// For flags

CVE-2019-1559

0-byte record padding oracle

Severity Score

5.9
*CVSS v3.1

Exploit Likelihood

*EPSS

Affected Versions

*CPE

Public Exploits

0
*Multiple Sources

Exploited in Wild

-
*KEV

Decision

-
*SSVC
Descriptions

If an application encounters a fatal protocol error and then calls SSL_shutdown() twice (once to send a close_notify, and once to receive one) then OpenSSL can respond differently to the calling application if a 0 byte record is received with invalid padding compared to if a 0 byte record is received with an invalid MAC. If the application then behaves differently based on that in a way that is detectable to the remote peer, then this amounts to a padding oracle that could be used to decrypt data. In order for this to be exploitable "non-stitched" ciphersuites must be in use. Stitched ciphersuites are optimised implementations of certain commonly used ciphersuites. Also the application must call SSL_shutdown() twice even if a protocol error has occurred (applications should not do this but some do anyway). Fixed in OpenSSL 1.0.2r (Affected 1.0.2-1.0.2q).

Si una aplicación encuentra un error de protocolo "fatal" y llama a SSL_shutdown() dos veces (una vez para enviar un close_notify y otra vez para recibir uno de éstos), posteriormente OpenSLL puede responder de manera diferente a la aplicación llamante si un registro de 0 byte se recibe con un relleno inválido, comparado con si un registro de 0 bytes se recibe con un MAC inválido.

