libp11-kit0-0.23.22-150500.8.3.1<>,Ye:;p9|PIE >^LEWf<|R)g-er}t&NK-#գi!ì,+\V/}ҿ I{VkrEO~ 7P>U1=L[:l{J*\zÛr {l^68H҅&@wlz1҅ZwlPrl=U|1&#Ƈ)r>@7?7d # H %FS iz       T  !  T    0 d (8 94 : >2@2F2.G2D H2x I2 X2Y2\2 ]3, ^3b4Uc4d5e5f5l5u5 v5w6 x6 y7z7P7`7d7j7Clibp11-kit00.23.22150500.8.3.1Library to work with PKCS#11 modulesp11-kit provides a way to load and enumerate PKCS#11 modules, as well as a standard configuration setup for installing PKCS#11 modules in such a way that they're discoverable.e:;mourvedre#0SUSE Linux Enterprise 15SUSE LLC BSD-3-Clausehttps://www.suse.com/System/Librarieshttps://p11-glue.freedesktop.org/p11-kit.htmllinuxppc64le $=C}AAA큤A큤e:;je:;je:;ie:;ke:;ie:;Z,_Ӳ_Ӳ_ӆe:;&e:;Z,4897cd0868f913408f243b26e4999a97b66e7711a9ba906cd2c3f91cce0d57efcde5ccbf5083e28d1b38333b5817be06c158fb3218f21ee5594b6125a9372591e417cfeb3a1a95e61629c698ab873807b6bd3c73b71481b3f528abbea16299ed6c8884340b8e39cacb7b009eb4a99c045315dfd753e3badcc28fddaff193308099cd35701a2a0579a1c8f08cc13c9cc00dda25f14751c0ec4fbd951ce7568e395f8fb09ce1ecb5aac84612a6d8255111ade9cbf9ad972cad61858f4678a146df2e1ba993904df807a10c3eda1e5c272338edc35674b679773a8b3ad460731054libp11-kit.so.0.3.0libp11-kit.so.0.3.0rootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootp11-kit-0.23.22-150500.8.3.1.src.rpmlibp11-kit.so.0()(64bit)libp11-kit.so.0(LIBP11_KIT_1.0)(64bit)libp11-kit0libp11-kit0(ppc-64)@@@@@@@@@@@@    /sbin/ldconfig/sbin/ldconfigld64.so.2()(64bit)ld64.so.2(GLIBC_2.22)(64bit)libc.so.6()(64bit)libc.so.6(GLIBC_2.17)(64bit)libc.so.6(GLIBC_2.26)(64bit)libdl.so.2()(64bit)libdl.so.2(GLIBC_2.17)(64bit)libffi.so.7()(64bit)libffi.so.7(LIBFFI_BASE_7.0)(64bit)libffi.so.7(LIBFFI_CLOSURE_7.0)(64bit)libpthread.so.0()(64bit)libpthread.so.0(GLIBC_2.17)(64bit)rpmlib(CompressedFileNames)rpmlib(FileDigests)rpmlib(PayloadFilesHavePrefix)rpmlib(PayloadIsXz)3.0.4-14.6.0-14.0-15.2-14.14.3e7ca^@]Γ@ZX43@V@T9T;pmonreal@suse.comlnussel@suse.comscabrero@suse.delnussel@suse.delnussel@suse.dekukuk@suse.desbrabec@suse.commpluskal@suse.comp.drouand@gmail.comlnussel@suse.de- Ensure that programs using can be compiled with CRYPTOKI_GNU. Fixes GnuTLS builds. [jsc#PED-6705] * Add p11-kit-pkcs11-gnu-Enable-testing-with-p11-kit-pkcs11x.h.patch- Backport IBM specific mechanism and attributes (Jira#PED-584) 0001-Add-IBM-specific-mechanism-and-attributes.patch 0002-Add-support-for-serializing-CK_ECDH1_DERIVE_PARAMS-m.patch 0003-client-Allow-zero-part-length-at-C_SignUpdate.patch 0004-Fix-support-of-CKA_DERIVE_TEMPLATE.patch 0005-Add-other-SHA-variants-also-for-RSA-and-EC-signature.patch 0006-Add-support-for-missing-AES-and-DES-DES3-mechanisms.patch 