NVD - CVE-2021-3449 (original) (raw)

CVE Modified by OpenSSL Software Foundation 6/17/2026 12:05:07 AM

Action Type Old Value New Value
Added Affected [{"vendor":"OpenSSL","product":"OpenSSL","versions":[{"version":"Fixed in OpenSSL 1.1.1k (Affected 1.1.1-1.1.1j)","status":"affected"}]}]

CVE Modified by CVE 11/21/2024 1:21:33 AM

Action Type Old Value New Value
Added Reference http://www.openwall.com/lists/oss-security/2021/03/27/1
Added Reference http://www.openwall.com/lists/oss-security/2021/03/27/2
Added Reference http://www.openwall.com/lists/oss-security/2021/03/28/3
Added Reference http://www.openwall.com/lists/oss-security/2021/03/28/4
Added Reference https://cert-portal.siemens.com/productcert/pdf/ssa-389290.pdf
Added Reference https://cert-portal.siemens.com/productcert/pdf/ssa-772220.pdf
Added Reference https://git.openssl.org/gitweb/?p=openssl.git%3Ba=commitdiff%3Bh=fb9fa6b51defd48157eeb207f52181f735d96148
Added Reference https://kb.pulsesecure.net/articles/Pulse\_Security\_Advisories/SA44845
Added Reference https://kc.mcafee.com/corporate/index?page=content&id=SB10356
Added Reference https://lists.debian.org/debian-lts-announce/2021/08/msg00029.html
Added Reference https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/CCBFLLVQVILIVGZMBJL3IXZGKWQISYNP/
Added Reference https://psirt.global.sonicwall.com/vuln-detail/SNWLID-2021-0013
Added Reference https://security.FreeBSD.org/advisories/FreeBSD-SA-21:07.openssl.asc
Added Reference https://security.gentoo.org/glsa/202103-03
Added Reference https://security.netapp.com/advisory/ntap-20210326-0006/
Added Reference https://security.netapp.com/advisory/ntap-20210513-0002/
Added Reference https://security.netapp.com/advisory/ntap-20240621-0006/
Added Reference https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-openssl-2021-GHY28dJd
Added Reference https://www.debian.org/security/2021/dsa-4875
Added Reference https://www.openssl.org/news/secadv/20210325.txt
Added Reference https://www.oracle.com//security-alerts/cpujul2021.html
Added Reference https://www.oracle.com/security-alerts/cpuApr2021.html
Added Reference https://www.oracle.com/security-alerts/cpuapr2022.html
Added Reference https://www.oracle.com/security-alerts/cpujul2022.html
Added Reference https://www.oracle.com/security-alerts/cpuoct2021.html
Added Reference https://www.tenable.com/security/tns-2021-05
Added Reference https://www.tenable.com/security/tns-2021-06
Added Reference https://www.tenable.com/security/tns-2021-09
Added Reference https://www.tenable.com/security/tns-2021-10

CVE Modified by OpenSSL Software Foundation 6/21/2024 3:15:19 PM

Action Type Old Value New Value
Added Reference OpenSSL Software Foundation https://security.netapp.com/advisory/ntap-20240621-0006/ [No types assigned]

CVE Modified by OpenSSL Software Foundation 5/14/2024 5:24:28 AM

Action Type Old Value New Value

CVE Modified by OpenSSL Software Foundation 11/06/2023 10:38:00 PM

Action Type Old Value New Value
Added Reference OpenSSL Software Foundation https://git.openssl.org/gitweb/?p=openssl.git%3Ba=commitdiff%3Bh=fb9fa6b51defd48157eeb207f52181f735d96148 [No types assigned]
Added Reference OpenSSL Software Foundation https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/CCBFLLVQVILIVGZMBJL3IXZGKWQISYNP/ [No types assigned]
Removed Reference OpenSSL Software Foundation https://git.openssl.org/gitweb/?p=openssl.git;a=commitdiff;h=fb9fa6b51defd48157eeb207f52181f735d96148
Removed Reference OpenSSL Software Foundation https://lists.fedoraproject.org/archives/list/[\[email protected]](/cdn-cgi/l/email-protection)/message/CCBFLLVQVILIVGZMBJL3IXZGKWQISYNP/

