cvelist/2019/1xxx/CVE-2019-1559.json

252 lines
11 KiB
JSON
Raw Normal View History

2018-11-28 13:07:53 -05:00
{
2020-01-15 20:01:19 +00:00
"CVE_data_meta": {
"ASSIGNER": "openssl-security@openssl.org",
"DATE_PUBLIC": "2019-02-26",
"ID": "CVE-2019-1559",
"STATE": "PUBLIC",
"TITLE": "0-byte record padding oracle"
2019-03-17 23:40:23 +00:00
},
2020-01-15 20:01:19 +00:00
"affects": {
"vendor": {
"vendor_data": [
2019-03-17 23:40:23 +00:00
{
2020-01-15 20:01:19 +00:00
"product": {
"product_data": [
2019-03-17 23:40:23 +00:00
{
2020-01-15 20:01:19 +00:00
"product_name": "OpenSSL",
"version": {
"version_data": [
2019-03-17 23:40:23 +00:00
{
2020-01-15 20:01:19 +00:00
"version_value": "Fixed in OpenSSL 1.0.2r (Affected 1.0.2-1.0.2q)"
2019-03-17 23:40:23 +00:00
}
]
}
}
]
},
2020-01-15 20:01:19 +00:00
"vendor_name": "OpenSSL"
2019-03-17 23:40:23 +00:00
}
]
}
},
2020-01-15 20:01:19 +00:00
"credit": [
2019-03-17 23:40:23 +00:00
{
2020-01-15 20:01:19 +00:00
"lang": "eng",
"value": "Juraj Somorovsky, Robert Merget and Nimrod Aviram, with additional investigation by Steven Collison and Andrew Hourselt"
2019-03-17 23:40:23 +00:00
}
],
2020-01-15 20:01:19 +00:00
"data_format": "MITRE",
"data_type": "CVE",
"data_version": "4.0",
"description": {
"description_data": [
{
"lang": "eng",
"value": "If an application encounters a fatal protocol error and then calls SSL_shutdown() twice (once to send a close_notify, and once to receive one) then OpenSSL can respond differently to the calling application if a 0 byte record is received with invalid padding compared to if a 0 byte record is received with an invalid MAC. If the application then behaves differently based on that in a way that is detectable to the remote peer, then this amounts to a padding oracle that could be used to decrypt data. In order for this to be exploitable \"non-stitched\" ciphersuites must be in use. Stitched ciphersuites are optimised implementations of certain commonly used ciphersuites. Also the application must call SSL_shutdown() twice even if a protocol error has occurred (applications should not do this but some do anyway). Fixed in OpenSSL 1.0.2r (Affected 1.0.2-1.0.2q)."
}
2019-03-17 23:40:23 +00:00
]
},
2020-01-15 20:01:19 +00:00
"impact": [
2019-03-17 23:40:23 +00:00
{
2020-01-15 20:01:19 +00:00
"lang": "eng",
"url": "https://www.openssl.org/policies/secpolicy.html#Moderate",
"value": "Moderate"
2019-03-17 23:40:23 +00:00
}
],
2020-01-15 20:01:19 +00:00
"problemtype": {
"problemtype_data": [
2019-03-17 23:40:23 +00:00
{
2020-01-15 20:01:19 +00:00
"description": [
2019-03-17 23:40:23 +00:00
{
2020-01-15 20:01:19 +00:00
"lang": "eng",
"value": "Padding Oracle"
2019-03-17 23:40:23 +00:00
}
]
}
]
},
2020-01-15 20:01:19 +00:00
"references": {
"reference_data": [
2019-03-17 23:40:23 +00:00
{
2020-01-15 20:01:19 +00:00
"name": "107174",
"refsource": "BID",
"url": "http://www.securityfocus.com/bid/107174"
2019-03-17 23:40:23 +00:00
},
{
2020-01-15 20:01:19 +00:00
"name": "GLSA-201903-10",
"refsource": "GENTOO",
"url": "https://security.gentoo.org/glsa/201903-10"
2019-03-17 23:40:23 +00:00
},
{
2020-01-15 20:01:19 +00:00
"name": "USN-3899-1",
"refsource": "UBUNTU",
"url": "https://usn.ubuntu.com/3899-1/"
2019-03-17 23:40:23 +00:00
},
{
2020-01-15 20:01:19 +00:00
"name": "[debian-lts-announce] 20190301 [SECURITY] [DLA 1701-1] openssl security update",
"refsource": "MLIST",
"url": "https://lists.debian.org/debian-lts-announce/2019/03/msg00003.html"
2019-03-17 23:40:23 +00:00
},
{
2020-01-15 20:01:19 +00:00
"name": "DSA-4400",
"refsource": "DEBIAN",
"url": "https://www.debian.org/security/2019/dsa-4400"
2019-03-19 19:00:53 +00:00
},
2019-03-28 22:00:45 +00:00
{
2020-01-15 20:01:19 +00:00
"refsource": "SUSE",
"name": "openSUSE-SU-2019:1076",
"url": "http://lists.opensuse.org/opensuse-security-announce/2019-03/msg00041.html"
2019-04-02 18:00:52 +00:00
},
{
2020-01-15 20:01:19 +00:00
"refsource": "SUSE",
"name": "openSUSE-SU-2019:1105",
"url": "http://lists.opensuse.org/opensuse-security-announce/2019-04/msg00019.html"
2019-04-08 15:00:46 +00:00
},
{
2020-01-15 20:01:19 +00:00
"refsource": "SUSE",
"name": "openSUSE-SU-2019:1173",
"url": "http://lists.opensuse.org/opensuse-security-announce/2019-04/msg00046.html"
2019-04-08 15:00:46 +00:00
},
{
2020-01-15 20:01:19 +00:00
"refsource": "SUSE",
"name": "openSUSE-SU-2019:1175",