*Credits: Juraj Somorovsky, Robert Merget and Nimrod Aviram, with additional investigation by Steven Collison and Andrew Hourselt
CVSS Scores
Attack Vector
Network
Attack Complexity
High
Privileges Required
None
User Interaction
None
Scope
Unchanged
Confidentiality
High
Integrity
None
Availability
None
Attack Vector
Network
Attack Complexity
Medium
Authentication
None
Confidentiality
Partial
Integrity
None
Availability
None
* Common Vulnerability Scoring System
SSVC
  • Decision:-
Exploitation
-
Automatable
-
Tech. Impact
-
* Organization's Worst-case Scenario
Timeline
  • 2018-11-28 CVE Reserved
  • 2019-02-26 CVE Published
  • 2024-09-17 CVE Updated
  • 2024-10-16 EPSS Updated
  • ---------- Exploited in Wild
  • ---------- KEV Due Date
  • ---------- First Exploit
CWE
  • CWE-203: Observable Discrepancy
  • CWE-325: Missing Cryptographic Step
CAPEC
References (38)
URL Date SRC
URL Date SRC
http://lists.opensuse.org/opensuse-security-announce/2019-03/msg00041.html 2023-11-07
http://lists.opensuse.org/opensuse-security-announce/2019-04/msg00019.html 2023-11-07
http://lists.opensuse.org/opensuse-security-announce/2019-04/msg00046.html 2023-11-07
http://lists.opensuse.org/opensuse-security-announce/2019-04/msg00047.html 2023-11-07
http://lists.opensuse.org/opensuse-security-announce/2019-05/msg00049.html 2023-11-07
http://lists.opensuse.org/opensuse-security-announce/2019-06/msg00080.html 2023-11-07
https://access.redhat.com/errata/RHSA-2019:2304 2023-11-07
https://access.redhat.com/errata/RHSA-2019:2437 2023-11-07
https://access.redhat.com/errata/RHSA-2019:2439 2023-11-07
https://access.redhat.com/errata/RHSA-2019:2471 2023-11-07
https://access.redhat.com/errata/RHSA-2019:3929 2023-11-07
https://access.redhat.com/errata/RHSA-2019:3931 2023-11-07
https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/EWC42UXL5GHTU5G77VKBF6JYUUNGSHOM 2023-11-07
https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/Y3IVFGSERAZLNJCK35TEM2R4726XIH3Z 2023-11-07
https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/ZBEV5QGDRFUZDMNECFXUSN5FMYOZDE4V 2023-11-07
https://security.gentoo.org/glsa/201903-10 2023-11-07
https://usn.ubuntu.com/3899-1 2023-11-07
https://usn.ubuntu.com/4376-2 2023-11-07
https://www.debian.org/security/2019/dsa-4400 2023-11-07
https://www.openssl.org/news/secadv/20190226.txt 2023-11-07
https://access.redhat.com/security/cve/CVE-2019-1559 2019-11-20
https://bugzilla.redhat.com/show_bug.cgi?id=1683804 2019-11-20
Affected Vendors, Products, and Versions
Vendor Product Version Other Status
Vendor Product Version Other Status <-- --> Vendor Product Version Other Status
Netapp
Search vendor "Netapp"
Cn1610 Firmware
Search vendor "Netapp" for product "Cn1610 Firmware"
--
Affected
in Netapp
Search vendor "Netapp"
Cn1610
Search vendor "Netapp" for product "Cn1610"
--
Safe
Netapp
Search vendor "Netapp"
A320 Firmware
Search vendor "Netapp" for product "A320 Firmware"
--
Affected
in Netapp
Search vendor "Netapp"
A320
Search vendor "Netapp" for product "A320"
--
Safe
Netapp
Search vendor "Netapp"
C190 Firmware
Search vendor "Netapp" for product "C190 Firmware"
--
Affected
in Netapp
Search vendor "Netapp"
C190
Search vendor "Netapp" for product "C190"
--
Safe
Netapp
Search vendor "Netapp"
A220 Firmware
Search vendor "Netapp" for product "A220 Firmware"
--
Affected
in Netapp
Search vendor "Netapp"
A220
Search vendor "Netapp" for product "A220"
--
Safe
Netapp
Search vendor "Netapp"
Fas2720 Firmware
Search vendor "Netapp" for product "Fas2720 Firmware"
--
Affected
in Netapp
Search vendor "Netapp"
Fas2720
Search vendor "Netapp" for product "Fas2720"
--
Safe
Netapp
Search vendor "Netapp"
Fas2750 Firmware
Search vendor "Netapp" for product "Fas2750 Firmware"
--
Affected
in Netapp
Search vendor "Netapp"
Fas2750
Search vendor "Netapp" for product "Fas2750"
--
Safe
Netapp
Search vendor "Netapp"