Modified Analysis by NIST 8/29/2022 4:27:13 PM

Action Type Old Value New Value
Changed CPE Configuration OR *cpe:2.3:a:oracle:essbase:21.2:*:*:*:*:*:*:* *cpe:2.3:a:oracle:graalvm:19.3.5:*:*:*:enterprise:*:*:* *cpe:2.3:a:oracle:graalvm:20.3.1.2:*:*:*:enterprise:*:*:* *cpe:2.3:a:oracle:graalvm:21.0.0.2:*:*:*:enterprise:*:*:* *cpe:2.3:a:oracle:jd_edwards_enterpriseone_tools:*:*:*:*:*:*:*:* versions up to (excluding) 9.2.6.0 *cpe:2.3:a:oracle:jd_edwards_world_security:a9.4:*:*:*:*:*:*:* *cpe:2.3:a:oracle:mysql_connectors:*:*:*:*:*:*:*:* versions up to (including) 8.0.23 *cpe:2.3:a:oracle:mysql_server:*:*:*:*:*:*:*:* versions up to (including) 5.7.33 *cpe:2.3:a:oracle:mysql_server:*:*:*:*:*:*:*:* versions from (including) 8.0.15 up to (including) 8.0.23 *cpe:2.3:a:oracle:mysql_workbench:*:*:*:*:*:*:*:* versions up to (including) 8.0.23 *cpe:2.3:a:oracle:peoplesoft_enterprise_peopletools:8.57:*:*:*:*:*:*:* *cpe:2.3:a:oracle:peoplesoft_enterprise_peopletools:8.58:*:*:*:*:*:*:* *cpe:2.3:a:oracle:peoplesoft_enterprise_peopletools:8.59:*:*:*:*:*:*:* *cpe:2.3:a:oracle:secure_backup:*:*:*:*:*:*:*:* versions up to (excluding) 18.1.0.1.0 *cpe:2.3:a:oracle:secure_global_desktop:5.6:*:*:*:*:*:*:* *cpe:2.3:a:oracle:zfs_storage_appliance_kit:8.8:*:*:*:*:*:*:* OR *cpe:2.3:a:oracle:communications_communications_policy_management:12.6.0.0.0:*:*:*:*:*:*:* *cpe:2.3:a:oracle:enterprise_manager_for_storage_management:13.4.0.0:*:*:*:*:*:*:* *cpe:2.3:a:oracle:essbase:21.2:*:*:*:*:*:*:* *cpe:2.3:a:oracle:graalvm:19.3.5:*:*:*:enterprise:*:*:* *cpe:2.3:a:oracle:graalvm:20.3.1.2:*:*:*:enterprise:*:*:* *cpe:2.3:a:oracle:graalvm:21.0.0.2:*:*:*:enterprise:*:*:* *cpe:2.3:a:oracle:jd_edwards_enterpriseone_tools:*:*:*:*:*:*:*:* versions up to (excluding) 9.2.6.0 *cpe:2.3:a:oracle:jd_edwards_world_security:a9.4:*:*:*:*:*:*:* *cpe:2.3:a:oracle:mysql_connectors:*:*:*:*:*:*:*:* versions up to (including) 8.0.23 *cpe:2.3:a:oracle:mysql_server:*:*:*:*:*:*:*:* versions up to (including) 5.7.33 *cpe:2.3:a:oracle:mysql_server:*:*:*:*:*:*:*:* versions from (including) 8.0.15 up to (including) 8.0.23 *cpe:2.3:a:oracle:mysql_workbench:*:*:*:*:*:*:*:* versions up to (including) 8.0.23 *cpe:2.3:a:oracle:peoplesoft_enterprise_peopletools:8.57:*:*:*:*:*:*:* *cpe:2.3:a:oracle:peoplesoft_enterprise_peopletools:8.58:*:*:*:*:*:*:* *cpe:2.3:a:oracle:peoplesoft_enterprise_peopletools:8.59:*:*:*:*:*:*:* *cpe:2.3:a:oracle:primavera_unifier:*:*:*:*:*:*:*:* versions from (including) 17.7 up to (including) 17.12 *cpe:2.3:a:oracle:primavera_unifier:19.12:*:*:*:*:*:*:* *cpe:2.3:a:oracle:primavera_unifier:20.12:*:*:*:*:*:*:* *cpe:2.3:a:oracle:primavera_unifier:21.12:*:*:*:*:*:*:* *cpe:2.3:a:oracle:secure_backup:*:*:*:*:*:*:*:* versions up to (excluding) 18.1.0.1.0 *cpe:2.3:a:oracle:secure_global_desktop:5.6:*:*:*:*:*:*:* *cpe:2.3:a:oracle:zfs_storage_appliance_kit:8.8:*:*:*:*:*:*:*
Added CPE Configuration OR *cpe:2.3:a:nodejs:node.js:*:*:*:*:-:*:*:* versions from (including) 10.0.0 up to (including) 10.12.0 *cpe:2.3:a:nodejs:node.js:*:*:*:*:lts:*:*:* versions from (including) 10.13.0 up to (including) 10.24.0 *cpe:2.3:a:nodejs:node.js:*:*:*:*:-:*:*:* versions from (including) 12.0.0 up to (including) 12.12.0 *cpe:2.3:a:nodejs:node.js:*:*:*:*:lts:*:*:* versions from (including) 12.13.0 up to (excluding) 12.22.1 *cpe:2.3:a:nodejs:node.js:*:*:*:*:-:*:*:* versions from (including) 14.0.0 up to (including) 14.14.0 *cpe:2.3:a:nodejs:node.js:*:*:*:*:lts:*:*:* versions from (including) 14.15.0 up to (excluding) 14.16.1 *cpe:2.3:a:nodejs:node.js:*:*:*:*:-:*:*:* versions from (including) 15.0.0 up to (excluding) 15.14.0
Changed Reference Type https://www.oracle.com/security-alerts/cpuapr2022.html No Types Assigned https://www.oracle.com/security-alerts/cpuapr2022.html Patch, Third Party Advisory
Changed Reference Type https://www.oracle.com/security-alerts/cpujul2022.html No Types Assigned https://www.oracle.com/security-alerts/cpujul2022.html Third Party Advisory

CVE Modified by OpenSSL Software Foundation 7/25/2022 2:16:19 PM

Action Type Old Value New Value
Added Reference https://www.oracle.com/security-alerts/cpujul2022.html [No Types Assigned]

CVE Modified by OpenSSL Software Foundation 4/19/2022 8:16:16 PM

Action Type Old Value New Value
Added Reference https://www.oracle.com/security-alerts/cpuapr2022.html [No Types Assigned]

Reanalysis by NIST 4/07/2022 11:41:32 AM

Action Type Old Value New Value
Changed CPE Configuration OR *cpe:2.3:a:siemens:sinec_infrastructure_network_services:*:*:*:*:*:*:*:* versions up to (excluding) 1.0.1.1 *cpe:2.3:a:siemens:sinec_infrastructure_network_services:1.0.1.1:*:*:*:*:*:*:* OR *cpe:2.3:a:siemens:sinec_infrastructure_network_services:*:*:*:*:*:*:*:* versions up to (excluding) 1.0.1.1

Modified Analysis by NIST 4/06/2022 1:04:08 PM

Action Type Old Value New Value
Changed CPE Configuration OR *cpe:2.3:a:oracle:essbase:21.2:*:*:*:*:*:*:* *cpe:2.3:a:oracle:graalvm:19.3.5:*:*:*:enterprise:*:*:* *cpe:2.3:a:oracle:graalvm:20.3.1.2:*:*:*:enterprise:*:*:* *cpe:2.3:a:oracle:graalvm:21.0.0.2:*:*:*:enterprise:*:*:* *cpe:2.3:a:oracle:mysql_connectors:*:*:*:*:*:*:*:* versions up to (including) 8.0.23 *cpe:2.3:a:oracle:mysql_server:*:*:*:*:*:*:*:* versions up to (including) 5.7.33 *cpe:2.3:a:oracle:mysql_server:*:*:*:*:*:*:*:* versions from (including) 8.0.15 up to (including) 8.0.23 *cpe:2.3:a:oracle:mysql_workbench:*:*:*:*:*:*:*:* versions up to (including) 8.0.23 *cpe:2.3:a:oracle:peoplesoft_enterprise_peopletools:8.57:*:*:*:*:*:*:* *cpe:2.3:a:oracle:peoplesoft_enterprise_peopletools:8.58:*:*:*:*:*:*:* *cpe:2.3:a:oracle:peoplesoft_enterprise_peopletools:8.59:*:*:*:*:*:*:* *cpe:2.3:a:oracle:secure_global_desktop:5.6:*:*:*:*:*:*:* *cpe:2.3:a:oracle:zfs_storage_appliance_kit:8.8:*:*:*:*:*:*:* OR *cpe:2.3:a:oracle:essbase:21.2:*:*:*:*:*:*:* *cpe:2.3:a:oracle:graalvm:19.3.5:*:*:*:enterprise:*:*:* *cpe:2.3:a:oracle:graalvm:20.3.1.2:*:*:*:enterprise:*:*:* *cpe:2.3:a:oracle:graalvm:21.0.0.2:*:*:*:enterprise:*:*:* *cpe:2.3:a:oracle:jd_edwards_enterpriseone_tools:*:*:*:*:*:*:*:* versions up to (excluding) 9.2.6.0 *cpe:2.3:a:oracle:jd_edwards_world_security:a9.4:*:*:*:*:*:*:* *cpe:2.3:a:oracle:mysql_connectors:*:*:*:*:*:*:*:* versions up to (including) 8.0.23 *cpe:2.3:a:oracle:mysql_server:*:*:*:*:*:*:*:* versions up to (including) 5.7.33 *cpe:2.3:a:oracle:mysql_server:*:*:*:*:*:*:*:* versions from (including) 8.0.15 up to (including) 8.0.23 *cpe:2.3:a:oracle:mysql_workbench:*:*:*:*:*:*:*:* versions up to (including) 8.0.23 *cpe:2.3:a:oracle:peoplesoft_enterprise_peopletools:8.57:*:*:*:*:*:*:* *cpe:2.3:a:oracle:peoplesoft_enterprise_peopletools:8.58:*:*:*:*:*:*:* *cpe:2.3:a:oracle:peoplesoft_enterprise_peopletools:8.59:*:*:*:*:*:*:* *cpe:2.3:a:oracle:secure_backup:*:*:*:*:*:*:*:* versions up to (excluding) 18.1.0.1.0 *cpe:2.3:a:oracle:secure_global_desktop:5.6:*:*:*:*:*:*:* *cpe:2.3:a:oracle:zfs_storage_appliance_kit:8.8:*:*:*:*:*:*:*
Added CPE Configuration OR *cpe:2.3:a:siemens:sinec_infrastructure_network_services:*:*:*:*:*:*:*:* versions up to (excluding) 1.0.1.1 *cpe:2.3:a:siemens:sinec_infrastructure_network_services:1.0.1.1:*:*:*:*:*:*:*
Changed Reference Type https://cert-portal.siemens.com/productcert/pdf/ssa-389290.pdf No Types Assigned https://cert-portal.siemens.com/productcert/pdf/ssa-389290.pdf Third Party Advisory
Changed Reference Type https://www.oracle.com/security-alerts/cpuoct2021.html No Types Assigned https://www.oracle.com/security-alerts/cpuoct2021.html Third Party Advisory