"url": "http://lists.opensuse.org/opensuse-security-announce/2019-04/msg00047.html"
2019-04-23 09:00:45 +00:00
},
2019-05-22 00:00:46 +00:00
{
2020-01-15 20:01:19 +00:00
"refsource": "SUSE",
"name": "openSUSE-SU-2019:1432",
"url": "http://lists.opensuse.org/opensuse-security-announce/2019-05/msg00049.html"
2019-06-27 12:00:56 +00:00
},
{
2020-01-15 20:01:19 +00:00
"refsource": "SUSE",
"name": "openSUSE-SU-2019:1637",
"url": "http://lists.opensuse.org/opensuse-security-announce/2019-06/msg00080.html"
Bill Situ <Bill.Situ@Oracle.com> Oracle Critical Patch Update Advisory - July 2019 update. On branch cna/Oracle/CPU2019Jul Changes to be committed: modified: 2014/0xxx/CVE-2014-0114.json modified: 2015/0xxx/CVE-2015-0226.json modified: 2015/0xxx/CVE-2015-0227.json modified: 2015/9xxx/CVE-2015-9251.json modified: 2016/0xxx/CVE-2016-0701.json modified: 2016/1000xxx/CVE-2016-1000031.json modified: 2016/1xxx/CVE-2016-1181.json modified: 2016/1xxx/CVE-2016-1182.json modified: 2016/2xxx/CVE-2016-2183.json modified: 2016/5xxx/CVE-2016-5007.json modified: 2016/6xxx/CVE-2016-6306.json modified: 2016/6xxx/CVE-2016-6497.json modified: 2016/6xxx/CVE-2016-6814.json modified: 2016/7xxx/CVE-2016-7103.json modified: 2016/8xxx/CVE-2016-8610.json modified: 2016/8xxx/CVE-2016-8735.json modified: 2016/9xxx/CVE-2016-9572.json modified: 2016/9xxx/CVE-2016-9878.json modified: 2017/14xxx/CVE-2017-14735.json modified: 2017/15xxx/CVE-2017-15095.json modified: 2017/3xxx/CVE-2017-3164.json modified: 2017/3xxx/CVE-2017-3735.json modified: 2017/3xxx/CVE-2017-3736.json modified: 2017/3xxx/CVE-2017-3737.json modified: 2017/3xxx/CVE-2017-3738.json modified: 2017/5xxx/CVE-2017-5645.json modified: 2017/5xxx/CVE-2017-5647.json modified: 2017/5xxx/CVE-2017-5664.json modified: 2017/5xxx/CVE-2017-5715.json modified: 2017/7xxx/CVE-2017-7525.json modified: 2018/0xxx/CVE-2018-0732.json modified: 2018/0xxx/CVE-2018-0733.json modified: 2018/0xxx/CVE-2018-0734.json modified: 2018/0xxx/CVE-2018-0735.json modified: 2018/0xxx/CVE-2018-0737.json modified: 2018/0xxx/CVE-2018-0739.json modified: 2018/1000xxx/CVE-2018-1000120.json modified: 2018/1000xxx/CVE-2018-1000121.json modified: 2018/1000xxx/CVE-2018-1000122.json modified: 2018/1000xxx/CVE-2018-1000180.json modified: 2018/1000xxx/CVE-2018-1000301.json modified: 2018/1000xxx/CVE-2018-1000613.json modified: 2018/1000xxx/CVE-2018-1000873.json modified: 2018/11xxx/CVE-2018-11039.json modified: 2018/11xxx/CVE-2018-11040.json modified: 2018/11xxx/CVE-2018-11054.json modified: 2018/11xxx/CVE-2018-11055.json modified: 2018/11xxx/CVE-2018-11056.json modified: 2018/11xxx/CVE-2018-11057.json modified: 2018/11xxx/CVE-2018-11058.json modified: 2018/11xxx/CVE-2018-11307.json modified: 2018/11xxx/CVE-2018-11775.json modified: 2018/11xxx/CVE-2018-11784.json modified: 2018/12xxx/CVE-2018-12022.json modified: 2018/12xxx/CVE-2018-12023.json modified: 2018/14xxx/CVE-2018-14719.json modified: 2018/14xxx/CVE-2018-14720.json modified: 2018/14xxx/CVE-2018-14721.json modified: 2018/15xxx/CVE-2018-15756.json modified: 2018/15xxx/CVE-2018-15769.json modified: 2018/16xxx/CVE-2018-16890.json modified: 2018/17xxx/CVE-2018-17189.json modified: 2018/17xxx/CVE-2018-17197.json modified: 2018/17xxx/CVE-2018-17199.json modified: 2018/17xxx/CVE-2018-17960.json modified: 2018/18xxx/CVE-2018-18311.json modified: 2018/19xxx/CVE-2018-19360.json modified: 2018/19xxx/CVE-2018-19361.json modified: 2018/19xxx/CVE-2018-19362.json modified: 2018/1xxx/CVE-2018-1257.json modified: 2018/1xxx/CVE-2018-1258.json modified: 2018/1xxx/CVE-2018-1270.json modified: 2018/1xxx/CVE-2018-1271.json modified: 2018/1xxx/CVE-2018-1272.json modified: 2018/1xxx/CVE-2018-1275.json modified: 2018/1xxx/CVE-2018-1304.json modified: 2018/1xxx/CVE-2018-1305.json modified: 2018/2xxx/CVE-2018-2883.json modified: 2018/3xxx/CVE-2018-3111.json modified: 2018/3xxx/CVE-2018-3315.json modified: 2018/3xxx/CVE-2018-3316.json modified: 2018/5xxx/CVE-2018-5407.json modified: 2018/7xxx/CVE-2018-7489.json modified: 2018/8xxx/CVE-2018-8013.json modified: 2018/8xxx/CVE-2018-8034.json modified: 2018/8xxx/CVE-2018-8039.json modified: 2018/9xxx/CVE-2018-9861.json modified: 2019/0xxx/CVE-2019-0190.json modified: 2019/0xxx/CVE-2019-0192.json modified: 2019/0xxx/CVE-2019-0196.json modified: 2019/0xxx/CVE-2019-0197.json modified: 