A800 Firmware
Search vendor "Netapp" for product "A800 Firmware"
--
Affected
in Netapp
Search vendor "Netapp"
A800
Search vendor "Netapp" for product "A800"
--
Safe
Redhat
Search vendor "Redhat"
Jboss Enterprise Web Server
Search vendor "Redhat" for product "Jboss Enterprise Web Server"
5.0.0
Search vendor "Redhat" for product "Jboss Enterprise Web Server" and version "5.0.0"
-
Affected
in Redhat
Search vendor "Redhat"
Enterprise Linux
Search vendor "Redhat" for product "Enterprise Linux"
6.0
Search vendor "Redhat" for product "Enterprise Linux" and version "6.0"
-
Safe
Redhat
Search vendor "Redhat"
Jboss Enterprise Web Server
Search vendor "Redhat" for product "Jboss Enterprise Web Server"
5.0.0
Search vendor "Redhat" for product "Jboss Enterprise Web Server" and version "5.0.0"
-
Affected
in Redhat
Search vendor "Redhat"
Enterprise Linux
Search vendor "Redhat" for product "Enterprise Linux"
7.0
Search vendor "Redhat" for product "Enterprise Linux" and version "7.0"
-
Safe
Redhat
Search vendor "Redhat"
Jboss Enterprise Web Server
Search vendor "Redhat" for product "Jboss Enterprise Web Server"
5.0.0
Search vendor "Redhat" for product "Jboss Enterprise Web Server" and version "5.0.0"
-
Affected
in Redhat
Search vendor "Redhat"
Enterprise Linux
Search vendor "Redhat" for product "Enterprise Linux"
8.0
Search vendor "Redhat" for product "Enterprise Linux" and version "8.0"
-
Safe
Redhat
Search vendor "Redhat"
Virtualization
Search vendor "Redhat" for product "Virtualization"
4.0
Search vendor "Redhat" for product "Virtualization" and version "4.0"
-
Affected
in Redhat
Search vendor "Redhat"
Enterprise Linux
Search vendor "Redhat" for product "Enterprise Linux"
7.0
Search vendor "Redhat" for product "Enterprise Linux" and version "7.0"
-
Safe
Redhat
Search vendor "Redhat"
Virtualization Host
Search vendor "Redhat" for product "Virtualization Host"
4.0
Search vendor "Redhat" for product "Virtualization Host" and version "4.0"
-
Affected
in Redhat
Search vendor "Redhat"
Enterprise Linux
Search vendor "Redhat" for product "Enterprise Linux"
7.0
Search vendor "Redhat" for product "Enterprise Linux" and version "7.0"
-
Safe
Openssl
Search vendor "Openssl"
Openssl
Search vendor "Openssl" for product "Openssl"
>= 1.0.2 < 1.0.2r
Search vendor "Openssl" for product "Openssl" and version " >= 1.0.2 < 1.0.2r"
-
Affected
Canonical
Search vendor "Canonical"
Ubuntu Linux
Search vendor "Canonical" for product "Ubuntu Linux"
16.04
Search vendor "Canonical" for product "Ubuntu Linux" and version "16.04"
esm
Affected
Canonical
Search vendor "Canonical"
Ubuntu Linux
Search vendor "Canonical" for product "Ubuntu Linux"
18.04
Search vendor "Canonical" for product "Ubuntu Linux" and version "18.04"
lts
Affected
Canonical
Search vendor "Canonical"
Ubuntu Linux
Search vendor "Canonical" for product "Ubuntu Linux"
18.10
Search vendor "Canonical" for product "Ubuntu Linux" and version "18.10"
-
Affected
Debian
Search vendor "Debian"
Debian Linux
Search vendor "Debian" for product "Debian Linux"
8.0
Search vendor "Debian" for product "Debian Linux" and version "8.0"
-
Affected
Debian
Search vendor "Debian"
Debian Linux
Search vendor "Debian" for product "Debian Linux"
9.0
Search vendor "Debian" for product "Debian Linux" and version "9.0"
-
Affected
Netapp
Search vendor "Netapp"
Active Iq Unified Manager
Search vendor "Netapp" for product "Active Iq Unified Manager"
>= 7.3
Search vendor "Netapp" for product "Active Iq Unified Manager" and version " >= 7.3"
windows
Affected
Netapp
Search vendor "Netapp"
Active Iq Unified Manager
Search vendor "Netapp" for product "Active Iq Unified Manager"
>= 9.5
Search vendor "Netapp" for product "Active Iq Unified Manager" and version " >= 9.5"
vmware_vsphere
Affected
Netapp
Search vendor "Netapp"
Active Iq Unified Manager
Search vendor "Netapp" for product "Active Iq Unified Manager"
