Bug 1010996

Summary: With Firefox 50, ISRG X1 CA to ca-certificates-mozilla should be added
Product: [openSUSE] openSUSE Distribution Reporter: Daniel Molkentin <daniel>
Component: FirefoxAssignee: Marcus Meissner <meissner>
Status: RESOLVED FIXED QA Contact: E-mail List <qa-bugs>
Severity: Normal    
Priority: P5 - None CC: archie.cobbs, wolfgang
Version: Leap 42.2   
Target Milestone: ---   
Hardware: Other   
OS: Other   
Whiteboard: maint:released:sle10-sp3:63956
Found By: --- Services Priority:
Business Priority: Blocker: ---
Marketing QA Status: --- IT Deployment: ---
Deadline: 2018-02-26   

Description Daniel Molkentin 2016-11-18 16:54:29 UTC
One of Firefox 50's main feature is the inclusion of the ISRG Root X1 CA certificate. This is not reflected in Leap. ca-certificates-mozilla in all distributions, including Tumbleweed and Leap, is still 2.7 from March.

Please include ISRG Root X1.
Comment 1 Wolfgang Rosenauer 2016-11-18 18:12:17 UTC
According to changelog this is maintained by Marcus (or security-team).

In general ca-certifcates-mozilla does not sync with Firefox in every update.
Comment 2 Marcus Meissner 2016-11-18 19:08:27 UTC
yes, thats me.

It is hard to update for pre-1.0.2 openssl distributions which is why I usually do not do it that often.

Lets see if there is a timewindow.
Comment 3 Marcus Meissner 2016-11-18 21:48:59 UTC
osc maintainer ca-certificates-mozilla

shows that btw.
Comment 4 Marcus Meissner 2017-02-09 15:24:47 UTC
factory update is in. 

rest will come in the next weeks
Comment 7 Swamp Workflow Management 2018-01-29 12:48:13 UTC
An update workflow for this issue was started.
This issue was rated as low.
Please submit fixed packages until 2018-02-26.
https://swamp.suse.de/webswamp/wf/63955
Comment 9 Andreas Stieger 2018-01-30 20:00:40 UTC
*** Bug 1078343 has been marked as a duplicate of this bug. ***
Comment 10 Swamp Workflow Management 2018-02-06 17:09:50 UTC
SUSE-RU-2018:0375-1: An update that has three recommended fixes can now be installed.

Category: recommended (moderate)
Bug References: 1010996,1071152,1071390
CVE References: 
Sources used:
SUSE OpenStack Cloud 6 (src):    ca-certificates-mozilla-2.22-12.3.1
SUSE Linux Enterprise Server for SAP 12-SP1 (src):    ca-certificates-mozilla-2.22-12.3.1
SUSE Linux Enterprise Server for Raspberry Pi 12-SP2 (src):    ca-certificates-mozilla-2.22-12.3.1
SUSE Linux Enterprise Server 12-SP3 (src):    ca-certificates-mozilla-2.22-12.3.1
SUSE Linux Enterprise Server 12-SP2 (src):    ca-certificates-mozilla-2.22-12.3.1
SUSE Linux Enterprise Server 12-SP1-LTSS (src):    ca-certificates-mozilla-2.22-12.3.1
SUSE Linux Enterprise Server 12-LTSS (src):    ca-certificates-mozilla-2.22-12.3.1
SUSE Linux Enterprise Desktop 12-SP3 (src):    ca-certificates-mozilla-2.22-12.3.1
SUSE Linux Enterprise Desktop 12-SP2 (src):    ca-certificates-mozilla-2.22-12.3.1
SUSE CaaS Platform ALL (src):    ca-certificates-mozilla-2.22-12.3.1
OpenStack Cloud Magnum Orchestration 7 (src):    ca-certificates-mozilla-2.22-12.3.1
Comment 11 Swamp Workflow Management 2018-02-06 20:08:40 UTC
SUSE-RU-2018:0378-1: An update that has three recommended fixes can now be installed.