2019/0xxx/CVE-2019-0199.json modified: 2019/0xxx/CVE-2019-0211.json modified: 2019/0xxx/CVE-2019-0215.json modified: 2019/0xxx/CVE-2019-0217.json modified: 2019/0xxx/CVE-2019-0220.json modified: 2019/0xxx/CVE-2019-0222.json modified: 2019/0xxx/CVE-2019-0232.json modified: 2019/11xxx/CVE-2019-11358.json modified: 2019/12xxx/CVE-2019-12086.json modified: 2019/12xxx/CVE-2019-12814.json modified: 2019/1xxx/CVE-2019-1543.json modified: 2019/1xxx/CVE-2019-1559.json modified: 2019/2xxx/CVE-2019-2484.json modified: 2019/2xxx/CVE-2019-2561.json modified: 2019/2xxx/CVE-2019-2569.json modified: 2019/2xxx/CVE-2019-2599.json modified: 2019/2xxx/CVE-2019-2666.json modified: 2019/2xxx/CVE-2019-2668.json modified: 2019/2xxx/CVE-2019-2672.json modified: 2019/2xxx/CVE-2019-2725.json modified: 2019/2xxx/CVE-2019-2727.json modified: 2019/2xxx/CVE-2019-2728.json modified: 2019/2xxx/CVE-2019-2729.json modified: 2019/2xxx/CVE-2019-2730.json modified: 2019/2xxx/CVE-2019-2731.json modified: 2019/2xxx/CVE-2019-2732.json modified: 2019/2xxx/CVE-2019-2733.json modified: 2019/2xxx/CVE-2019-2735.json modified: 2019/2xxx/CVE-2019-2736.json modified: 2019/2xxx/CVE-2019-2737.json modified: 2019/2xxx/CVE-2019-2738.json modified: 2019/2xxx/CVE-2019-2739.json modified: 2019/2xxx/CVE-2019-2740.json modified: 2019/2xxx/CVE-2019-2741.json modified: 2019/2xxx/CVE-2019-2742.json modified: 2019/2xxx/CVE-2019-2743.json modified: 2019/2xxx/CVE-2019-2744.json modified: 2019/2xxx/CVE-2019-2745.json modified: 2019/2xxx/CVE-2019-2746.json modified: 2019/2xxx/CVE-2019-2747.json modified: 2019/2xxx/CVE-2019-2748.json modified: 2019/2xxx/CVE-2019-2749.json modified: 2019/2xxx/CVE-2019-2750.json modified: 2019/2xxx/CVE-2019-2751.json modified: 2019/2xxx/CVE-2019-2752.json modified: 2019/2xxx/CVE-2019-2753.json modified: 2019/2xxx/CVE-2019-2754.json modified: 2019/2xxx/CVE-2019-2755.json modified: 2019/2xxx/CVE-2019-2756.json modified: 2019/2xxx/CVE-2019-2757.json modified: 2019/2xxx/CVE-2019-2758.json modified: 2019/2xxx/CVE-2019-2759.json modified: 2019/2xxx/CVE-2019-2760.json modified: 2019/2xxx/CVE-2019-2761.json modified: 2019/2xxx/CVE-2019-2762.json modified: 2019/2xxx/CVE-2019-2763.json modified: 2019/2xxx/CVE-2019-2764.json modified: 2019/2xxx/CVE-2019-2766.json modified: 2019/2xxx/CVE-2019-2767.json modified: 2019/2xxx/CVE-2019-2768.json modified: 2019/2xxx/CVE-2019-2769.json modified: 2019/2xxx/CVE-2019-2770.json modified: 2019/2xxx/CVE-2019-2771.json modified: 2019/2xxx/CVE-2019-2772.json modified: 2019/2xxx/CVE-2019-2773.json modified: 2019/2xxx/CVE-2019-2774.json modified: 2019/2xxx/CVE-2019-2775.json modified: 2019/2xxx/CVE-2019-2776.json modified: 2019/2xxx/CVE-2019-2777.json modified: 2019/2xxx/CVE-2019-2778.json modified: 2019/2xxx/CVE-2019-2779.json modified: 2019/2xxx/CVE-2019-2780.json modified: 2019/2xxx/CVE-2019-2781.json modified: 2019/2xxx/CVE-2019-2782.json modified: 2019/2xxx/CVE-2019-2783.json modified: 2019/2xxx/CVE-2019-2784.json modified: 2019/2xxx/CVE-2019-2785.json modified: 2019/2xxx/CVE-2019-2786.json modified: 2019/2xxx/CVE-2019-2787.json modified: 2019/2xxx/CVE-2019-2788.json modified: 2019/2xxx/CVE-2019-2789.json modified: 2019/2xxx/CVE-2019-2790.json modified: 2019/2xxx/CVE-2019-2791.json modified: 2019/2xxx/CVE-2019-2792.json modified: 2019/2xxx/CVE-2019-2793.json modified: 2019/2xxx/CVE-2019-2794.json modified: 2019/2xxx/CVE-2019-2795.json modified: 2019/2xxx/CVE-2019-2796.json modified: 2019/2xxx/CVE-2019-2797.json modified: 2019/2xxx/CVE-2019-2798.json modified: 2019/2xxx/CVE-2019-2799.json modified: 2019/2xxx/CVE-2019-2800.json modified: 2019/2xxx/CVE-2019-2801.json modified: 2019/2xxx/CVE-2019-2802.json modified: 2019/2xxx/CVE-2019-2803.json modified: 2019/2xxx/CVE-2019-2804.json modified: 2019/2xxx/CVE-2019-2805.json modified: 2019/2xxx/CVE-2019-2807.json modified: 2019/2xxx/CVE-2019-2808.json modified: 2019/2xxx/CVE-2019-2809.json modified: 2019/2xxx/CVE-2019-2810.json modified: 2019/2xxx/CVE-2019-2811.json modified: 2019/2xxx/CVE-2019-2812.json modified: 2019/2xxx/CVE-2019-2813.json modified: 2019/2xxx/CVE-2019-2814.json modified: 2019/2xxx/CVE-2019-2815.json modified: 2019/2xxx/CVE-2019-2816.json modified: 2019/2xxx/CVE-2019-2817.json modified: 2019/2xxx/CVE-2019-2818.json modified: 2019/2xxx/CVE-2019-2819.json modified: 2019/2xxx/CVE-2019-2820.json modified: 