FreeBSD-EN-21:07.caroot : Root certificate bundle update
Versions Affected : All versions prior to TrueNAS 12.0-U3
Description
Several certificates were removed from the bundle after the latest release of FreeBSD 12.2.
Certificates are often removed from the root bundle due to a failure to meet the standards established by Mozilla for being considered a trusted Certificate Authority.
Workaround
No workaround is available. Systems not relying on login.access(5) to enforce custom login policies are not affected.
Mitigation
- Upgrade to TrueNAS 12.0-U3 or later.
Commit
- FreeBSD Revision : r369357
- TrueNAS Commit : c631123
- TrueNAS Commit : 42c7377
- JIRA Ticket : NAS-109604