Category: recommended (moderate)
Bug References: 1010996,1071152,1071390
CVE References: 
Sources used:
SUSE Linux Enterprise Server 11-SP4 (src):    openssl-certs-2.22-0.7.3.1
SUSE Linux Enterprise Server 11-SP3-LTSS (src):    openssl-certs-2.22-0.7.3.1
SUSE Linux Enterprise Point of Sale 11-SP3 (src):    openssl-certs-2.22-0.7.3.1
Comment 12 Swamp Workflow Management 2018-02-08 02:08:10 UTC
openSUSE-RU-2018:0392-1: An update that has three recommended fixes can now be installed.

Category: recommended (moderate)
Bug References: 1010996,1071152,1071390
CVE References: 
Sources used:
openSUSE Leap 42.3 (src):    ca-certificates-mozilla-2.22-12.1
Comment 13 Marcus Meissner 2018-02-09 14:33:58 UTC
released
Comment 15 Swamp Workflow Management 2020-03-05 17:28:46 UTC
SUSE-RU-2020:0596-1: An update that has 7 recommended fixes can now be installed.

Category: recommended (moderate)
Bug References: 1010996,1071152,1071390,1082318,1100415,1154871,1160160
CVE References: 
Sources used:
SUSE Linux Enterprise Server 12-SP5 (src):    ca-certificates-mozilla-2.40-12.20.1
SUSE Linux Enterprise Server 12-SP4 (src):    ca-certificates-mozilla-2.40-12.20.1
SUSE Linux Enterprise Desktop 12-SP4 (src):    ca-certificates-mozilla-2.40-12.20.1
SUSE CaaS Platform 3.0 (src):    ca-certificates-mozilla-2.40-12.20.1

NOTE: This line indicates an update has been released for the listed product(s). At times this might be only a partial fix. If you have questions please reach out to maintenance coordination.
Comment 16 Swamp Workflow Management 2020-03-23 19:20:06 UTC
This is an autogenerated message for OBS integration:
This bug (1010996) was mentioned in
https://build.opensuse.org/request/show/787571 15.1 / ca-certificates-mozilla
Comment 20 Swamp Workflow Management 2020-08-20 19:13:13 UTC
SUSE-RU-2020:2284-1: An update that has 6 recommended fixes can now be installed.

Category: recommended (important)
Bug References: 1010996,1071152,1071390,1154871,1174673,973042
CVE References: 
JIRA References: 
Sources used:
SUSE Linux Enterprise Server for SAP 15 (src):    ca-certificates-mozilla-2.42-4.26.1
SUSE Linux Enterprise Server 15-LTSS (src):    ca-certificates-mozilla-2.42-4.26.1
SUSE Linux Enterprise Module for Basesystem 15-SP1 (src):    ca-certificates-mozilla-2.42-4.26.1
SUSE Linux Enterprise High Performance Computing 15-LTSS (src):    ca-certificates-mozilla-2.42-4.26.1
SUSE Linux Enterprise High Performance Computing 15-ESPOS (src):    ca-certificates-mozilla-2.42-4.26.1

NOTE: This line indicates an update has been released for the listed product(s). At times this might be only a partial fix. If you have questions please reach out to maintenance coordination.
Comment 21 Swamp Workflow Management 2020-08-23 22:14:38 UTC
openSUSE-RU-2020:1253-1: An update that has 6 recommended fixes can now be installed.

Category: recommended (important)
Bug References: 1010996,1071152,1071390,1154871,1174673,973042
CVE References: 
JIRA References: 
Sources used:
openSUSE Leap 15.1 (src):    ca-certificates-mozilla-2.42-lp151.2.9.1
Comment 22 Swamp Workflow Management 2020-08-26 22:13:35 UTC
openSUSE-RU-2020:1264-1: An update that has 6 recommended fixes can now be installed.

Category: recommended (important)
Bug References: 1010996,1071152,1071390,1154871,1174673,973042
CVE References: 
JIRA References: 
Sources used:
openSUSE Leap 15.2 (src):    ca-certificates-mozilla-2.42-lp152.2.4.2