-windows
Affected
Netapp
Search vendor "Netapp"
Altavault
Search vendor "Netapp" for product "Altavault"
--
Affected
Netapp
Search vendor "Netapp"
Cloud Backup
Search vendor "Netapp" for product "Cloud Backup"
--
Affected
Netapp
Search vendor "Netapp"
Clustered Data Ontap Antivirus Connector
Search vendor "Netapp" for product "Clustered Data Ontap Antivirus Connector"
--
Affected
Netapp
Search vendor "Netapp"
Element Software
Search vendor "Netapp" for product "Element Software"
--
Affected
Netapp
Search vendor "Netapp"
Hci Management Node
Search vendor "Netapp" for product "Hci Management Node"
--
Affected
Netapp
Search vendor "Netapp"
Hyper Converged Infrastructure
Search vendor "Netapp" for product "Hyper Converged Infrastructure"
--
Affected
Netapp
Search vendor "Netapp"
Oncommand Insight
Search vendor "Netapp" for product "Oncommand Insight"
--
Affected
Netapp
Search vendor "Netapp"
Oncommand Unified Manager
Search vendor "Netapp" for product "Oncommand Unified Manager"
--
Affected
Netapp
Search vendor "Netapp"
Oncommand Unified Manager
Search vendor "Netapp" for product "Oncommand Unified Manager"
-vsphere
Affected
Netapp
Search vendor "Netapp"
Oncommand Unified Manager Core Package
Search vendor "Netapp" for product "Oncommand Unified Manager Core Package"
--
Affected
Netapp
Search vendor "Netapp"
Oncommand Workflow Automation
Search vendor "Netapp" for product "Oncommand Workflow Automation"
--
Affected
Netapp
Search vendor "Netapp"
Ontap Select Deploy
Search vendor "Netapp" for product "Ontap Select Deploy"
--
Affected
Netapp
Search vendor "Netapp"
Ontap Select Deploy Administration Utility
Search vendor "Netapp" for product "Ontap Select Deploy Administration Utility"
--
Affected
Netapp
Search vendor "Netapp"
Santricity Smi-s Provider
Search vendor "Netapp" for product "Santricity Smi-s Provider"
--
Affected
Netapp
Search vendor "Netapp"
Service Processor
Search vendor "Netapp" for product "Service Processor"
--
Affected
Netapp
Search vendor "Netapp"
Smi-s Provider
Search vendor "Netapp" for product "Smi-s Provider"
--
Affected
Netapp
Search vendor "Netapp"
Snapcenter
Search vendor "Netapp" for product "Snapcenter"
--
Affected
Netapp
Search vendor "Netapp"
Snapdrive
Search vendor "Netapp" for product "Snapdrive"
-unix
Affected
Netapp
Search vendor "Netapp"
Snapdrive
Search vendor "Netapp" for product "Snapdrive"
-windows
Affected
Netapp
Search vendor "Netapp"
Snapprotect
Search vendor "Netapp" for product "Snapprotect"
--
Affected
Netapp
Search vendor "Netapp"
Solidfire
Search vendor "Netapp" for product "Solidfire"
--
Affected
Netapp
Search vendor "Netapp"
Steelstore Cloud Integrated Storage
Search vendor "Netapp" for product "Steelstore Cloud Integrated Storage"
--
Affected
Netapp
Search vendor "Netapp"
Storage Automation Store
Search vendor "Netapp" for product "Storage Automation Store"
--
Affected
Netapp
Search vendor "Netapp"
Storagegrid
Search vendor "Netapp" for product "Storagegrid"
>= 9.0.0 <= 9.0.4
Search vendor "Netapp" for product "Storagegrid" and version " >= 9.0.0 <= 9.0.4"
-
Affected
Netapp
Search vendor "Netapp"
Storagegrid
Search vendor "Netapp" for product "Storagegrid"
--
Affected
Netapp
Search vendor "Netapp"
Hci Compute Node
Search vendor "Netapp" for product "Hci Compute Node"
--
Affected
F5
Search vendor "F5"
Big-ip Access Policy Manager
Search vendor "F5" for product "Big-ip Access Policy Manager"
>= 12.1.0 <= 12.1.5
Search vendor "F5" for product "Big-ip Access Policy Manager" and version " >= 12.1.0 <= 12.1.5"
-
Affected
F5
Search vendor "F5"
Big-ip Access Policy Manager
Search vendor "F5" for product "Big-ip Access Policy Manager"
>= 13.0.0 <= 13.1.3
Search vendor "F5" for product "Big-ip Access Policy Manager" and version " >= 13.0.0 <= 13.1.3"
-
Affected
F5
Search vendor "F5"
Big-ip Access Policy Manager
