This is an update to the Mozilla CA certificates list version 2.11, which has been published as part of Mozilla NSS 3.28.1.
For additional details, please refer to the NSS 3.28.1 release notes: https://developer.mozilla.org/en-US/docs/Mozilla/Projects/NSS/NSS_3.28.1_release_notes
As in previous versions of the ca-certificates package, the CA list has been modified to keep several legacy CAs still trusted for compatibility reasons. Please refer to https://fedoraproject.org/wiki/CA-Certificates for details.
If you prefer to use the unchanged list provided by Mozilla, and if you accept any compatibility issues it may cause, an administrator may configure the system by executing the “ca-legacy disable” command. Please refer to the manual page of the ca-legacy command for additional details.