2019/2xxx/CVE-2019-2821.json modified: 2019/2xxx/CVE-2019-2822.json modified: 2019/2xxx/CVE-2019-2823.json modified: 2019/2xxx/CVE-2019-2824.json modified: 2019/2xxx/CVE-2019-2825.json modified: 2019/2xxx/CVE-2019-2826.json modified: 2019/2xxx/CVE-2019-2827.json modified: 2019/2xxx/CVE-2019-2828.json modified: 2019/2xxx/CVE-2019-2829.json modified: 2019/2xxx/CVE-2019-2830.json modified: 2019/2xxx/CVE-2019-2831.json modified: 2019/2xxx/CVE-2019-2832.json modified: 2019/2xxx/CVE-2019-2833.json modified: 2019/2xxx/CVE-2019-2834.json modified: 2019/2xxx/CVE-2019-2835.json modified: 2019/2xxx/CVE-2019-2836.json modified: 2019/2xxx/CVE-2019-2837.json modified: 2019/2xxx/CVE-2019-2838.json modified: 2019/2xxx/CVE-2019-2839.json modified: 2019/2xxx/CVE-2019-2840.json modified: 2019/2xxx/CVE-2019-2841.json modified: 2019/2xxx/CVE-2019-2842.json modified: 2019/2xxx/CVE-2019-2843.json modified: 2019/2xxx/CVE-2019-2844.json modified: 2019/2xxx/CVE-2019-2845.json modified: 2019/2xxx/CVE-2019-2846.json modified: 2019/2xxx/CVE-2019-2847.json modified: 2019/2xxx/CVE-2019-2848.json modified: 2019/2xxx/CVE-2019-2850.json modified: 2019/2xxx/CVE-2019-2852.json modified: 2019/2xxx/CVE-2019-2853.json modified: 2019/2xxx/CVE-2019-2854.json modified: 2019/2xxx/CVE-2019-2855.json modified: 2019/2xxx/CVE-2019-2856.json modified: 2019/2xxx/CVE-2019-2857.json modified: 2019/2xxx/CVE-2019-2858.json modified: 2019/2xxx/CVE-2019-2859.json modified: 2019/2xxx/CVE-2019-2860.json modified: 2019/2xxx/CVE-2019-2861.json modified: 2019/2xxx/CVE-2019-2862.json modified: 2019/2xxx/CVE-2019-2863.json modified: 2019/2xxx/CVE-2019-2864.json modified: 2019/2xxx/CVE-2019-2865.json modified: 2019/2xxx/CVE-2019-2866.json modified: 2019/2xxx/CVE-2019-2867.json modified: 2019/2xxx/CVE-2019-2868.json modified: 2019/2xxx/CVE-2019-2869.json modified: 2019/2xxx/CVE-2019-2870.json modified: 2019/2xxx/CVE-2019-2871.json modified: 2019/2xxx/CVE-2019-2873.json modified: 2019/2xxx/CVE-2019-2874.json modified: 2019/2xxx/CVE-2019-2875.json modified: 2019/2xxx/CVE-2019-2876.json modified: 2019/2xxx/CVE-2019-2877.json modified: 2019/2xxx/CVE-2019-2878.json modified: 2019/2xxx/CVE-2019-2879.json modified: 2019/3xxx/CVE-2019-3822.json modified: 2019/3xxx/CVE-2019-3823.json modified: 2019/5xxx/CVE-2019-5597.json modified: 2019/5xxx/CVE-2019-5598.json modified: 2019/6xxx/CVE-2019-6129.json modified: 2019/7xxx/CVE-2019-7317.json
2019-07-16 13:25:12 -07:00
},
2019-08-06 17:01:08 +00:00
{
2020-01-15 20:01:19 +00:00
"refsource": "REDHAT",
"name": "RHSA-2019:2304",
"url": "https://access.redhat.com/errata/RHSA-2019:2304"
2019-08-12 14:00:53 +00:00
},
{
2020-01-15 20:01:19 +00:00
"refsource": "REDHAT",
"name": "RHSA-2019:2439",
"url": "https://access.redhat.com/errata/RHSA-2019:2439"
2019-08-12 14:00:53 +00:00
},
{
2020-01-15 20:01:19 +00:00
"refsource": "REDHAT",
"name": "RHSA-2019:2437",
"url": "https://access.redhat.com/errata/RHSA-2019:2437"
2019-08-13 18:00:53 +00:00
},
{
2020-01-15 20:01:19 +00:00
"refsource": "REDHAT",
"name": "RHSA-2019:2471",
"url": "https://access.redhat.com/errata/RHSA-2019:2471"
2019-09-21 02:00:52 +00:00
},
{
2020-01-15 20:01:19 +00:00
"refsource": "FEDORA",
"name": "FEDORA-2019-db06efdea1",
"url": "https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/EWC42UXL5GHTU5G77VKBF6JYUUNGSHOM/"
2019-09-25 03:00:54 +00:00
},
{
2020-01-15 20:01:19 +00:00
"refsource": "FEDORA",
"name": "FEDORA-2019-00c25b9379",
"url": "https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/ZBEV5QGDRFUZDMNECFXUSN5FMYOZDE4V/"
2019-09-26 04:00:56 +00:00
},
{
2020-01-15 20:01:19 +00:00
"refsource": "FEDORA",
"name": "FEDORA-2019-9a0a7c0986",
"url": "https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/Y3IVFGSERAZLNJCK35TEM2R4726XIH3Z/"
2019-10-09 20:01:27 +00:00
},
2019-11-20 20:01:54 +00:00
{
2020-01-15 20:01:19 +00:00
"refsource": "REDHAT",
"name": "RHSA-2019:3929",
"url": "https://access.redhat.com/errata/RHSA-2019:3929"
2019-11-20 20:01:54 +00:00
},
{
2020-01-15 20:01:19 +00:00
"refsource": "REDHAT",
"name": "RHSA-2019:3931",
"url": "https://access.redhat.com/errata/RHSA-2019:3931"