Search vendor "F5" for product "Big-ip Access Policy Manager"
>= 14.0.0 <= 14.1.2
Search vendor "F5" for product "Big-ip Access Policy Manager" and version " >= 14.0.0 <= 14.1.2"
-
Affected
F5
Search vendor "F5"
Big-ip Access Policy Manager
Search vendor "F5" for product "Big-ip Access Policy Manager"
>= 15.0.0 <= 15.1.0
Search vendor "F5" for product "Big-ip Access Policy Manager" and version " >= 15.0.0 <= 15.1.0"
-
Affected
F5
Search vendor "F5"
Big-ip Advanced Firewall Manager
Search vendor "F5" for product "Big-ip Advanced Firewall Manager"
>= 12.1.0 <= 12.1.5
Search vendor "F5" for product "Big-ip Advanced Firewall Manager" and version " >= 12.1.0 <= 12.1.5"
-
Affected
F5
Search vendor "F5"
Big-ip Advanced Firewall Manager
Search vendor "F5" for product "Big-ip Advanced Firewall Manager"
>= 13.0.0 <= 13.1.3
Search vendor "F5" for product "Big-ip Advanced Firewall Manager" and version " >= 13.0.0 <= 13.1.3"
-
Affected
F5
Search vendor "F5"
Big-ip Advanced Firewall Manager
Search vendor "F5" for product "Big-ip Advanced Firewall Manager"
>= 14.0.0 <= 14.1.2
Search vendor "F5" for product "Big-ip Advanced Firewall Manager" and version " >= 14.0.0 <= 14.1.2"
-
Affected
F5
Search vendor "F5"
Big-ip Advanced Firewall Manager
Search vendor "F5" for product "Big-ip Advanced Firewall Manager"
>= 15.0.0 <= 15.1.0
Search vendor "F5" for product "Big-ip Advanced Firewall Manager" and version " >= 15.0.0 <= 15.1.0"
-
Affected
F5
Search vendor "F5"
Big-ip Analytics
Search vendor "F5" for product "Big-ip Analytics"
>= 12.1.0 <= 12.1.5
Search vendor "F5" for product "Big-ip Analytics" and version " >= 12.1.0 <= 12.1.5"
-
Affected
F5
Search vendor "F5"
Big-ip Analytics
Search vendor "F5" for product "Big-ip Analytics"
>= 13.0.0 <= 13.1.3
Search vendor "F5" for product "Big-ip Analytics" and version " >= 13.0.0 <= 13.1.3"
-
Affected
F5
Search vendor "F5"
Big-ip Analytics
Search vendor "F5" for product "Big-ip Analytics"
>= 14.0.0 <= 14.1.2
Search vendor "F5" for product "Big-ip Analytics" and version " >= 14.0.0 <= 14.1.2"
-
Affected
F5
Search vendor "F5"
Big-ip Analytics
Search vendor "F5" for product "Big-ip Analytics"
>= 15.0.0 <= 15.1.0
Search vendor "F5" for product "Big-ip Analytics" and version " >= 15.0.0 <= 15.1.0"
-
Affected
F5
Search vendor "F5"
Big-ip Application Acceleration Manager
Search vendor "F5" for product "Big-ip Application Acceleration Manager"
>= 12.1.0 <= 12.1.5
Search vendor "F5" for product "Big-ip Application Acceleration Manager" and version " >= 12.1.0 <= 12.1.5"
-
Affected
F5
Search vendor "F5"
Big-ip Application Acceleration Manager
Search vendor "F5" for product "Big-ip Application Acceleration Manager"
>= 13.0.0 <= 13.1.3
Search vendor "F5" for product "Big-ip Application Acceleration Manager" and version " >= 13.0.0 <= 13.1.3"
-
Affected
F5
Search vendor "F5"
Big-ip Application Acceleration Manager
Search vendor "F5" for product "Big-ip Application Acceleration Manager"
>= 14.0.0 <= 14.1.2
Search vendor "F5" for product "Big-ip Application Acceleration Manager" and version " >= 14.0.0 <= 14.1.2"
-
Affected
F5
Search vendor "F5"
Big-ip Application Acceleration Manager
Search vendor "F5" for product "Big-ip Application Acceleration Manager"
>= 15.0.0 <= 15.1.0
Search vendor "F5" for product "Big-ip Application Acceleration Manager" and version " >= 15.0.0 <= 15.1.0"
-
Affected
F5
Search vendor "F5"
Big-ip Application Security Manager
Search vendor "F5" for product "Big-ip Application Security Manager"
>= 12.1.0 <= 12.1.5
Search vendor "F5" for product "Big-ip Application Security Manager" and version " >= 12.1.0 <= 12.1.5"
-
Affected
F5
Search vendor "F5"
Big-ip Application Security Manager
Search vendor "F5" for product "Big-ip Application Security Manager"
>= 13.0.0 <= 13.1.3
Search vendor "F5" for product "Big-ip Application Security Manager" and version " >= 13.0.0 <= 13.1.3"
