libnss: security bump to version 3.39
Fixes the following security issue:
CVE-2018-12384: NSS responded to an SSLv2-compatible ClientHello with a
ServerHello that had an all-zero random.
Signed-off-by: Peter Korsgaard <peter@korsgaard.com>
(cherry picked from commit 1c32e4c298d02ce7ca3c3551be8c31051dde7801)
Signed-off-by: Peter Korsgaard <peter@korsgaard.com>