Network Security Services (NSS) is a set of libraries designed to supportthe cross-platform development of security-enabled client and serverapplications. Applications built with NSS can support SSLv3, TLS, and othersecurity standards.It was found that the implementation of Internationalizing Domain Names inApplications (IDNA) hostname matching in NSS did not follow the RFC 6125recommendations. This could lead to certain invalid certificates withinternational characters to be accepted as valid. (CVE-2014-1492)In addition, the nss, nss-util, and nss-softokn packages have been upgradedto upstream version 3.16.2, which provides a number of bug fixes andenhancements over the previous versions. (BZ#1124659)Users of NSS are advised to upgrade to these updated packages, whichcorrect these issues and add these enhancements. After installing thisupdate, applications using NSS must be restarted for this update totake effect.