-
Affected
F5
Search vendor "F5"
Big-ip Application Security Manager
Search vendor "F5" for product "Big-ip Application Security Manager"
>= 14.0.0 <= 14.1.2
Search vendor "F5" for product "Big-ip Application Security Manager" and version " >= 14.0.0 <= 14.1.2"
-
Affected
F5
Search vendor "F5"
Big-ip Application Security Manager
Search vendor "F5" for product "Big-ip Application Security Manager"
>= 15.0.0 <= 15.1.0
Search vendor "F5" for product "Big-ip Application Security Manager" and version " >= 15.0.0 <= 15.1.0"
-
Affected
F5
Search vendor "F5"
Big-ip Domain Name System
Search vendor "F5" for product "Big-ip Domain Name System"
>= 12.1.0 <= 12.1.5
Search vendor "F5" for product "Big-ip Domain Name System" and version " >= 12.1.0 <= 12.1.5"
-
Affected
F5
Search vendor "F5"
Big-ip Domain Name System
Search vendor "F5" for product "Big-ip Domain Name System"
>= 13.0.0 <= 13.1.3
Search vendor "F5" for product "Big-ip Domain Name System" and version " >= 13.0.0 <= 13.1.3"
-
Affected
F5
Search vendor "F5"
Big-ip Domain Name System
Search vendor "F5" for product "Big-ip Domain Name System"
>= 14.0.0 <= 14.1.2
Search vendor "F5" for product "Big-ip Domain Name System" and version " >= 14.0.0 <= 14.1.2"
-
Affected
F5
Search vendor "F5"
Big-ip Domain Name System
Search vendor "F5" for product "Big-ip Domain Name System"
>= 15.0.0 <= 15.1.0
Search vendor "F5" for product "Big-ip Domain Name System" and version " >= 15.0.0 <= 15.1.0"
-
Affected
F5
Search vendor "F5"
Big-ip Edge Gateway
Search vendor "F5" for product "Big-ip Edge Gateway"
>= 12.1.0 <= 12.1.5
Search vendor "F5" for product "Big-ip Edge Gateway" and version " >= 12.1.0 <= 12.1.5"
-
Affected
F5
Search vendor "F5"
Big-ip Edge Gateway
Search vendor "F5" for product "Big-ip Edge Gateway"
>= 13.0.0 <= 13.1.3
Search vendor "F5" for product "Big-ip Edge Gateway" and version " >= 13.0.0 <= 13.1.3"
-
Affected
F5
Search vendor "F5"
Big-ip Edge Gateway
Search vendor "F5" for product "Big-ip Edge Gateway"
>= 14.0.0 <= 14.1.2
Search vendor "F5" for product "Big-ip Edge Gateway" and version " >= 14.0.0 <= 14.1.2"
-
Affected
F5
Search vendor "F5"
Big-ip Edge Gateway
Search vendor "F5" for product "Big-ip Edge Gateway"
>= 15.0.0 <= 15.1.0
Search vendor "F5" for product "Big-ip Edge Gateway" and version " >= 15.0.0 <= 15.1.0"
-
Affected
F5
Search vendor "F5"
Big-ip Fraud Protection Service
Search vendor "F5" for product "Big-ip Fraud Protection Service"
>= 12.1.0 <= 12.1.5
Search vendor "F5" for product "Big-ip Fraud Protection Service" and version " >= 12.1.0 <= 12.1.5"
-
Affected
F5
Search vendor "F5"
Big-ip Fraud Protection Service
Search vendor "F5" for product "Big-ip Fraud Protection Service"
>= 13.0.0 <= 13.1.3
Search vendor "F5" for product "Big-ip Fraud Protection Service" and version " >= 13.0.0 <= 13.1.3"
-
Affected
F5
Search vendor "F5"
Big-ip Fraud Protection Service
Search vendor "F5" for product "Big-ip Fraud Protection Service"
>= 14.0.0 <= 14.1.2
Search vendor "F5" for product "Big-ip Fraud Protection Service" and version " >= 14.0.0 <= 14.1.2"
-
Affected
F5
Search vendor "F5"
Big-ip Fraud Protection Service
Search vendor "F5" for product "Big-ip Fraud Protection Service"
>= 15.0.0 <= 15.1.0
Search vendor "F5" for product "Big-ip Fraud Protection Service" and version " >= 15.0.0 <= 15.1.0"
-
Affected
F5
Search vendor "F5"
Big-ip Global Traffic Manager
Search vendor "F5" for product "Big-ip Global Traffic Manager"
>= 12.1.0 <= 12.1.5
Search vendor "F5" for product "Big-ip Global Traffic Manager" and version " >= 12.1.0 <= 12.1.5"
-
Affected
F5
Search vendor "F5"
Big-ip Global Traffic Manager
Search vendor "F5" for product "Big-ip Global Traffic Manager"
>= 13.0.0 <= 13.1.3
Search vendor "F5" for product "Big-ip Global Traffic Manager" and version " >= 13.0.0 <= 13.1.3"
-
Affected
F5
Search vendor "F5"