0007-Add-support-for-MAC-and-HMAC-general-mechanisms.patch 0008-Add-support-for-CKM_DH_PKCS_DERIVE.patch 0009-rpc-Handle-special-cases-for-buffer-and-length.patch 0010-Add-support-for-CKM_AES_CTR.patch 0011-Add-support-for-CKM_AES_GCM.patch 0012-common-pkcs11x.h-Support-CRYPTOKI_GNU-for-IBM-vendor.patch- Update to version 0.23.22 (bsc#1180064, bsc#1180065, bsc#1180066): * Fix memory-safety issues that affect the RPC protocol (CVE-2020-29361, CVE-2020-29362, and CVE-2020-29363), discovered and fixed by David Cook * anchor: Prefer persistent format when storing anchor [PR#329] * common: Fix infloop in p11_path_build [PR#326, PR#327] * proxy: C_CloseAllSessions: Make sure that calloc args are non-zero [PR#325] * common: Check for a NULL locale before freeing it [PR#321] * Build and test fixes [PR#313, PR#315, PR#317, PR#318, PR#319, PR#323, PR#330, PR#333, PR#334, PR#335, PR#338, PR#339] - Changes for version 0.23.21 * proxy: Do not assign duplicate slot IDs [PR#282] * common: Get program name based on executable path if possible [PR#307] * anchor: Exit with non-zero code, if any error occurs [PR#304] * Build and test fixes [PR#283, PR#290, PR#291, PR#292, PR#296, PR#299, PR#305, PR#306, PR#309, PR#311] - Changes for version 0.23.20: * Revert "Fix RPC when length-s are 0" changes [PR#276] - Changes for version 0.23.19: * common: add Russian PKCS#11 extensions to pkcs11x.h header [PR#255] * Add simple bash completion for provided commands [PR#258] * Unbreak list matching in enable-in and disable-in [PR#262] * Fix RPC when length-s are 0 [PR#259] * rpc: Add vsock transport support [PR#270] * trust: Support CKA_NSS_{SERVER,EMAIL}_DISTRUST_AFTER [PR#265] * Build fixes [PR#271, PR#272, PR#273, ...] - Changes for version 0.23.18: * rpc: Allow empty CK_DATE value [PR#253] * build: Meson fixes [PR#245] * build: Adjust feature parity between meson and autotools [PR#247] - Changes for version 0.23.17: * common: Fix uClibc-ng compilation [PR#237] * trust: do not allow daylight to invalidate date validation [PR#236] * build: Port to meson build system [PR#231, PR#234] * rpc: On UNIX wait on condition variable instead of FD if header is for a different thread [PR#232] * doc: Add 'server' command in help [PR#229] * Build and test fixes [PR#230] - Changes for version 0.23.16: * proxy: Support C_WaitForSlotEvent() if CKF_DONT_BLOCK is specified [PR#225] * conf: Ignore user configuration if the program is running as root [PR#226] * proxy: Refresh slot list on every C_GetSlotList call [PR#224] * modules: Fix index used in call to p11_dict_remove() [PR#219] * Fix Win32 p11_dl_error crash [PR#218] * modules: check gl.modules before iterates on it when freeing [PR#217] * trust: Ignore unreadable content in anchors [PR#215] * extract-jks: Prefer _p11_extract_jks_timestamp to SOURCE_DATE_EPOCH [PR#213] - Changes for version 0.23.15: * trust: Improve error handling if backed trust file is corrupted [PR#206] * url: Prefer upper-case letters in hex characters when encoding [PR#193] * trust/extract-jks.c: also honor SOURCE_DATE_EPOCH time [PR#202] * virtual: Prefer fixed closures to libffi closures [PR#196] * Fix issues spotted by coverity and cppcheck [PR#194, PR#204] * Build and test fixes [PR#164, PR#191, PR#199, PR#201] - Changes for version 0.23.14: * proxy: Avoid invalid memory access when unloading proxy module [PR#180] * Update pkcs11 header to allow SoftHSMv2 to compile [PR#181] * build: Restore libpthread dependency [PR#183] * Build fixes [PR#188] - Changes for version 0.23.13: * server: Enable socket activation through systemd [PR#173] * rpc-server: p11_kit_remote_serve_tokens: Allow exporting all modules [PR#174] * proxy: Fail early if there is no slot mapping [PR#175] * Remove hard dependency on libpthread [PR#177] * Build fixes [PR#170, PR#176] - Changes for version 0.23.12 * Fix compile error when PKCS#11 GNU calling convention is enabled [PR#160] * Fix getauxval() and secure_getenv() emulation on macOS and FreeBSD [PR#167] * Build and test fixes on macOS [PR#162, PR#168] - Changes for version 0.23.11 * trust: Add extractor for edk2/cacerts.bin [PR#139] * modules: Add option to control module visibility from proxy [PR#140] * trust: Prevent trust module being loaded by proxy module [PR#142] * library: Use dedicated locale object for printing error [PR#148] * Treat CKR_CRYPTOKI_ALREADY_INITIALIZED correctly [PR#134] * Improve const correctness for P11KitUri [PR#152] * PKCS#11 URI scheme comparison is now case insensitive [PR#156] * Build and test fixes [PR#151, PR#149, PR#141, PR#138, PR#135] - Changes for version 0.23.10 * filter: Respect "write-protected" vendor-specific attribute in PKCS#11 URI [PR#129] * server: Improve shell integration and documentation [PR#107, PR#108] * proxy: Reuse existing slot ID mapping in after fork() [PR#120] * trust: Forcibly mark "Default Trust" read-only [PR#123] * New function p11_kit_override_system_files() which can be used for testing [PR#110] * trust: Filter out duplicate extensions [PR#69] * Update translations [PR#128] * Bug fixes [PR#125, PR#126] - Changes for version 0.23.9 * Fix p11-kit server regressions [PR#103, PR#104] * trust: Respect anyExtendedKeyUsage in CA certificates [PR#99] * Build fixes related