CVE Modified by OpenSSL Software Foundation 3/10/2022 12:42:48 PM

Action Type Old Value New Value
Added Reference https://cert-portal.siemens.com/productcert/pdf/ssa-389290.pdf [No Types Assigned]

CVE Modified by OpenSSL Software Foundation 10/20/2021 7:17:32 AM

Action Type Old Value New Value
Added Reference https://www.oracle.com/security-alerts/cpuoct2021.html [No Types Assigned]

Modified Analysis by NIST 9/21/2021 2:09:17 PM

Action Type Old Value New Value
Changed CPE Configuration OR *cpe:2.3:a:oracle:graalvm:19.3.5:*:*:*:enterprise:*:*:* *cpe:2.3:a:oracle:graalvm:20.3.1.2:*:*:*:enterprise:*:*:* *cpe:2.3:a:oracle:graalvm:21.0.0.2:*:*:*:enterprise:*:*:* *cpe:2.3:a:oracle:mysql_server:*:*:*:*:*:*:*:* versions up to (including) 5.7.33 *cpe:2.3:a:oracle:mysql_server:*:*:*:*:*:*:*:* versions from (including) 8.0.15 up to (including) 8.0.23 *cpe:2.3:a:oracle:mysql_workbench:*:*:*:*:*:*:*:* versions up to (including) 8.0.23 *cpe:2.3:a:oracle:secure_global_desktop:5.6:*:*:*:*:*:*:* OR *cpe:2.3:a:oracle:essbase:21.2:*:*:*:*:*:*:* *cpe:2.3:a:oracle:graalvm:19.3.5:*:*:*:enterprise:*:*:* *cpe:2.3:a:oracle:graalvm:20.3.1.2:*:*:*:enterprise:*:*:* *cpe:2.3:a:oracle:graalvm:21.0.0.2:*:*:*:enterprise:*:*:* *cpe:2.3:a:oracle:mysql_connectors:*:*:*:*:*:*:*:* versions up to (including) 8.0.23 *cpe:2.3:a:oracle:mysql_server:*:*:*:*:*:*:*:* versions up to (including) 5.7.33 *cpe:2.3:a:oracle:mysql_server:*:*:*:*:*:*:*:* versions from (including) 8.0.15 up to (including) 8.0.23 *cpe:2.3:a:oracle:mysql_workbench:*:*:*:*:*:*:*:* versions up to (including) 8.0.23 *cpe:2.3:a:oracle:peoplesoft_enterprise_peopletools:8.57:*:*:*:*:*:*:* *cpe:2.3:a:oracle:peoplesoft_enterprise_peopletools:8.58:*:*:*:*:*:*:* *cpe:2.3:a:oracle:peoplesoft_enterprise_peopletools:8.59:*:*:*:*:*:*:* *cpe:2.3:a:oracle:secure_global_desktop:5.6:*:*:*:*:*:*:* *cpe:2.3:a:oracle:zfs_storage_appliance_kit:8.8:*:*:*:*:*:*:*
Changed CPE Configuration OR *cpe:2.3:o:debian:debian_linux:10.0:*:*:*:*:*:*:* OR *cpe:2.3:o:debian:debian_linux:9.0:*:*:*:*:*:*:* *cpe:2.3:o:debian:debian_linux:10.0:*:*:*:*:*:*:*
Added CPE Configuration AND OR *cpe:2.3:o:siemens:ruggedcom_rcm1224_firmware:*:*:*:*:*:*:*:* versions from (including) 6.2 OR cpe:2.3:h:siemens:ruggedcom_rcm1224:-:*:*:*:*:*:*:*
Added CPE Configuration AND OR *cpe:2.3:o:siemens:scalance_lpe9403_firmware:*:*:*:*:*:*:*:* OR cpe:2.3:h:siemens:scalance_lpe9403:-:*:*:*:*:*:*:*
Added CPE Configuration AND OR *cpe:2.3:o:siemens:scalance_m-800_firmware:*:*:*:*:*:*:*:* versions from (including) 6.2 OR cpe:2.3:h:siemens:scalance_m-800:-:*:*:*:*:*:*:*
Added CPE Configuration AND OR *cpe:2.3:o:siemens:scalance_s602_firmware:*:*:*:*:*:*:*:* versions from (including) 4.1 OR cpe:2.3:h:siemens:scalance_s602:-:*:*:*:*:*:*:*
Added CPE Configuration AND OR *cpe:2.3:o:siemens:scalance_s612_firmware:*:*:*:*:*:*:*:* versions from (including) 4.1 OR cpe:2.3:h:siemens:scalance_s612:-:*:*:*:*:*:*:*
Added CPE Configuration AND OR *cpe:2.3:o:siemens:scalance_s615_firmware:*:*:*:*:*:*:*:* versions from (including) 6.2 OR cpe:2.3:h:siemens:scalance_s615:-:*:*:*:*:*:*:*
Added CPE Configuration AND OR *cpe:2.3:o:siemens:scalance_s623_firmware:*:*:*:*:*:*:*:* versions from (including) 4.1 OR cpe:2.3:h:siemens:scalance_s623:-:*:*:*:*:*:*:*
Added CPE Configuration AND OR *cpe:2.3:o:siemens:scalance_s627-2m_firmware:*:*:*:*:*:*:*:* versions from (including) 4.1 OR cpe:2.3:h:siemens:scalance_s627-2m:-:*:*:*:*:*:*:*
Added CPE Configuration AND OR *cpe:2.3:o:siemens:scalance_sc-600_firmware:*:*:*:*:*:*:*:* versions from (including) 2.0 OR cpe:2.3:h:siemens:scalance_sc-600:-:*:*:*:*:*:*:*
Added CPE Configuration AND OR *cpe:2.3:o:siemens:scalance_w1700_firmware:*:*:*:*:*:*:*:* versions from (including) 2.0 OR cpe:2.3:h:siemens:scalance_w1700:-:*:*:*:*:*:*:*
Added CPE Configuration AND OR *cpe:2.3:o:siemens:scalance_w700_firmware:*:*:*:*:*:*:*:* versions from (including) 6.5 OR cpe:2.3:h:siemens:scalance_w700:-:*:*:*:*:*:*:*
Added CPE Configuration AND OR *cpe:2.3:o:siemens:scalance_xb-200_firmware:*:*:*:*:*:*:*:* versions up to (excluding) 4.3 OR cpe:2.3:h:siemens:scalance_xb-200:-:*:*:*:*:*:*:*
Added CPE Configuration AND OR *cpe:2.3:o:siemens:scalance_xc-200_firmware:*:*:*:*:*:*:*:* versions up to (excluding) 4.3 OR cpe:2.3:h:siemens:scalance_xc-200:-:*:*:*:*:*:*:*
Added CPE Configuration AND OR *cpe:2.3:o:siemens:scalance_xf-200ba_firmware:*:*:*:*:*:*:*:* versions up to (excluding) 4.3 OR cpe:2.3:h:siemens:scalance_xf-200ba:-:*:*:*:*:*:*:*
Added CPE Configuration AND OR *cpe:2.3:o:siemens:scalance_xm-400_firmware:*:*:*:*:*:*:*:* versions up to (excluding) 6.4 OR cpe:2.3:h:siemens:scalance_xm-400:-:*:*:*:*:*:*:*
Added CPE Configuration AND OR *cpe:2.3:o:siemens:scalance_xp-200_firmware:*:*:*:*:*:*:*:* versions up to (excluding) 4.3 OR cpe:2.3:h:siemens:scalance_xp-200:-:*:*:*:*:*:*:*