Big-ip Global Traffic Manager
Search vendor "F5" for product "Big-ip Global Traffic Manager"
>= 14.0.0 <= 14.1.2
Search vendor "F5" for product "Big-ip Global Traffic Manager" and version " >= 14.0.0 <= 14.1.2"
-
Affected
F5
Search vendor "F5"
Big-ip Global Traffic Manager
Search vendor "F5" for product "Big-ip Global Traffic Manager"
>= 15.0.0 <= 15.1.0
Search vendor "F5" for product "Big-ip Global Traffic Manager" and version " >= 15.0.0 <= 15.1.0"
-
Affected
F5
Search vendor "F5"
Big-ip Link Controller
Search vendor "F5" for product "Big-ip Link Controller"
>= 12.1.0 <= 12.1.5
Search vendor "F5" for product "Big-ip Link Controller" and version " >= 12.1.0 <= 12.1.5"
-
Affected
F5
Search vendor "F5"
Big-ip Link Controller
Search vendor "F5" for product "Big-ip Link Controller"
>= 13.0.0 <= 13.1.3
Search vendor "F5" for product "Big-ip Link Controller" and version " >= 13.0.0 <= 13.1.3"
-
Affected
F5
Search vendor "F5"
Big-ip Link Controller
Search vendor "F5" for product "Big-ip Link Controller"
>= 14.0.0 <= 14.1.2
Search vendor "F5" for product "Big-ip Link Controller" and version " >= 14.0.0 <= 14.1.2"
-
Affected
F5
Search vendor "F5"
Big-ip Link Controller
Search vendor "F5" for product "Big-ip Link Controller"
>= 15.0.0 <= 15.1.0
Search vendor "F5" for product "Big-ip Link Controller" and version " >= 15.0.0 <= 15.1.0"
-
Affected
F5
Search vendor "F5"
Big-ip Local Traffic Manager
Search vendor "F5" for product "Big-ip Local Traffic Manager"
>= 12.1.0 <= 12.1.5
Search vendor "F5" for product "Big-ip Local Traffic Manager" and version " >= 12.1.0 <= 12.1.5"
-
Affected
F5
Search vendor "F5"
Big-ip Local Traffic Manager
Search vendor "F5" for product "Big-ip Local Traffic Manager"
>= 13.0.0 <= 13.1.3
Search vendor "F5" for product "Big-ip Local Traffic Manager" and version " >= 13.0.0 <= 13.1.3"
-
Affected
F5
Search vendor "F5"
Big-ip Local Traffic Manager
Search vendor "F5" for product "Big-ip Local Traffic Manager"
>= 14.0.0 <= 14.1.2
Search vendor "F5" for product "Big-ip Local Traffic Manager" and version " >= 14.0.0 <= 14.1.2"
-
Affected
F5
Search vendor "F5"
Big-ip Local Traffic Manager
Search vendor "F5" for product "Big-ip Local Traffic Manager"
>= 15.0.0 <= 15.1.0
Search vendor "F5" for product "Big-ip Local Traffic Manager" and version " >= 15.0.0 <= 15.1.0"
-
Affected
F5
Search vendor "F5"
Big-ip Policy Enforcement Manager
Search vendor "F5" for product "Big-ip Policy Enforcement Manager"
>= 12.1.0 <= 12.1.5
Search vendor "F5" for product "Big-ip Policy Enforcement Manager" and version " >= 12.1.0 <= 12.1.5"
-
Affected
F5
Search vendor "F5"
Big-ip Policy Enforcement Manager
Search vendor "F5" for product "Big-ip Policy Enforcement Manager"
>= 13.0.0 <= 13.1.3
Search vendor "F5" for product "Big-ip Policy Enforcement Manager" and version " >= 13.0.0 <= 13.1.3"
-
Affected
F5
Search vendor "F5"
Big-ip Policy Enforcement Manager
Search vendor "F5" for product "Big-ip Policy Enforcement Manager"
>= 14.0.0 <= 14.1.2
Search vendor "F5" for product "Big-ip Policy Enforcement Manager" and version " >= 14.0.0 <= 14.1.2"
-
Affected
F5
Search vendor "F5"
Big-ip Policy Enforcement Manager
Search vendor "F5" for product "Big-ip Policy Enforcement Manager"
>= 15.0.0 <= 15.1.0
Search vendor "F5" for product "Big-ip Policy Enforcement Manager" and version " >= 15.0.0 <= 15.1.0"
-
Affected
F5
Search vendor "F5"
Big-ip Webaccelerator
Search vendor "F5" for product "Big-ip Webaccelerator"
>= 12.1.0 <= 12.1.5
Search vendor "F5" for product "Big-ip Webaccelerator" and version " >= 12.1.0 <= 12.1.5"
-
Affected
F5
Search vendor "F5"
Big-ip Webaccelerator
Search vendor "F5" for product "Big-ip Webaccelerator"
>= 13.0.0 <= 13.1.3
Search vendor "F5" for product "Big-ip Webaccelerator" and version " >= 13.0.0 <= 13.1.3"
-
Affected
F5
Search vendor "F5"
Big-ip Webaccelerator
Search vendor "F5" for product "Big-ip Webaccelerator"