to reallocarray [PR#96, PR#98, PR#100] - Changes for version 0.23.8 * Improve vendor query attributes handling in PKCS#11 URI [PR#92] * Add OTP and GOST mechanisms to pkcs11.h [PR#90, PR#91] * New envvar P11_KIT_NO_USER_CONFIG to stop looking at user configurations [PR#87] * Build fixes for Solaris and 32-bit big-endian platforms [PR#81, PR#86] - Changes for version 0.23.7 * Fix memory issues with "p11-kit server" [PR#78] * Build fixes [PR#77 ...] - Changes for version 0.23.6 * Port "p11-kit server" to Windows and portability fixes of the RPC protocol [PR#67, PR#72, PR#74] * Recover the old behavior of "trust anchor --remove" [PR#70, PR#71] * Build fixes [PR#63 ...] - Changes for version 0.23.5 * Fix license notice of common/unix-peer.c [PR#58] * Remove systemd unit files for now [PR#60] * Build fixes for FreeBSD [PR#56] - Changes for version 0.23.4 * Recognize query attributes defined in PKCS#11 URI (RFC7512) [PR#31, PR#37, PR#52] * The trust policy module now recognizes CKA_NSS_MOZILLA_CA_POLICY attribute, used by Firefox [#99453, PR#46] * Add 'trust dump' command to dump all PKCS#11 objects in the persistence format [PR#44] * New experimental 'p11-kit server' command that allows PKCS#11 forwarding through a Unix domain socket. A client-side module p11-kit-client.so is also provided [PR#15] * Add systemd unit files for exporting the proxy module through a Unix domain socket [PR#35] * New P11KitIter API to iterate over slots, tokens, and modules in addition to objects [PR#28] * libffi dependency is now optional [PR#9] * Build fixes for FreeBSD, macOS, and Windows [PR#32, PR#39, PR#45] - Changes for version 0.23.3 * Install private executables in libexecdir [fdo#98817] * Fix link error of proxy module on macOS [fdo#98022] * Use new PKCS#11 URI specification for URIs [fdo#97245] * Support x-init-reserved argument of C_Initialize() in remote modules [fdo#80519] * Incorporate changes from PKCS#11 2.40 specification * Bump libtool library version * Documentation fixes * Build fixes [fdo#87192 ...] - Move RPM macros to %_rpmmacrodir. - New server subpackage - Change keyring to new maintainer Daiki Ueno - Avoid bareword to fix build failure - Remove obsolete patches: * p11-kit-biarch.patch * 0001-Support-loading-new-NSS-attribute-CKA_NSS_MOZILLA_CA.patch * 0001-Fix-a-typo-in-x-cetrificate-value-see-also-https-bug.patch- Also build documentation (boo#1013125)- support loading NSS attribute CKA_NSS_MOZILLA_CA_POLICY so Firefox detects built in certificates (boo#1154871, 0001-Fix-a-typo-in-x-cetrificate-value-see-also-https-bug.patch, 0001-Support-loading-new-NSS-attribute-CKA_NSS_MOZILLA_CA.patch)- Use %license instead of %doc [bsc#1082318]- 32-bit compatibility fixes: * Add PKCS11 module to p11-kit-32bit (bsc#996047#c39) * Add p11-kit-nss-trust-32bit NSS module * Fix potential bi-arch issue with private binaries (fdo#98817, p11-kit-biarch.patch)- Update to 0.23.2 * Fix forking issues with libffi * Fix various crashes in corner cases * Updated translations * Build fixes - Make building more verbose - Enable tests - Small spec file cleanup with spec-cleaner- Update to version 0.23.1 (stable) * Use new PKCS#11 URI draft fields for URIs [fdo#86474 fdo#87582] * Add pem-directory-hash extract format * Build fixes - Remove 0001-trust-allow-to-also-add-openssl-style-hashes-to-pem-d.diff; fixed on upstream release - Remove autoconf, automake and libtool require; unneeded dependencies - Add gtk-doc require; needed to build html documentation - Remove redundant %clean section- remove patches: * trust-Print-label-of-certificate-when-complaining-.patch * trust-Dont-use-invalid-public-keys-for-looking-up-.patch - new version 0.20.7 (stable) * New public pkcs11x.h header containing extensions [fdo#83495] * Export necessary defines to lookup attached extensions [fdo#83495] * Build fixes - new version 0.20.6 (stable) * Make the p11-kit-proxy.so module respect critical = no [fdo#83651] * Build fix for FreeBSD [fdo#75674] - new version 0.20.5 (stable) * Don't use invalid keys for looking up stapled extensions [fdo#82328] * Better error messages when invalid certificate extensions * Fix parsing of some odd OpenSSL TRUSTED CERTIFICATE files * Fix some leaks, and memory issues * Silence some clang scanner warnings - new version 0.20.4 (stable) * Don't complain about C_Finalize after a fork * Fix typo/sbin/ldconfig/sbin/ldconfigmourvedre 1698315209 0.23.22-150500.8.3.10.23.22-150500.8.3.1pkcs11moduleslibp11-kit.so.0libp11-kit.so.0.3.0p11-kit-proxy.solibp11-kit0AUTHORSChangeLogNEWSREADMEpkcs11.conf.examplelibp11-kit0COPYING/etc//etc/pkcs11//usr/lib64//usr/share/doc/packages//usr/share/doc/packages/libp11-kit0//usr/share/licenses//usr/share/licenses/libp11-kit0/-fmessage-length=0 -grecord-gcc-switches -O2 -Wall -D_FORTIFY_SOURCE=2 -fstack-protector-strong -funwind-tables -fasynchronous-unwind-tables -fstack-clash-protection -gobs://build.suse.de/SUSE:Maintenance:31290/SUSE_SLE-15-SP5_Update/d2461017bafa557a22e90431a0c28c1a-p11-kit.SUSE_SLE-15-SP5_Updatedrpmxz5ppc64le-suse-linuxdirectoryELF 64-bit LSB shared object, 64-bit PowerPC or cisco 7500, version 1 (SYSV), dynamically linked, BuildID[sha1]=013953facdda7389ac48f2b63c83ff145bb1c1e4, strippedASCII textASCII text, with very long linesPPRR RR R RRR RR RR0d9ږ+utf-83439a9a5ab759b458dc96e12a346349b3f49aacdbc0350c7614f0f608d004ddd?7zXZ !t//]"k%]dh;SvE<;02$Q#>'6w60\`[F"@=t:hW X%gewy*;&]b/R42o}hQ |of8#`$Qpz:6nĞn<0Z_Irgz+qzfɋEU+q4UzubCB))) 1vBՆWإG}ߑGۮ]dT5T7 8d=tc1rx0x2A'x걿WrCyD"I y%tU6*xwmI@g &hL^IޚoRPã*A0*=mI>mF^ kqCGz\j!o`Cy⟹D|C; 7Y`C\-]:reRscA-)̅n ^c,@~.