Bill Situ <Bill.Situ@Oracle.com> Oracle Critical Patch Update - January 2020 This update contains updated third party CVEs On branch cna/Oracle/CPU2020Jan3rdPartyCVEs Changes to be committed: modified: 2014/3xxx/CVE-2014-3004.json modified: 2014/3xxx/CVE-2014-3596.json modified: 2015/9xxx/CVE-2015-9251.json modified: 2016/0xxx/CVE-2016-0701.json modified: 2016/1000xxx/CVE-2016-1000031.json modified: 2016/1xxx/CVE-2016-1181.json modified: 2016/1xxx/CVE-2016-1182.json modified: 2016/2xxx/CVE-2016-2183.json modified: 2016/4xxx/CVE-2016-4000.json modified: 2016/5xxx/CVE-2016-5019.json modified: 2016/6xxx/CVE-2016-6306.json modified: 2016/6xxx/CVE-2016-6814.json modified: 2016/8xxx/CVE-2016-8610.json modified: 2017/1000xxx/CVE-2017-1000376.json modified: 2017/12xxx/CVE-2017-12626.json modified: 2017/14xxx/CVE-2017-14735.json modified: 2017/15xxx/CVE-2017-15708.json modified: 2017/15xxx/CVE-2017-15906.json modified: 2017/5xxx/CVE-2017-5645.json modified: 2018/0xxx/CVE-2018-0734.json modified: 2018/0xxx/CVE-2018-0735.json modified: 2018/1000xxx/CVE-2018-1000030.json modified: 2018/11xxx/CVE-2018-11039.json modified: 2018/11xxx/CVE-2018-11040.json modified: 2018/11xxx/CVE-2018-11054.json modified: 2018/11xxx/CVE-2018-11055.json modified: 2018/11xxx/CVE-2018-11056.json modified: 2018/11xxx/CVE-2018-11057.json modified: 2018/11xxx/CVE-2018-11058.json modified: 2018/11xxx/CVE-2018-11307.json modified: 2018/11xxx/CVE-2018-11759.json modified: 2018/11xxx/CVE-2018-11784.json modified: 2018/14xxx/CVE-2018-14718.json modified: 2018/15xxx/CVE-2018-15473.json modified: 2018/15xxx/CVE-2018-15756.json modified: 2018/15xxx/CVE-2018-15769.json modified: 2018/16xxx/CVE-2018-16395.json modified: 2018/17xxx/CVE-2018-17189.json modified: 2018/19xxx/CVE-2018-19362.json modified: 2018/1xxx/CVE-2018-1060.json modified: 2018/1xxx/CVE-2018-1257.json modified: 2018/1xxx/CVE-2018-1258.json modified: 2018/20xxx/CVE-2018-20684.json modified: 2018/5xxx/CVE-2018-5407.json modified: 2018/6xxx/CVE-2018-6829.json modified: 2018/8xxx/CVE-2018-8032.json modified: 2018/8xxx/CVE-2018-8039.json modified: 2019/0xxx/CVE-2019-0199.json modified: 2019/0xxx/CVE-2019-0215.json modified: 2019/0xxx/CVE-2019-0221.json modified: 2019/0xxx/CVE-2019-0227.json modified: 2019/0xxx/CVE-2019-0232.json modified: 2019/10xxx/CVE-2019-10072.json modified: 2019/10xxx/CVE-2019-10086.json modified: 2019/10xxx/CVE-2019-10088.json modified: 2019/10xxx/CVE-2019-10092.json modified: 2019/10xxx/CVE-2019-10093.json modified: 2019/10xxx/CVE-2019-10094.json modified: 2019/10xxx/CVE-2019-10098.json modified: 2019/10xxx/CVE-2019-10246.json modified: 2019/10xxx/CVE-2019-10247.json modified: 2019/11xxx/CVE-2019-11358.json modified: 2019/11xxx/CVE-2019-11477.json modified: 2019/11xxx/CVE-2019-11478.json modified: 2019/11xxx/CVE-2019-11479.json modified: 2019/12xxx/CVE-2019-12086.json modified: 2019/12xxx/CVE-2019-12384.json modified: 2019/12xxx/CVE-2019-12406.json modified: 2019/12xxx/CVE-2019-12415.json modified: 2019/12xxx/CVE-2019-12419.json modified: 2019/12xxx/CVE-2019-12814.json modified: 2019/13xxx/CVE-2019-13117.json modified: 2019/13xxx/CVE-2019-13118.json modified: 2019/14xxx/CVE-2019-14379.json modified: 2019/14xxx/CVE-2019-14439.json modified: 2019/14xxx/CVE-2019-14540.json modified: 2019/15xxx/CVE-2019-15845.json modified: 2019/16xxx/CVE-2019-16168.json modified: 2019/16xxx/CVE-2019-16201.json modified: 2019/16xxx/CVE-2019-16254.json modified: 2019/16xxx/CVE-2019-16255.json modified: 2019/16xxx/CVE-2019-16335.json modified: 2019/16xxx/CVE-2019-16775.json modified: 2019/16xxx/CVE-2019-16776.json modified: 2019/16xxx/CVE-2019-16777.json modified: 2019/16xxx/CVE-2019-16942.json modified: 2019/16xxx/CVE-2019-16943.json modified: 2019/17xxx/CVE-2019-17091.json modified: 2019/17xxx/CVE-2019-17267.json modified: 2019/17xxx/CVE-2019-17359.json modified: 2019/17xxx/CVE-2019-17531.json modified: 2019/1xxx/CVE-2019-1547.json modified: 2019/1xxx/CVE-2019-1549.json modified: 2019/1xxx/CVE-2019-1552.json modified: 2019/1xxx/CVE-2019-1559.json modified: 2019/1xxx/CVE-2019-1563.json modified: 2019/2xxx/CVE-2019-2904.json modified: 2019/3xxx/CVE-2019-3862.json modified: 2019/5xxx/CVE-2019-5481.json modified: 2019/5xxx/CVE-2019-5482.json modified: 2019/5xxx/CVE-2019-5718.json modified: 2019/8xxx/CVE-2019-8457.json modified: 2019/9xxx/CVE-2019-9208.json modified: 2019/9xxx/CVE-2019-9636.json modified: 2019/9xxx/CVE-2019-9936.json modified: 2019/9xxx/CVE-2019-9937.json
2020-01-14 15:46:23 -08:00
},
2021-01-20 15:02:47 +00:00
{
"url": "https://www.oracle.com/technetwork/security-advisory/cpuapr2019-5072813.html",
