NVD - CVE-2018-1324 (original) (raw)

References to Advisories, Solutions, and Tools

By selecting these links, you will be leaving NIST webspace. We have provided these links to other web sites because they may have information that would be of interest to you. No inferences should be drawn on account of other sites being referenced, or not, from this page. There may be other web sites that are more appropriate for your purpose. NIST does not necessarily endorse the views expressed, or concur with the facts presented on these sites. Further, NIST does not endorse any commercial products that may be mentioned on these sites. Please address comments about this page to [email protected].

URL Source(s) Tag(s)
http://www.securityfocus.com/bid/103490 Apache Software Foundation, CVE Third Party Advisory VDB Entry
http://www.securitytracker.com/id/1040549 Apache Software Foundation, CVE Third Party Advisory VDB Entry
https://lists.apache.org/thread.html/1c7b6df6d1c5c8583518a0afa017782924918e4d6acfaf23ed5b2089%40%3Cdev.commons.apache.org%3E Apache Software Foundation, CVE
https://lists.apache.org/thread.html/b8ef29df0f1d55aa741170748352ae8e425c7b1d286b2f257711a2dd%40%3Cdev.creadur.apache.org%3E Apache Software Foundation, CVE
https://lists.apache.org/thread.html/ff8dcfe29377088ab655fda9d585dccd5b1f07fabd94ae84fd60a7f8%40%3Ccommits.pulsar.apache.org%3E Apache Software Foundation, CVE
https://lists.apache.org/thread.html/r5532dc8d5456b5151e8c286801e2e5769f5c04118b29c3b5d13ea387%40%3Cissues.beam.apache.org%3E Apache Software Foundation, CVE
https://www.oracle.com/security-alerts/cpujan2022.html Apache Software Foundation, CVE Patch Third Party Advisory

Change History

14 change records found show changes

CVE Modified by CVE 11/20/2024 10:59:37 PM

Action Type Old Value New Value
Added Reference http://www.securityfocus.com/bid/103490
Added Reference http://www.securitytracker.com/id/1040549
Added Reference https://lists.apache.org/thread.html/1c7b6df6d1c5c8583518a0afa017782924918e4d6acfaf23ed5b2089%40%3Cdev.commons.apache.org%3E
Added Reference https://lists.apache.org/thread.html/b8ef29df0f1d55aa741170748352ae8e425c7b1d286b2f257711a2dd%40%3Cdev.creadur.apache.org%3E
Added Reference https://lists.apache.org/thread.html/ff8dcfe29377088ab655fda9d585dccd5b1f07fabd94ae84fd60a7f8%40%3Ccommits.pulsar.apache.org%3E
Added Reference https://lists.apache.org/thread.html/r5532dc8d5456b5151e8c286801e2e5769f5c04118b29c3b5d13ea387%40%3Cissues.beam.apache.org%3E
Added Reference https://www.oracle.com/security-alerts/cpujan2022.html

CVE Modified by Apache Software Foundation 5/14/2024 1:12:29 AM

Action Type Old Value New Value

CVE Modified by Apache Software Foundation 11/06/2023 9:55:58 PM

Action Type Old Value New Value
Added Reference Apache Software Foundation https://lists.apache.org/thread.html/1c7b6df6d1c5c8583518a0afa017782924918e4d6acfaf23ed5b2089%40%3Cdev.commons.apache.org%3E [No types assigned]
Added Reference Apache Software Foundation https://lists.apache.org/thread.html/b8ef29df0f1d55aa741170748352ae8e425c7b1d286b2f257711a2dd%40%3Cdev.creadur.apache.org%3E [No types assigned]
Added Reference Apache Software Foundation https://lists.apache.org/thread.html/ff8dcfe29377088ab655fda9d585dccd5b1f07fabd94ae84fd60a7f8%40%3Ccommits.pulsar.apache.org%3E [No types assigned]
Added Reference Apache Software Foundation https://lists.apache.org/thread.html/r5532dc8d5456b5151e8c286801e2e5769f5c04118b29c3b5d13ea387%40%3Cissues.beam.apache.org%3E [No types assigned]
Removed Reference Apache Software Foundation https://lists.apache.org/thread.html/1c7b6df6d1c5c8583518a0afa017782924918e4d6acfaf23ed5b2089@%3Cdev.commons.apache.org%3E
Removed Reference Apache Software Foundation https://lists.apache.org/thread.html/b8ef29df0f1d55aa741170748352ae8e425c7b1d286b2f257711a2dd@%3Cdev.creadur.apache.org%3E
Removed Reference Apache Software Foundation https://lists.apache.org/thread.html/ff8dcfe29377088ab655fda9d585dccd5b1f07fabd94ae84fd60a7f8@%3Ccommits.pulsar.apache.org%3E
Removed Reference Apache Software Foundation https://lists.apache.org/thread.html/r5532dc8d5456b5151e8c286801e2e5769f5c04118b29c3b5d13ea387@%3Cissues.beam.apache.org%3E

Modified Analysis by NIST 4/18/2022 10:27:07 AM

Action Type Old Value New Value
Added CVSS V3.1 NIST AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H
Removed CVSS V3 NIST AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H
Added CPE Configuration OR *cpe:2.3:a:oracle:mysql_cluster:*:*:*:*:*:*:*:* versions up to (including) 7.4.34 *cpe:2.3:a:oracle:mysql_cluster:*:*:*:*:*:*:*:* versions from (including) 7.5.0 up to (including) 7.5.24 *cpe:2.3:a:oracle:mysql_cluster:*:*:*:*:*:*:*:* versions from (including) 7.6.0 up to (including) 7.6.20 *cpe:2.3:a:oracle:mysql_cluster:*:*:*:*:*:*:*:* versions from (including) 8.0.0 up to (including) 8.0.27 *cpe:2.3:a:oracle:weblogic_server:14.1.1.0.0:*:*:*:*:*:*:*
Changed Reference Type https://lists.apache.org/thread.html/b8ef29df0f1d55aa741170748352ae8e425c7b1d286b2f257711a2dd@%3Cdev.creadur.apache.org%3E No Types Assigned https://lists.apache.org/thread.html/b8ef29df0f1d55aa741170748352ae8e425c7b1d286b2f257711a2dd@%3Cdev.creadur.apache.org%3E Mailing List, Vendor Advisory
Changed Reference Type https://lists.apache.org/thread.html/r5532dc8d5456b5151e8c286801e2e5769f5c04118b29c3b5d13ea387@%3Cissues.beam.apache.org%3E No Types Assigned https://lists.apache.org/thread.html/r5532dc8d5456b5151e8c286801e2e5769f5c04118b29c3b5d13ea387@%3Cissues.beam.apache.org%3E Mailing List, Vendor Advisory
Changed Reference Type https://www.oracle.com/security-alerts/cpujan2022.html No Types Assigned https://www.oracle.com/security-alerts/cpujan2022.html Patch, Third Party Advisory

CVE Modified by Apache Software Foundation 2/07/2022 11:15:13 AM

Action Type Old Value New Value
Added Reference https://www.oracle.com/security-alerts/cpujan2022.html [No Types Assigned]

CPE Deprecation Remap by NIST 10/06/2021 8:19:44 AM

Action Type Old Value New Value
Changed CPE Configuration OR *cpe:2.3:a:apache:commons-compress:*:*:*:*:*:*:*:* versions from (including) 1.11 from (including) 1.15 OR *cpe:2.3:a:apache:commons_compress:*:*:*:*:*:*:*:* versions from (including) 1.11 from (including) 1.15

CVE Modified by Apache Software Foundation 4/21/2020 9:15:14 AM

Action Type Old Value New Value
Added Reference https://lists.apache.org/thread.html/r5532dc8d5456b5151e8c286801e2e5769f5c04118b29c3b5d13ea387@%3Cissues.beam.apache.org%3E [No Types Assigned]

CWE Remap by NIST 10/02/2019 8:03:26 PM

Action Type Old Value New Value
Changed CWE CWE-399 CWE-399 CWE-835

CVE Modified by Apache Software Foundation 5/30/2019 5:29:00 PM

Action Type Old Value New Value
Added Reference https://lists.apache.org/thread.html/b8ef29df0f1d55aa741170748352ae8e425c7b1d286b2f257711a2dd@%3Cdev.creadur.apache.org%3E [No Types Assigned]

Modified Analysis by NIST 5/01/2019 9:36:08 AM

Action Type Old Value New Value
Changed Reference Type https://lists.apache.org/thread.html/1c7b6df6d1c5c8583518a0afa017782924918e4d6acfaf23ed5b2089@%3Cdev.commons.apache.org%3E Vendor Advisory https://lists.apache.org/thread.html/1c7b6df6d1c5c8583518a0afa017782924918e4d6acfaf23ed5b2089@%3Cdev.commons.apache.org%3E Mailing List, Vendor Advisory
Changed Reference Type https://lists.apache.org/thread.html/ff8dcfe29377088ab655fda9d585dccd5b1f07fabd94ae84fd60a7f8@%3Ccommits.pulsar.apache.org%3E No Types Assigned https://lists.apache.org/thread.html/ff8dcfe29377088ab655fda9d585dccd5b1f07fabd94ae84fd60a7f8@%3Ccommits.pulsar.apache.org%3E Mailing List, Vendor Advisory

CVE Modified by Apache Software Foundation 4/16/2019 2:29:05 PM

Action Type Old Value New Value
Added Reference https://lists.apache.org/thread.html/ff8dcfe29377088ab655fda9d585dccd5b1f07fabd94ae84fd60a7f8@%3Ccommits.pulsar.apache.org%3E [No Types Assigned]

Initial Analysis by NIST 4/09/2018 10:59:10 AM

Action Type Old Value New Value
Added CVSS V3 AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H
Added CVSS V2 (AV:N/AC:M/Au:N/C:N/I:N/A:P)
Added CWE CWE-399
Added CPE Configuration OR *cpe:2.3:a:apache:commons-compress:*:*:*:*:*:*:*:* versions from (including) 1.11 up to (including) 1.15
Changed Reference Type http://www.securityfocus.com/bid/103490 No Types Assigned http://www.securityfocus.com/bid/103490 Third Party Advisory, VDB Entry
Changed Reference Type http://www.securitytracker.com/id/1040549 No Types Assigned http://www.securitytracker.com/id/1040549 Third Party Advisory, VDB Entry
Changed Reference Type https://lists.apache.org/thread.html/1c7b6df6d1c5c8583518a0afa017782924918e4d6acfaf23ed5b2089@%3Cdev.commons.apache.org%3E No Types Assigned https://lists.apache.org/thread.html/1c7b6df6d1c5c8583518a0afa017782924918e4d6acfaf23ed5b2089@%3Cdev.commons.apache.org%3E Vendor Advisory
Added CVSS V2 Metadata Victim must voluntarily interact with attack mechanism

CVE Modified by Apache Software Foundation 3/24/2018 9:29:01 PM

Action Type Old Value New Value
Added Reference http://www.securityfocus.com/bid/103490 [No Types Assigned]

CVE Modified by Apache Software Foundation 3/20/2018 9:29:02 PM

Action Type Old Value New Value
Added Reference http://www.securitytracker.com/id/1040549 [No Types Assigned]