Added CPE Configuration AND OR *cpe:2.3:o:siemens:scalance_xr-300wg_firmware:*:*:*:*:*:*:*:* versions up to (excluding) 4.3 OR cpe:2.3:h:siemens:scalance_xr-300wg:-:*:*:*:*:*:*:*
Added CPE Configuration AND OR *cpe:2.3:o:siemens:scalance_xr524-8c_firmware:*:*:*:*:*:*:*:* versions up to (excluding) 6.4 OR cpe:2.3:h:siemens:scalance_xr524-8c:-:*:*:*:*:*:*:*
Added CPE Configuration AND OR *cpe:2.3:o:siemens:scalance_xr526-8c_firmware:*:*:*:*:*:*:*:* versions up to (excluding) 6.4 OR cpe:2.3:h:siemens:scalance_xr526-8c:-:*:*:*:*:*:*:*
Added CPE Configuration AND OR *cpe:2.3:o:siemens:scalance_xr528-6m_firmware:*:*:*:*:*:*:*:* versions up to (excluding) 6.4 OR cpe:2.3:h:siemens:scalance_xr528-6m:-:*:*:*:*:*:*:*
Added CPE Configuration AND OR *cpe:2.3:o:siemens:scalance_xr552-12_firmware:*:*:*:*:*:*:*:* versions up to (excluding) 6.4 OR cpe:2.3:h:siemens:scalance_xr552-12:-:*:*:*:*:*:*:*
Added CPE Configuration AND OR *cpe:2.3:o:siemens:simatic_cloud_connect_7_firmware:-:*:*:*:*:*:*:* *cpe:2.3:o:siemens:simatic_cloud_connect_7_firmware:*:*:*:*:*:*:*:* versions from (including) 1.1 OR cpe:2.3:h:siemens:simatic_cloud_connect_7:-:*:*:*:*:*:*:*
Added CPE Configuration AND OR *cpe:2.3:o:siemens:simatic_cp_1242-7_gprs_v2_firmware:-:*:*:*:*:*:*:* *cpe:2.3:o:siemens:simatic_cp_1242-7_gprs_v2_firmware:*:*:*:*:*:*:*:* versions from (including) 3.1 OR cpe:2.3:h:siemens:simatic_cp_1242-7_gprs_v2:-:*:*:*:*:*:*:*
Added CPE Configuration AND OR *cpe:2.3:o:siemens:simatic_hmi_basic_panels_2nd_generation_firmware:*:*:*:*:*:*:*:* OR cpe:2.3:h:siemens:simatic_hmi_basic_panels_2nd_generation:-:*:*:*:*:*:*:*
Added CPE Configuration AND OR *cpe:2.3:o:siemens:simatic_hmi_comfort_outdoor_panels_firmware:*:*:*:*:*:*:*:* OR cpe:2.3:h:siemens:simatic_hmi_comfort_outdoor_panels:-:*:*:*:*:*:*:*
Added CPE Configuration AND OR *cpe:2.3:o:siemens:simatic_hmi_ktp_mobile_panels_firmware:*:*:*:*:*:*:*:* OR cpe:2.3:h:siemens:simatic_hmi_ktp_mobile_panels:-:*:*:*:*:*:*:*
Added CPE Configuration AND OR *cpe:2.3:o:siemens:simatic_mv500_firmware:*:*:*:*:*:*:*:* OR cpe:2.3:h:siemens:simatic_mv500:-:*:*:*:*:*:*:*
Added CPE Configuration AND OR *cpe:2.3:o:siemens:simatic_net_cp1243-7_lte_eu_firmware:*:*:*:*:*:*:*:* versions from (including) 3.1 OR cpe:2.3:h:siemens:simatic_net_cp1243-7_lte_eu:-:*:*:*:*:*:*:*
Added CPE Configuration AND OR *cpe:2.3:o:siemens:simatic_net_cp1243-7_lte_us_firmware:*:*:*:*:*:*:*:* versions from (including) 3.1 OR cpe:2.3:h:siemens:simatic_net_cp1243-7_lte_us:-:*:*:*:*:*:*:*
Added CPE Configuration AND OR *cpe:2.3:o:siemens:simatic_net_cp_1243-1_firmware:*:*:*:*:*:*:*:* versions from (including) 3.1 OR cpe:2.3:h:siemens:simatic_net_cp_1243-1:-:*:*:*:*:*:*:*
Added CPE Configuration AND OR *cpe:2.3:o:siemens:simatic_net_cp_1243-8_irc_firmware:*:*:*:*:*:*:*:* versions from (including) 3.1 OR cpe:2.3:h:siemens:simatic_net_cp_1243-8_irc:-:*:*:*:*:*:*:*
Added CPE Configuration AND OR *cpe:2.3:o:siemens:simatic_net_cp_1542sp-1_irc_firmware:*:*:*:*:*:*:*:* versions from (including) 2.1 OR cpe:2.3:h:siemens:simatic_net_cp_1542sp-1_irc:-:*:*:*:*:*:*:*
Added CPE Configuration AND OR *cpe:2.3:o:siemens:simatic_net_cp_1543-1_firmware:*:*:*:*:*:*:*:* versions from (including) 2.2 up to (excluding) 3.0 OR cpe:2.3:h:siemens:simatic_net_cp_1543-1:-:*:*:*:*:*:*:*
Added CPE Configuration AND OR *cpe:2.3:o:siemens:simatic_net_cp_1543sp-1_firmware:*:*:*:*:*:*:*:* versions from (including) 2.1 OR cpe:2.3:h:siemens:simatic_net_cp_1543sp-1:-:*:*:*:*:*:*:*
Added CPE Configuration AND OR *cpe:2.3:o:siemens:simatic_net_cp_1545-1_firmware:*:*:*:*:*:*:*:* versions from (including) 1.0 OR cpe:2.3:h:siemens:simatic_net_cp_1545-1:-:*:*:*:*:*:*:*
Added CPE Configuration AND OR *cpe:2.3:o:siemens:simatic_pcs_7_telecontrol_firmware:*:*:*:*:*:*:*:* OR cpe:2.3:h:siemens:simatic_pcs_7_telecontrol:-:*:*:*:*:*:*:*
Added CPE Configuration AND OR *cpe:2.3:o:siemens:simatic_pcs_neo_firmware:*:*:*:*:*:*:*:* OR cpe:2.3:h:siemens:simatic_pcs_neo:-:*:*:*:*:*:*:*
Added CPE Configuration AND OR *cpe:2.3:o:siemens:simatic_pdm_firmware:*:*:*:*:*:*:*:* versions from (including) 9.1.0.7 OR cpe:2.3:h:siemens:simatic_pdm:-:*:*:*:*:*:*:*
Added CPE Configuration AND OR *cpe:2.3:o:siemens:simatic_process_historian_opc_ua_server_firmware:*:*:*:*:*:*:*:* versions from (including) 2019 OR cpe:2.3:h:siemens:simatic_process_historian_opc_ua_server:-:*:*:*:*:*:*:*
Added CPE Configuration AND OR *cpe:2.3:o:siemens:simatic_rf166c_firmware:*:*:*:*:*:*:*:* OR cpe:2.3:h:siemens:simatic_rf166c:-:*:*:*:*:*:*:*
Added CPE Configuration AND OR *cpe:2.3:o:siemens:simatic_rf185c_firmware:*:*:*:*:*:*:*:* OR cpe:2.3:h:siemens:simatic_rf185c:-:*:*:*:*:*:*:*
Added CPE Configuration AND OR *cpe:2.3:o:siemens:simatic_rf186c_firmware:*:*:*:*:*:*:*:* OR cpe:2.3:h:siemens:simatic_rf186c:-:*:*:*:*:*:*:*
Added CPE Configuration AND OR *cpe:2.3:o:siemens:simatic_rf186ci_firmware:*:*:*:*:*:*:*:* OR cpe:2.3:h:siemens:simatic_rf186ci:-:*:*:*:*:*:*:*
Added CPE Configuration AND OR *cpe:2.3:o:siemens:simatic_rf188c_firmware:*:*:*:*:*:*:*:* OR cpe:2.3:h:siemens:simatic_rf188c:-:*:*:*:*:*:*:*
Added CPE Configuration AND OR *cpe:2.3:o:siemens:simatic_rf188ci_firmware:*:*:*:*:*:*:*:* OR cpe:2.3:h:siemens:simatic_rf188ci:-:*:*:*:*:*:*:*
Added CPE Configuration AND OR *cpe:2.3:o:siemens:simatic_rf360r_firmware:*:*:*:*:*:*:*:* OR cpe:2.3:h:siemens:simatic_rf360r:-:*:*:*:*:*:*:*
Added CPE Configuration AND OR *cpe:2.3:o:siemens:simatic_s7-1200_cpu_1211c_firmware:*:*:*:*:*:*:*:* OR cpe:2.3:h:siemens:simatic_s7-1200_cpu_1211c:-:*:*:*:*:*:*:*
Added CPE Configuration AND OR *cpe:2.3:o:siemens:simatic_s7-1200_cpu_1212c_firmware:*:*:*:*:*:*:*:* OR cpe:2.3:h:siemens:simatic_s7-1200_cpu_1212c:-:*:*:*:*:*:*:*
Added CPE Configuration AND OR *cpe:2.3:o:siemens:simatic_s7-1200_cpu_1212fc_firmware:*:*:*:*:*:*:*:* OR cpe:2.3:h:siemens:simatic_s7-1200_cpu_1212fc:-:*:*:*:*:*:*:*
Added CPE Configuration AND OR *cpe:2.3:o:siemens:simatic_s7-1200_cpu_1214_fc_firmware:*:*:*:*:*:*:*:* OR cpe:2.3:h:siemens:simatic_s7-1200_cpu_1214_fc:-:*:*:*:*:*:*:*
Added CPE Configuration AND OR *cpe:2.3:o:siemens:simatic_s7-1200_cpu_1214_fc_firmware:*:*:*:*:*:*:*:* OR cpe:2.3:h:siemens:simatic_s7-1200_cpu_1214_fc:-:*:*:*:*:*:*:*
Added CPE Configuration AND OR *cpe:2.3:o:siemens:simatic_s7-1200_cpu_1214c_firmware:*:*:*:*:*:*:*:* OR cpe:2.3:h:siemens:simatic_s7-1200_cpu_1214c:-:*:*:*:*:*:*:*
Added CPE Configuration AND OR *cpe:2.3:o:siemens:simatic_s7-1200_cpu_1215_fc_firmware:*:*:*:*:*:*:*:* OR cpe:2.3:h:siemens:simatic_s7-1200_cpu_1215_fc:-:*:*:*:*:*:*:*
Added CPE Configuration AND OR *cpe:2.3:o:siemens:simatic_s7-1200_cpu_1215c_firmware:*:*:*:*:*:*:*:* OR cpe:2.3:h:siemens:simatic_s7-1200_cpu_1215c:-:*:*:*:*:*:*:*
Added CPE Configuration AND OR *cpe:2.3:o:siemens:simatic_s7-1200_cpu_1217c_firmware:*:*:*:*:*:*:*:* OR cpe:2.3:h:siemens:simatic_s7-1200_cpu_1217c:-:*:*:*:*:*:*:*
Added CPE Configuration AND OR *cpe:2.3:o:siemens:simatic_s7-1500_cpu_1518-4_pn\/dp_mfp_firmware:*:*:*:*:*:*:*:* OR cpe:2.3:h:siemens:simatic_s7-1500_cpu_1518-4_pn\/dp_mfp:-:*:*:*:*:*:*:*
Added CPE Configuration AND OR *cpe:2.3:o:siemens:sinamics_connect_300_firmware:*:*:*:*:*:*:*:* OR cpe:2.3:h:siemens:sinamics_connect_300:-:*:*:*:*:*:*:*
Added CPE Configuration AND OR *cpe:2.3:o:siemens:tim_1531_irc_firmware:*:*:*:*:*:*:*:* versions from (including) 2.0 up to (excluding) 2.2 OR cpe:2.3:h:siemens:tim_1531_irc:-:*:*:*:*:*:*:*
Added CPE Configuration AND OR *cpe:2.3:o:sonicwall:sma100_firmware:*:*:*:*:*:*:*:* versions from (including) 10.2.0.0 up to (excluding) 10.2.1.0-17sv OR cpe:2.3:h:sonicwall:sma100:-:*:*:*:*:*:*:*
Added CPE Configuration OR *cpe:2.3:a:siemens:simatic_logon:1.5:sp3_update_1:*:*:*:*:*:* *cpe:2.3:a:siemens:simatic_logon:*:*:*:*:*:*:*:* versions from (including) 1.6.0.2 *cpe:2.3:a:siemens:simatic_wincc_runtime_advanced:*:*:*:*:*:*:*:* *cpe:2.3:a:siemens:simatic_wincc_telecontrol:-:*:*:*:*:*:*:* *cpe:2.3:a:siemens:sinec_nms:1.0:-:*:*:*:*:*:* *cpe:2.3:a:siemens:sinec_nms:1.0:sp1:*:*:*:*:*:* *cpe:2.3:a:siemens:sinec_pni:-:*:*:*:*:*:*:* *cpe:2.3:a:siemens:sinema_server:14.0:-:*:*:*:*:*:* *cpe:2.3:a:siemens:sinema_server:14.0:sp1:*:*:*:*:*:* *cpe:2.3:a:siemens:sinema_server:14.0:sp2:*:*:*:*:*:* *cpe:2.3:a:siemens:sinema_server:14.0:sp2_update1:*:*:*:*:*:* *cpe:2.3:a:siemens:sinema_server:14.0:sp2_update2:*:*:*:*:*:* *cpe:2.3:a:siemens:sinumerik_opc_ua_server:*:*:*:*:*:*:*:* *cpe:2.3:a:siemens:tia_administrator:*:*:*:*:*:*:*:*
Added CPE Configuration OR *cpe:2.3:a:sonicwall:capture_client:3.5:*:*:*:*:*:*:* *cpe:2.3:o:sonicwall:sonicos:7.0.1.0:*:*:*:*:*:*:*
Changed Reference Type https://cert-portal.siemens.com/productcert/pdf/ssa-772220.pdf No Types Assigned https://cert-portal.siemens.com/productcert/pdf/ssa-772220.pdf Patch, Third Party Advisory
Changed Reference Type https://kb.pulsesecure.net/articles/Pulse\_Security\_Advisories/SA44845 No Types Assigned https://kb.pulsesecure.net/articles/Pulse\_Security\_Advisories/SA44845 Third Party Advisory
Changed Reference Type https://lists.debian.org/debian-lts-announce/2021/08/msg00029.html No Types Assigned https://lists.debian.org/debian-lts-announce/2021/08/msg00029.html Mailing List, Third Party Advisory
Changed Reference Type https://psirt.global.sonicwall.com/vuln-detail/SNWLID-2021-0013 No Types Assigned https://psirt.global.sonicwall.com/vuln-detail/SNWLID-2021-0013 Third Party Advisory
Changed Reference Type https://www.oracle.com//security-alerts/cpujul2021.html No Types Assigned https://www.oracle.com//security-alerts/cpujul2021.html Patch, Third Party Advisory

CVE Modified by OpenSSL Software Foundation 8/31/2021 12:15:08 PM

Action Type Old Value New Value
Added Reference https://lists.debian.org/debian-lts-announce/2021/08/msg00029.html [No Types Assigned]

CVE Modified by OpenSSL Software Foundation 7/20/2021 7:15:38 PM

Action Type Old Value New Value
Added Reference https://www.oracle.com//security-alerts/cpujul2021.html [No Types Assigned]

CVE Modified by OpenSSL Software Foundation 7/15/2021 7:15:11 PM

Action Type Old Value New Value
Added Reference https://psirt.global.sonicwall.com/vuln-detail/SNWLID-2021-0013 [No Types Assigned]

CVE Modified by OpenSSL Software Foundation 7/13/2021 11:15:06 PM

Action Type Old Value New Value
Added Reference https://kb.pulsesecure.net/articles/Pulse\_Security\_Advisories/SA44845 [No Types Assigned]

CVE Modified by OpenSSL Software Foundation 7/13/2021 9:15:09 AM

Action Type Old Value New Value
Added Reference https://cert-portal.siemens.com/productcert/pdf/ssa-772220.pdf [No Types Assigned]

Modified Analysis by NIST 6/17/2021 1:04:13 PM

Action Type Old Value New Value
Changed CPE Configuration OR *cpe:2.3:a:netapp:cloud_volumes_ontap_mediator:-:*:*:*:*:*:*:* *cpe:2.3:a:netapp:e-series_performance_analyzer:-:*:*:*:*:*:*:* *cpe:2.3:a:netapp:oncommand_workflow_automation:-:*:*:*:*:*:*:* *cpe:2.3:a:netapp:ontap_select_deploy_administration_utility:-:*:*:*:*:*:*:* *cpe:2.3:a:netapp:santricity_smi-s_provider:-:*:*:*:*:*:*:* *cpe:2.3:a:netapp:storagegrid:-:*:*:*:*:*:*:* OR *cpe:2.3:a:netapp:active_iq_unified_manager:-:*:*:*:*:vmware_vsphere:*:* *cpe:2.3:a:netapp:cloud_volumes_ontap_mediator:-:*:*:*:*:*:*:* *cpe:2.3:a:netapp:e-series_performance_analyzer:-:*:*:*:*:*:*:* *cpe:2.3:a:netapp:oncommand_insight:-:*:*:*:*:*:*:* *cpe:2.3:a:netapp:oncommand_workflow_automation:-:*:*:*:*:*:*:* *cpe:2.3:a:netapp:ontap_select_deploy_administration_utility:-:*:*:*:*:*:*:* *cpe:2.3:a:netapp:santricity_smi-s_provider:-:*:*:*:*:*:*:* *cpe:2.3:a:netapp:snapcenter:-:*:*:*:*:*:*:* *cpe:2.3:a:netapp:storagegrid:-:*:*:*:*:*:*:*
Changed CPE Configuration OR *cpe:2.3:a:tenable:nessus:*:*:*:*:*:*:*:* versions up to (including) 8.13.1 *cpe:2.3:a:tenable:tenable.sc:*:*:*:*:*:*:*:* versions from (including) 5.13.0 up to (including) 5.17.0 OR *cpe:2.3:a:tenable:log_correlation_engine:*:*:*:*:*:*:*:* versions up to (excluding) 6.0.9 *cpe:2.3:a:tenable:nessus:*:*:*:*:*:*:*:* versions up to (including) 8.13.1 *cpe:2.3:a:tenable:nessus_network_monitor:5.11.0:*:*:*:*:*:*:* *cpe:2.3:a:tenable:nessus_network_monitor:5.11.1:*:*:*:*:*:*:* *cpe:2.3:a:tenable:nessus_network_monitor:5.12.0:*:*:*:*:*:*:* *cpe:2.3:a:tenable:nessus_network_monitor:5.12.1:*:*:*:*:*:*:* *cpe:2.3:a:tenable:nessus_network_monitor:5.13.0:*:*:*:*:*:*:* *cpe:2.3:a:tenable:tenable.sc:*:*:*:*:*:*:*:* versions from (including) 5.13.0 up to (including) 5.17.0
Added CPE Configuration OR *cpe:2.3:a:oracle:graalvm:19.3.5:*:*:*:enterprise:*:*:* *cpe:2.3:a:oracle:graalvm:20.3.1.2:*:*:*:enterprise:*:*:* *cpe:2.3:a:oracle:graalvm:21.0.0.2:*:*:*:enterprise:*:*:* *cpe:2.3:a:oracle:mysql_server:*:*:*:*:*:*:*:* versions up to (including) 5.7.33 *cpe:2.3:a:oracle:mysql_server:*:*:*:*:*:*:*:* versions from (including) 8.0.15 up to (including) 8.0.23 *cpe:2.3:a:oracle:mysql_workbench:*:*:*:*:*:*:*:* versions up to (including) 8.0.23 *cpe:2.3:a:oracle:secure_global_desktop:5.6:*:*:*:*:*:*:*
Changed Reference Type https://security.netapp.com/advisory/ntap-20210513-0002/ No Types Assigned https://security.netapp.com/advisory/ntap-20210513-0002/ Third Party Advisory
Changed Reference Type https://www.oracle.com/security-alerts/cpuApr2021.html No Types Assigned https://www.oracle.com/security-alerts/cpuApr2021.html Patch, Third Party Advisory
Changed Reference Type https://www.tenable.com/security/tns-2021-09 No Types Assigned https://www.tenable.com/security/tns-2021-09 Third Party Advisory
Changed Reference Type https://www.tenable.com/security/tns-2021-10 No Types Assigned https://www.tenable.com/security/tns-2021-10 Third Party Advisory

CVE Modified by OpenSSL Software Foundation 6/14/2021 2:15:36 PM

Action Type Old Value New Value
Added Reference https://www.oracle.com/security-alerts/cpuApr2021.html [No Types Assigned]

CVE Modified by OpenSSL Software Foundation 6/02/2021 3:15:08 PM

Action Type Old Value New Value
Added Reference https://www.tenable.com/security/tns-2021-10 [No Types Assigned]

CVE Modified by OpenSSL Software Foundation 5/13/2021 2:15:11 PM

Action Type Old Value New Value
Added Reference https://security.netapp.com/advisory/ntap-20210513-0002/ [No Types Assigned]

CVE Modified by OpenSSL Software Foundation 5/11/2021 6:15:09 PM

Action Type Old Value New Value
Added Reference https://www.tenable.com/security/tns-2021-09 [No Types Assigned]

Modified Analysis by NIST 4/20/2021 10:03:20 AM

Action Type Old Value New Value
Added CPE Configuration AND OR *cpe:2.3:o:checkpoint:multi-domain_management_firmware:r80.40:*:*:*:*:*:*:* *cpe:2.3:o:checkpoint:multi-domain_management_firmware:r81:*:*:*:*:*:*:* OR cpe:2.3:h:checkpoint:multi-domain_management:-:*:*:*:*:*:*:*
Added CPE Configuration AND OR *cpe:2.3:o:checkpoint:quantum_security_gateway_firmware:r80.40:*:*:*:*:*:*:* *cpe:2.3:o:checkpoint:quantum_security_gateway_firmware:r81:*:*:*:*:*:*:* OR cpe:2.3:h:checkpoint:quantum_security_gateway:-:*:*:*:*:*:*:*
Added CPE Configuration AND OR *cpe:2.3:o:checkpoint:quantum_security_management_firmware:r80.40:*:*:*:*:*:*:* *cpe:2.3:o:checkpoint:quantum_security_management_firmware:r81:*:*:*:*:*:*:* OR cpe:2.3:h:checkpoint:quantum_security_management:-:*:*:*:*:*:*:*
Added CPE Configuration OR *cpe:2.3:a:mcafee:web_gateway:8.2.19:*:*:*:*:*:*:* *cpe:2.3:a:mcafee:web_gateway:9.2.10:*:*:*:*:*:*:* *cpe:2.3:a:mcafee:web_gateway:10.1.1:*:*:*:*:*:*:* *cpe:2.3:a:mcafee:web_gateway_cloud_service:8.2.19:*:*:*:*:*:*:* *cpe:2.3:a:mcafee:web_gateway_cloud_service:9.2.10:*:*:*:*:*:*:* *cpe:2.3:a:mcafee:web_gateway_cloud_service:10.1.1:*:*:*:*:*:*:*
Added CPE Configuration OR *cpe:2.3:a:netapp:cloud_volumes_ontap_mediator:-:*:*:*:*:*:*:* *cpe:2.3:a:netapp:e-series_performance_analyzer:-:*:*:*:*:*:*:* *cpe:2.3:a:netapp:oncommand_workflow_automation:-:*:*:*:*:*:*:* *cpe:2.3:a:netapp:ontap_select_deploy_administration_utility:-:*:*:*:*:*:*:* *cpe:2.3:a:netapp:santricity_smi-s_provider:-:*:*:*:*:*:*:* *cpe:2.3:a:netapp:storagegrid:-:*:*:*:*:*:*:*
Added CPE Configuration OR *cpe:2.3:a:tenable:nessus:*:*:*:*:*:*:*:* versions up to (including) 8.13.1 *cpe:2.3:a:tenable:tenable.sc:*:*:*:*:*:*:*:* versions from (including) 5.13.0 up to (including) 5.17.0
Added CPE Configuration OR *cpe:2.3:o:fedoraproject:fedora:34:*:*:*:*:*:*:*
Removed CPE Configuration AND OR *cpe:2.3:o:netapp:santricity_smi-s_provider_firmware:-:*:*:*:*:*:*:* OR cpe:2.3:h:netapp:santricity_smi-s_provider:-:*:*:*:*:*:*:*
Removed CPE Configuration AND OR *cpe:2.3:o:netapp:storagegrid_firmware:-:*:*:*:*:*:*:* OR cpe:2.3:h:netapp:storagegrid:-:*:*:*:*:*:*:*
Removed CPE Configuration OR *cpe:2.3:o:windriver:linux:-:*:*:*💿*:*:* *cpe:2.3:o:windriver:linux:17.0:*:*:*:lts:*:*:* *cpe:2.3:o:windriver:linux:18.0:*:*:*:lts:*:*:* *cpe:2.3:o:windriver:linux:19.0:*:*:*:lts:*:*:*
Changed Reference Type https://kc.mcafee.com/corporate/index?page=content&id=SB10356 No Types Assigned https://kc.mcafee.com/corporate/index?page=content&id=SB10356 Third Party Advisory
Changed Reference Type https://lists.fedoraproject.org/archives/list/[\[email protected]](/cdn-cgi/l/email-protection)/message/CCBFLLVQVILIVGZMBJL3IXZGKWQISYNP/ No Types Assigned https://lists.fedoraproject.org/archives/list/[\[email protected]](/cdn-cgi/l/email-protection)/message/CCBFLLVQVILIVGZMBJL3IXZGKWQISYNP/ Mailing List, Third Party Advisory
Changed Reference Type https://www.tenable.com/security/tns-2021-05 No Types Assigned https://www.tenable.com/security/tns-2021-05 Third Party Advisory
Changed Reference Type https://www.tenable.com/security/tns-2021-06 No Types Assigned https://www.tenable.com/security/tns-2021-06 Third Party Advisory