"refsource": "MISC",
"name": "https://www.oracle.com/technetwork/security-advisory/cpuapr2019-5072813.html"
},
{
"url": "https://www.oracle.com/technetwork/security-advisory/cpujul2019-5072835.html",
"refsource": "MISC",
"name": "https://www.oracle.com/technetwork/security-advisory/cpujul2019-5072835.html"
},
{
"url": "https://www.oracle.com/technetwork/security-advisory/cpuoct2019-5072832.html",
"refsource": "MISC",
"name": "https://www.oracle.com/technetwork/security-advisory/cpuoct2019-5072832.html"
},
Bill Situ <Bill.Situ@Oracle.com> Oracle Critical Patch Update - January 2020 This update contains updated third party CVEs On branch cna/Oracle/CPU2020Jan3rdPartyCVEs Changes to be committed: modified: 2014/3xxx/CVE-2014-3004.json modified: 2014/3xxx/CVE-2014-3596.json modified: 2015/9xxx/CVE-2015-9251.json modified: 2016/0xxx/CVE-2016-0701.json modified: 2016/1000xxx/CVE-2016-1000031.json modified: 2016/1xxx/CVE-2016-1181.json modified: 2016/1xxx/CVE-2016-1182.json modified: 2016/2xxx/CVE-2016-2183.json modified: 2016/4xxx/CVE-2016-4000.json modified: 2016/5xxx/CVE-2016-5019.json modified: 2016/6xxx/CVE-2016-6306.json modified: 2016/6xxx/CVE-2016-6814.json modified: 2016/8xxx/CVE-2016-8610.json modified: 2017/1000xxx/CVE-2017-1000376.json modified: 2017/12xxx/CVE-2017-12626.json modified: 2017/14xxx/CVE-2017-14735.json modified: 2017/15xxx/CVE-2017-15708.json modified: 2017/15xxx/CVE-2017-15906.json modified: 2017/5xxx/CVE-2017-5645.json modified: 2018/0xxx/CVE-2018-0734.json modified: 2018/0xxx/CVE-2018-0735.json modified: 2018/1000xxx/CVE-2018-1000030.json modified: 2018/11xxx/CVE-2018-11039.json modified: 2018/11xxx/CVE-2018-11040.json modified: 2018/11xxx/CVE-2018-11054.json modified: 2018/11xxx/CVE-2018-11055.json modified: 2018/11xxx/CVE-2018-11056.json modified: 2018/11xxx/CVE-2018-11057.json modified: 2018/11xxx/CVE-2018-11058.json modified: 2018/11xxx/CVE-2018-11307.json modified: 2018/11xxx/CVE-2018-11759.json modified: 2018/11xxx/CVE-2018-11784.json modified: 2018/14xxx/CVE-2018-14718.json modified: 2018/15xxx/CVE-2018-15473.json modified: 2018/15xxx/CVE-2018-15756.json modified: 2018/15xxx/CVE-2018-15769.json modified: 2018/16xxx/CVE-2018-16395.json modified: 2018/17xxx/CVE-2018-17189.json modified: 2018/19xxx/CVE-2018-19362.json modified: 2018/1xxx/CVE-2018-1060.json modified: 2018/1xxx/CVE-2018-1257.json modified: 2018/1xxx/CVE-2018-1258.json modified: 2018/20xxx/CVE-2018-20684.json modified: 2018/5xxx/CVE-2018-5407.json modified: 2018/6xxx/CVE-2018-6829.json modified: 2018/8xxx/CVE-2018-8032.json modified: 2018/8xxx/CVE-2018-8039.json modified: 2019/0xxx/CVE-2019-0199.json modified: 2019/0xxx/CVE-2019-0215.json modified: 2019/0xxx/CVE-2019-0221.json modified: 2019/0xxx/CVE-2019-0227.json modified: 2019/0xxx/CVE-2019-0232.json modified: 2019/10xxx/CVE-2019-10072.json modified: 2019/10xxx/CVE-2019-10086.json modified: 2019/10xxx/CVE-2019-10088.json modified: 2019/10xxx/CVE-2019-10092.json modified: 2019/10xxx/CVE-2019-10093.json modified: 2019/10xxx/CVE-2019-10094.json modified: 2019/10xxx/CVE-2019-10098.json modified: 2019/10xxx/CVE-2019-10246.json modified: 2019/10xxx/CVE-2019-10247.json modified: 2019/11xxx/CVE-2019-11358.json modified: 2019/11xxx/CVE-2019-11477.json modified: 2019/11xxx/CVE-2019-11478.json modified: 2019/11xxx/CVE-2019-11479.json modified: 2019/12xxx/CVE-2019-12086.json modified: 2019/12xxx/CVE-2019-12384.json modified: 2019/12xxx/CVE-2019-12406.json modified: 2019/12xxx/CVE-2019-12415.json modified: 2019/12xxx/CVE-2019-12419.json modified: 2019/12xxx/CVE-2019-12814.json modified: 2019/13xxx/CVE-2019-13117.json modified: 2019/13xxx/CVE-2019-13118.json modified: 2019/14xxx/CVE-2019-14379.json modified: 2019/14xxx/CVE-2019-14439.json modified: 2019/14xxx/CVE-2019-14540.json modified: 2019/15xxx/CVE-2019-15845.json modified: 2019/16xxx/CVE-2019-16168.json modified: 2019/16xxx/CVE-2019-16201.json modified: 2019/16xxx/CVE-2019-16254.json modified: 2019/16xxx/CVE-2019-16255.json modified: 2019/16xxx/CVE-2019-16335.json modified: 2019/16xxx/CVE-2019-16775.json modified: 2019/16xxx/CVE-2019-16776.json modified: 2019/16xxx/CVE-2019-16777.json modified: 2019/16xxx/CVE-2019-16942.json modified: 2019/16xxx/CVE-2019-16943.json modified: 2019/17xxx/CVE-2019-17091.json modified: 2019/17xxx/CVE-2019-17267.json modified: 2019/17xxx/CVE-2019-17359.json modified: 2019/17xxx/CVE-2019-17531.json modified: 2019/1xxx/CVE-2019-1547.json modified: 2019/1xxx/CVE-2019-1549.json modified: 2019/1xxx/CVE-2019-1552.json modified: 2019/1xxx/CVE-2019-1559.json modified: 2019/1xxx/CVE-2019-1563.json modified: 2019/2xxx/CVE-2019-2904.json modified: 2019/3xxx/CVE-2019-3862.json modified: 2019/5xxx/CVE-2019-5481.json modified: 2019/5xxx/CVE-2019-5482.json modified: 2019/5xxx/CVE-2019-5718.json modified: 2019/8xxx/CVE-2019-8457.json modified: 2019/9xxx/CVE-2019-9208.json modified: 2019/9xxx/CVE-2019-9636.json modified: 2019/9xxx/CVE-2019-9936.json modified: 2019/9xxx/CVE-2019-9937.json
2020-01-14 15:46:23 -08:00
{
2020-01-15 20:01:19 +00:00
"url": "https://www.oracle.com/security-alerts/cpujan2020.html",
"refsource": "MISC",
"name": "https://www.oracle.com/security-alerts/cpujan2020.html"
2020-07-22 17:01:35 +00:00
},
{
"refsource": "UBUNTU",
"name": "USN-4376-2",
"url": "https://usn.ubuntu.com/4376-2/"
ill Situ <Bill.Situ@Oracle.com> On branch cna/Oracle/CPU2021Jan3rd Changes to be committed: modified: 2012/2xxx/CVE-2012-2098.json modified: 2015/4xxx/CVE-2015-4000.json modified: 2015/8xxx/CVE-2015-8965.json modified: 2016/1000xxx/CVE-2016-1000031.json modified: 2016/5xxx/CVE-2016-5725.json modified: 2017/12xxx/CVE-2017-12626.json modified: 2017/5xxx/CVE-2017-5611.json modified: 2017/5xxx/CVE-2017-5645.json modified: 2017/8xxx/CVE-2017-8028.json modified: 2018/0xxx/CVE-2018-0732.json modified: 2018/10xxx/CVE-2018-10237.json modified: 2018/11xxx/CVE-2018-11775.json modified: 2018/15xxx/CVE-2018-15756.json modified: 2018/1xxx/CVE-2018-1258.json modified: 2018/1xxx/CVE-2018-1285.json modified: 2018/20xxx/CVE-2018-20781.json modified: 2018/7xxx/CVE-2018-7318.json modified: 2018/8xxx/CVE-2018-8032.json modified: 2018/9xxx/CVE-2018-9019.json modified: 2019/0xxx/CVE-2019-0188.json modified: 2019/0xxx/CVE-2019-0227.json modified: 2019/0xxx/CVE-2019-0230.json modified: 2019/0xxx/CVE-2019-0233.json modified: 2019/10xxx/CVE-2019-10086.json modified: 2019/10xxx/CVE-2019-10173.json modified: 2019/10xxx/CVE-2019-10246.json modified: 2019/10xxx/CVE-2019-10247.json modified: 2019/10xxx/CVE-2019-10744.json modified: 2019/11xxx/CVE-2019-11135.json modified: 2019/11xxx/CVE-2019-11269.json modified: 2019/11xxx/CVE-2019-11358.json modified: 2019/12xxx/CVE-2019-12399.json modified: 2019/12xxx/CVE-2019-12402.json modified: 2019/12xxx/CVE-2019-12415.json modified: 2019/13xxx/CVE-2019-13990.json modified: 2019/14xxx/CVE-2019-14862.json modified: 2019/17xxx/CVE-2019-17091.json modified: 2019/17xxx/CVE-2019-17195.json modified: 2019/17xxx/CVE-2019-17359.json modified: 2019/17xxx/CVE-2019-17563.json modified: 2019/17xxx/CVE-2019-17566.json modified: 2019/17xxx/CVE-2019-17569.json modified: 2019/1xxx/CVE-2019-1551.json modified: 2019/1xxx/CVE-2019-1559.json modified: 2019/20xxx/CVE-2019-20892.json modified: 2019/20xxx/CVE-2019-20907.json modified: 2019/3xxx/CVE-2019-3773.json modified: 2019/3xxx/CVE-2019-3778.json modified: 2019/5xxx/CVE-2019-5427.json modified: 2019/7xxx/CVE-2019-7164.json modified: 2019/7xxx/CVE-2019-7548.json modified: 2019/9xxx/CVE-2019-9511.json modified: 2019/9xxx/CVE-2019-9513.json modified: 2020/10xxx/CVE-2020-10531.json modified: 2020/10xxx/CVE-2020-10543.json modified: 2020/10xxx/CVE-2020-10672.json modified: 2020/10xxx/CVE-2020-10673.json modified: 2020/10xxx/CVE-2020-10683.json modified: 2020/10xxx/CVE-2020-10722.json modified: 2020/10xxx/CVE-2020-10723.json modified: 2020/10xxx/CVE-2020-10724.json modified: 2020/10xxx/CVE-2020-10725.json modified: 2020/10xxx/CVE-2020-10726.json modified: 2020/10xxx/CVE-2020-10878.json modified: 2020/10xxx/CVE-2020-10968.json modified: 2020/10xxx/CVE-2020-10969.json modified: 2020/11xxx/CVE-2020-11022.json modified: 2020/11xxx/CVE-2020-11023.json modified: 2020/11xxx/CVE-2020-11080.json modified: 2020/11xxx/CVE-2020-11111.json modified: 2020/11xxx/CVE-2020-11112.json modified: 2020/11xxx/CVE-2020-11113.json modified: 2020/11xxx/CVE-2020-11612.json modified: 2020/11xxx/CVE-2020-11619.json modified: 2020/11xxx/CVE-2020-11620.json modified: 2020/11xxx/CVE-2020-11655.json modified: 2020/11xxx/CVE-2020-11656.json modified: 2020/11xxx/CVE-2020-11971.json modified: 2020/11xxx/CVE-2020-11972.json modified: 2020/11xxx/CVE-2020-11973.json modified: 2020/11xxx/CVE-2020-11979.json modified: 2020/11xxx/CVE-2020-11984.json modified: 2020/11xxx/CVE-2020-11985.json modified: 2020/11xxx/CVE-2020-11993.json modified: 2020/11xxx/CVE-2020-11994.json modified: 2020/11xxx/CVE-2020-11996.json modified: 2020/11xxx/CVE-2020-11998.json modified: 2020/12xxx/CVE-2020-12723.json modified: 2020/13xxx/CVE-2020-13254.json modified: 2020/13xxx/CVE-2020-13596.json modified: 2020/13xxx/CVE-2020-13871.json modified: 2020/13xxx/CVE-2020-13934.json modified: 2020/13xxx/CVE-2020-13935.json modified: 2020/13xxx/CVE-2020-13954.json modified: 2020/14xxx/CVE-2020-14060.json modified: 2020/14xxx/CVE-2020-14061.json modified: 2020/14xxx/CVE-2020-14062.json modified: 2020/14xxx/CVE-2020-14147.json modified: 2020/14xxx/CVE-2020-14195.json modified: 2020/14xxx/CVE-2020-14422.json modified: 2020/15xxx/CVE-2020-15025.json modified: 2020/15xxx/CVE-2020-15358.json modified: 2020/17xxx/CVE-2020-17498.json modified: 2020/17xxx/CVE-2020-17521.json modified: 2020/17xxx/CVE-2020-17530.json modified: 2020/1xxx/CVE-2020-1935.json modified: 2020/1xxx/CVE-2020-1938.json modified: 2020/1xxx/CVE-2020-1945.json modified: 2020/1xxx/CVE-2020-1967.json modified: 2020/1xxx/CVE-2020-1968.json modified: 2020/1xxx/CVE-2020-1971.json modified: 2020/24xxx/CVE-2020-24583.json modified: 2020/24xxx/CVE-2020-24584.json modified: 2020/24xxx/CVE-2020-24616.json modified: 2020/24xxx/CVE-2020-24750.json modified: 2020/25xxx/CVE-2020-25020.json modified: 2020/25xxx/CVE-2020-25862.json modified: 2020/25xxx/CVE-2020-25863.json modified: 2020/25xxx/CVE-2020-25866.json modified: 2020/26xxx/CVE-2020-26575.json modified: 2020/27xxx/CVE-2020-27216.json modified: 2020/35xxx/CVE-2020-35460.json modified: 2020/5xxx/CVE-2020-5398.json modified: 2020/5xxx/CVE-2020-5407.json modified: 2020/5xxx/CVE-2020-5408.json modified: 2020/5xxx/CVE-2020-5421.json modified: 2020/7xxx/CVE-2020-7064.json modified: 2020/8xxx/CVE-2020-8172.json modified: 2020/8xxx/CVE-2020-8174.json modified: 2020/8xxx/CVE-2020-8265.json modified: 2020/8xxx/CVE-2020-8277.json modified: 2020/8xxx/CVE-2020-8287.json modified: 2020/9xxx/CVE-2020-9281.json modified: 2020/9xxx/CVE-2020-9327.json modified: 2020/9xxx/CVE-2020-9484.json modified: 2020/9xxx/CVE-2020-9488.json modified: 2020/9xxx/CVE-2020-9490.json modified: 2020/9xxx/CVE-2020-9546.json modified: 2020/9xxx/CVE-2020-9547.json modified: 2020/9xxx/CVE-2020-9548.json
2021-01-19 13:08:08 -08:00
},
{
2021-01-20 15:02:47 +00:00
"url": "https://www.oracle.com/security-alerts/cpujan2021.html",
"refsource": "MISC",
"name": "https://www.oracle.com/security-alerts/cpujan2021.html"
},
{
"name": "https://security.netapp.com/advisory/ntap-20190301-0001/",
"refsource": "CONFIRM",
"url": "https://security.netapp.com/advisory/ntap-20190301-0001/"
},
{
"name": "https://security.netapp.com/advisory/ntap-20190301-0002/",
"refsource": "CONFIRM",
"url": "https://security.netapp.com/advisory/ntap-20190301-0002/"
},
{
"name": "https://git.openssl.org/gitweb/?p=openssl.git;a=commitdiff;h=e9bbefbf0f24c57645e7ad6a5a71ae649d18ac8e",
"refsource": "CONFIRM",
"url": "https://git.openssl.org/gitweb/?p=openssl.git;a=commitdiff;h=e9bbefbf0f24c57645e7ad6a5a71ae649d18ac8e"
},
{
"name": "https://www.openssl.org/news/secadv/20190226.txt",
"refsource": "CONFIRM",
"url": "https://www.openssl.org/news/secadv/20190226.txt"
},
{
"refsource": "CONFIRM",
"name": "https://support.f5.com/csp/article/K18549143",
"url": "https://support.f5.com/csp/article/K18549143"
},
{
"refsource": "CONFIRM",
"name": "https://www.tenable.com/security/tns-2019-02",
"url": "https://www.tenable.com/security/tns-2019-02"
},
{
"refsource": "CONFIRM",
"name": "https://security.netapp.com/advisory/ntap-20190423-0002/",
"url": "https://security.netapp.com/advisory/ntap-20190423-0002/"
},
{
"refsource": "CONFIRM",
"name": "https://www.tenable.com/security/tns-2019-03",
"url": "https://www.tenable.com/security/tns-2019-03"
},
{
"refsource": "CONFIRM",
"name": "https://kc.mcafee.com/corporate/index?page=content&id=SB10282",
"url": "https://kc.mcafee.com/corporate/index?page=content&id=SB10282"
},
{
"refsource": "CONFIRM",
"name": "https://support.f5.com/csp/article/K18549143?utm_source=f5support&amp;utm_medium=RSS",
"url": "https://support.f5.com/csp/article/K18549143?utm_source=f5support&amp;utm_medium=RSS"
2019-03-17 23:40:23 +00:00
}
]
}
}