~NvKc yXMm JTbdg9 +0Pzf`E$tYY = ^"'GXX5҃o'Z}RYX?/stu}Z0cT|ohaqYKFUfY1+7z~ňUeG*,< Wy {r%8]WyПN gQ^\?> aB[a++ hƃKYXBuζQf5-(fɋn1E 3 ܑM(~O3bpa3%o C Xes>]2whwczBpfQ/gLTI2iQE ~~4 Fq&Tf.@/ϲP.b̈́յfnG chP^4NdP40O!W)iL/ BìX;Pska?S \0l 1olD aF/CgЧ095\5WOJa4314`J/ dv#Y]ܲM"yH\՟4jx`AFt] Iڲbި ApQ'WC܀nr5Hӥ@&Yíp"-툻&95L >rQ^5{-,݄ڹҷO.oݦ22 RcX-֑U~J;j ":١cEe8&bAGUt=Pr:U/ u(jT[18s[ođ~W]5 C^N}q&ʁcfMX5rƋDO,VZV3mY|o}{Z5jTb=!hl=*i|;0:J?$F D?ϒA46Kбckt&RF:EQr7q*+c48]Ģa]2& 'ܖ'6;a؉l:T6ߧeiv$A<"&SBO!,[ cp=s鴒`~e  C#4_1!|͋/_,C7SmX8֯fwjV`A 㫒~ڄwzsrN5JVҽn|{t_{`R |l(:ݸ&&*9MN/ѣ5^ g '\VHydC03| ҥkBvV06"yaGz.y't4-8 5J6tNEV{Kׅx"4KKBåخBtp$Dr Y;%}F{N(h5:TU.D$E{8 /0 'W\ԆC^|V"R;UŨ_V2'@E0aBW%as|b"> H0?4-ߪ+OZQ& !̀/}<f6s>W9“jZHOʡAm|ܸ?C5Xu`:/sť=ވ@v"P(P/7a|l Sm ;×uEO Yi,"qztJ$PRw}# 퀒 /I/WhŬCծ:|mzjaim7frRv b4x%}@88T+GZD솎[q0䌅N|֯ 8\[| mIG{5[eɱF njӪo[H@<$aƖ ~oٺ=VUM(˿m%Z?- *c_  @OGRPxFi±"d 0mTNNslۛFsҦcQkM}߉=H9 y%!:_s$ !Ri:w}Ӫ]d"_'8>~ f6OM[p{涏:4clcWŭ&%NWOљ<2F4g10*)FK1|mz lS45o"$ؿf]/-8JiKٽN[:O)gaÔIRc!RfO4& [S`?| @R^N8IRG<&)VW.ۦX"u?3QS6iJ˼[N.=?dbzdCgAfߝl\VɯTF!&@Y(7OI_$cb4ĈU }䲐1z]:ɣH3vruD+.`֟1.hmQIAJ 3h!RoVE-|M 13@p@a60&k_5 ?D\mnK#mWY/a&Zd]6RGA$O##)ysЋ}E5bgVY&xebuN`!H\t=# 7;ߣyx̬Ecec] lˏK[3 (5oT_&. 5x8d$i_puyp7򈧅aWqk?nB|YMZh&dFT-C7[koyC{Ά591`ᗣ8MAW`V]Սcq;C%c_Qo]lMG_mv}+{`6Y-JkܘjOyQ{:j.bJ ݱhg Oy"Ԥ pEڌӰˇfEPW۞>h~-&p{Dy$P#(h#ٸꂭ7nُIu!!p !bN %hN4*GkPGƮrm+UtBbҔ.SbH +jzGƌRx4/ Z|6WsnᱵmblTlvC :i,ԋ s0qFnnhkCW٨ &zF\InkqxuJO@Ib1u"r6R[;bza` GL~bGPB4+Y|+<'NKCLP*Jڢ~TDر+F~kq ła-^\!Ra.G)%a< Q"sͺ >  'z*t&[+6Id%?hOe2T犃w-m9뚠]03vMau<ކwhUgG%{ԙg:@PХ #k Kk F_p3jcTn G?u(RNo+6ņZܴ6X}#y]zllUgWʠܪ GHm >8:5i3\-ڸx3yS.l6ZiiUmCɭDw\b S`J;uBvm T.IFc`'-mFh #g褮 HĬ60?,NgŎ2TMD쭩HqFz5`GQ/hֈxRy"c@c-O:J;(: o6?)IɃzvFf~ pвc! yARXryRW?,B E'Ѓm-J6tBr,rЋڶ:źMB5ԕ$+Ai$Q:E\VMFH ^LΑdu%)[bt$ ٖLd ڧe@] FҁlO^/LN\0AETAW+aꗊ)nt HN'kYkO4 k' d DG\Ϟ "l"գʜZ+XWpH~CM[MK/JȏjHㅠa18q&еk9N)ףGqmF^DS {}$ceI3 øF~!R HCaOҸ%|f\=墔%Lt@:K6ῦ/Cga,xB?vM&,e$ٶ0&t,Q{lhP#C vQv ~=ƈ"ģ 媹DYK1uK+Bpd [T,XpP1Gz7扇u XhAh -" 8-?p`GaS&_#򞘝9H~*iWӴHG̙58KA2yP*|hit}I#'^VbúA+h[Or5 U7%y}֗c-Լ_D;Dz: [zx#yW6*'m& N8Xъ SBaB}IA ֬.H~9^`@y*_bel[ϱaRvDOS\*& υRe$|EX%3@sV&l:iØĹv?o =WK0 O~Ey9zRWՔиJ% (/C{?$kz 7 %vnڧtu|kxGу:{ZwY7)TV5rQJ 5[aexBzZ/* LhO\1յc͢ DI ]|/@\b}MrޓNpNwypHk2>L:5"Z`·"(l&v z !H<dxc1,[a;i/0. ,ˬ%mE(-=~fZUAD"%(Q>pcه4Z Ce+FhʵKNGg'$Us#4[;(OQ!e?{1|N]Xj@ 9 -}#^VѤk~#d Պ*4h'A҄5ƆX3 ̪5&%Q Iջ0{aXEH#;_J~ YZ