
    zypper in -t patch slessp4-openssl-certs-14485=1
  • SUSE Linux Enterprise Server 11 SP4
    zypper in -t patch slessp4-openssl-certs-14485=1

Package List:

  • SUSE Linux Enterprise Point of Service 11 SP3 (noarch)
    • openssl-certs-2.42-0.7.18.1
  • SUSE Linux Enterprise Server 11 SP4 LTSS 11-SP4 (noarch)
    • openssl-certs-2.42-0.7.18.1
  • SUSE Linux Enterprise Server 11 SP4 (noarch)
    • openssl-certs-2.42-0.7.18.1

References: