This update for snphost fixes the following issues:
aes::unwrap_key() (bsc#1270642).MdCtxRef::digest_final() writing past caller buffer with no length
check (bsc#1270720).X509Ref::ocsp_responders when processing certificates with non-UTF-8
OCSP URLs (bsc#1270527).CipherCtxRef::cipher_update_inplace
when it is used with AES key-wrap-with-padding ciphers (bsc#1270947).