CVE Modified by OpenSSL Software Foundation 4/15/2021 5:15:13 AM

Action Type Old Value New Value
Added Reference https://kc.mcafee.com/corporate/index?page=content&id=SB10356 [No Types Assigned]

CVE Modified by OpenSSL Software Foundation 4/01/2021 10:15:12 PM

Action Type Old Value New Value
Added Reference https://lists.fedoraproject.org/archives/list/[\[email protected]](/cdn-cgi/l/email-protection)/message/CCBFLLVQVILIVGZMBJL3IXZGKWQISYNP/ [No Types Assigned]

CVE Modified by OpenSSL Software Foundation 4/01/2021 6:15:12 PM

Action Type Old Value New Value
Added Reference https://www.tenable.com/security/tns-2021-05 [No Types Assigned]

CVE Modified by OpenSSL Software Foundation 4/01/2021 3:15:14 PM

Action Type Old Value New Value
Added Reference https://www.tenable.com/security/tns-2021-06 [No Types Assigned]

Initial Analysis by NIST 3/31/2021 1:04:49 PM

Action Type Old Value New Value
Added CVSS V3.1 NIST AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H
Added CVSS V2 NIST (AV:N/AC:M/Au:N/C:N/I:N/A:P)
Added CWE NIST CWE-476
Added CPE Configuration AND OR *cpe:2.3:o:netapp:santricity_smi-s_provider_firmware:-:*:*:*:*:*:*:* OR cpe:2.3:h:netapp:santricity_smi-s_provider:-:*:*:*:*:*:*:*
Added CPE Configuration AND OR *cpe:2.3:o:netapp:storagegrid_firmware:-:*:*:*:*:*:*:* OR cpe:2.3:h:netapp:storagegrid:-:*:*:*:*:*:*:*
Added CPE Configuration OR *cpe:2.3:a:openssl:openssl:*:*:*:*:*:*:*:* versions from (including) 1.1.1 up to (excluding) 1.1.1k
Added CPE Configuration OR *cpe:2.3:o:debian:debian_linux:10.0:*:*:*:*:*:*:*
Added CPE Configuration OR *cpe:2.3:o:freebsd:freebsd:12.2:-:*:*:*:*:*:* *cpe:2.3:o:freebsd:freebsd:12.2:p1:*:*:*:*:*:* *cpe:2.3:o:freebsd:freebsd:12.2:p2:*:*:*:*:*:*
Added CPE Configuration OR *cpe:2.3:o:windriver:linux:-:*:*:*💿*:*:* *cpe:2.3:o:windriver:linux:17.0:*:*:*:lts:*:*:* *cpe:2.3:o:windriver:linux:18.0:*:*:*:lts:*:*:* *cpe:2.3:o:windriver:linux:19.0:*:*:*:lts:*:*:*
Changed Reference Type http://www.openwall.com/lists/oss-security/2021/03/27/1 No Types Assigned http://www.openwall.com/lists/oss-security/2021/03/27/1 Mailing List, Third Party Advisory
Changed Reference Type http://www.openwall.com/lists/oss-security/2021/03/27/2 No Types Assigned http://www.openwall.com/lists/oss-security/2021/03/27/2 Mailing List, Third Party Advisory
Changed Reference Type http://www.openwall.com/lists/oss-security/2021/03/28/3 No Types Assigned http://www.openwall.com/lists/oss-security/2021/03/28/3 Mailing List, Third Party Advisory
Changed Reference Type http://www.openwall.com/lists/oss-security/2021/03/28/4 No Types Assigned http://www.openwall.com/lists/oss-security/2021/03/28/4 Mailing List, Third Party Advisory
Changed Reference Type https://git.openssl.org/gitweb/?p=openssl.git;a=commitdiff;h=fb9fa6b51defd48157eeb207f52181f735d96148 No Types Assigned https://git.openssl.org/gitweb/?p=openssl.git;a=commitdiff;h=fb9fa6b51defd48157eeb207f52181f735d96148 Mailing List, Patch, Vendor Advisory
Changed Reference Type https://security.FreeBSD.org/advisories/FreeBSD-SA-21:07.openssl.asc No Types Assigned https://security.FreeBSD.org/advisories/FreeBSD-SA-21:07.openssl.asc Third Party Advisory
Changed Reference Type https://security.gentoo.org/glsa/202103-03 No Types Assigned https://security.gentoo.org/glsa/202103-03 Third Party Advisory
Changed Reference Type https://security.netapp.com/advisory/ntap-20210326-0006/ No Types Assigned https://security.netapp.com/advisory/ntap-20210326-0006/ Third Party Advisory
Changed Reference Type https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-openssl-2021-GHY28dJd No Types Assigned https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-openssl-2021-GHY28dJd Third Party Advisory
Changed Reference Type https://www.debian.org/security/2021/dsa-4875 No Types Assigned https://www.debian.org/security/2021/dsa-4875 Third Party Advisory
Changed Reference Type https://www.openssl.org/news/secadv/20210325.txt No Types Assigned https://www.openssl.org/news/secadv/20210325.txt Vendor Advisory

CVE Modified by OpenSSL Software Foundation 3/31/2021 10:15:20 AM

Action Type Old Value New Value
Added Reference https://security.gentoo.org/glsa/202103-03 [No Types Assigned]

CVE Modified by OpenSSL Software Foundation 3/28/2021 8:15:12 PM

Action Type Old Value New Value
Added Reference http://www.openwall.com/lists/oss-security/2021/03/28/4 [No Types Assigned]

CVE Modified by OpenSSL Software Foundation 3/28/2021 5:15:12 PM

Action Type Old Value New Value
Added Reference http://www.openwall.com/lists/oss-security/2021/03/28/3 [No Types Assigned]

CVE Modified by OpenSSL Software Foundation 3/27/2021 8:15:12 PM

Action Type Old Value New Value
Added Reference http://www.openwall.com/lists/oss-security/2021/03/27/2 [No Types Assigned]

CVE Modified by OpenSSL Software Foundation 3/27/2021 5:15:11 PM

Action Type Old Value New Value
Added Reference http://www.openwall.com/lists/oss-security/2021/03/27/1 [No Types Assigned]

CVE Modified by OpenSSL Software Foundation 3/26/2021 6:15:13 PM

Action Type Old Value New Value
Added Reference https://security.FreeBSD.org/advisories/FreeBSD-SA-21:07.openssl.asc [No Types Assigned]

CVE Modified by OpenSSL Software Foundation 3/26/2021 7:15:14 AM

Action Type Old Value New Value
Added Reference https://security.netapp.com/advisory/ntap-20210326-0006/ [No Types Assigned]

CVE Modified by OpenSSL Software Foundation 3/25/2021 6:15:13 PM

Action Type Old Value New Value
Added Reference https://www.debian.org/security/2021/dsa-4875 [No Types Assigned]

CVE Modified by OpenSSL Software Foundation 3/25/2021 3:15:14 PM

Action Type Old Value New Value
Added Reference https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-openssl-2021-GHY28dJd [No Types Assigned]