>= 14.0.0 <= 14.1.2
Search vendor "F5" for product "Big-ip Webaccelerator" and version " >= 14.0.0 <= 14.1.2"
-
Affected
F5
Search vendor "F5"
Big-ip Webaccelerator
Search vendor "F5" for product "Big-ip Webaccelerator"
>= 15.0.0 <= 15.1.0
Search vendor "F5" for product "Big-ip Webaccelerator" and version " >= 15.0.0 <= 15.1.0"
-
Affected
F5
Search vendor "F5"
Big-iq Centralized Management
Search vendor "F5" for product "Big-iq Centralized Management"
>= 6.0.0 <= 6.1.0
Search vendor "F5" for product "Big-iq Centralized Management" and version " >= 6.0.0 <= 6.1.0"
-
Affected
F5
Search vendor "F5"
Big-iq Centralized Management
Search vendor "F5" for product "Big-iq Centralized Management"
>= 7.0.0 <= 7.1.0
Search vendor "F5" for product "Big-iq Centralized Management" and version " >= 7.0.0 <= 7.1.0"
-
Affected
F5
Search vendor "F5"
Traffix Signaling Delivery Controller
Search vendor "F5" for product "Traffix Signaling Delivery Controller"
>= 5.0.0 <= 5.1.0
Search vendor "F5" for product "Traffix Signaling Delivery Controller" and version " >= 5.0.0 <= 5.1.0"
-
Affected
F5
Search vendor "F5"
Traffix Signaling Delivery Controller
Search vendor "F5" for product "Traffix Signaling Delivery Controller"
4.4.0
Search vendor "F5" for product "Traffix Signaling Delivery Controller" and version "4.4.0"
-
Affected
Tenable
Search vendor "Tenable"
Nessus
Search vendor "Tenable" for product "Nessus"
<= 8.2.3
Search vendor "Tenable" for product "Nessus" and version " <= 8.2.3"
-
Affected
Opensuse
Search vendor "Opensuse"
Leap
Search vendor "Opensuse" for product "Leap"
15.0
Search vendor "Opensuse" for product "Leap" and version "15.0"
-
Affected
Opensuse
Search vendor "Opensuse"
Leap
Search vendor "Opensuse" for product "Leap"
15.1
Search vendor "Opensuse" for product "Leap" and version "15.1"
-
Affected
Opensuse
Search vendor "Opensuse"
Leap
Search vendor "Opensuse" for product "Leap"
42.3
Search vendor "Opensuse" for product "Leap" and version "42.3"
-
Affected
Fedoraproject
Search vendor "Fedoraproject"
Fedora
Search vendor "Fedoraproject" for product "Fedora"
29
Search vendor "Fedoraproject" for product "Fedora" and version "29"
-
Affected
Fedoraproject
Search vendor "Fedoraproject"
Fedora
Search vendor "Fedoraproject" for product "Fedora"
30
Search vendor "Fedoraproject" for product "Fedora" and version "30"
-
Affected
Fedoraproject
Search vendor "Fedoraproject"
Fedora
Search vendor "Fedoraproject" for product "Fedora"
31
Search vendor "Fedoraproject" for product "Fedora" and version "31"
-
Affected
Mcafee
Search vendor "Mcafee"
Agent
Search vendor "Mcafee" for product "Agent"
>= 5.6.0 <= 5.6.4
Search vendor "Mcafee" for product "Agent" and version " >= 5.6.0 <= 5.6.4"
-
Affected
Mcafee
Search vendor "Mcafee"
Data Exchange Layer
Search vendor "Mcafee" for product "Data Exchange Layer"
>= 4.0.0 < 6.0.0
Search vendor "Mcafee" for product "Data Exchange Layer" and version " >= 4.0.0 < 6.0.0"
-
Affected
Mcafee
Search vendor "Mcafee"
Threat Intelligence Exchange Server
Search vendor "Mcafee" for product "Threat Intelligence Exchange Server"
>= 2.0.0 < 3.0.0
Search vendor "Mcafee" for product "Threat Intelligence Exchange Server" and version " >= 2.0.0 < 3.0.0"
-
Affected
Mcafee
Search vendor "Mcafee"
Web Gateway
Search vendor "Mcafee" for product "Web Gateway"
>= 7.0.0 < 9.0.0
Search vendor "Mcafee" for product "Web Gateway" and version " >= 7.0.0 < 9.0.0"
-
Affected
Redhat
Search vendor "Redhat"
Enterprise Linux Desktop
Search vendor "Redhat" for product "Enterprise Linux Desktop"
6.0
Search vendor "Redhat" for product "Enterprise Linux Desktop" and version "6.0"
-
Affected
Redhat
Search vendor "Redhat"
Enterprise Linux Desktop
Search vendor "Redhat" for product "Enterprise Linux Desktop"
7.0
Search vendor "Redhat" for product "Enterprise Linux Desktop" and version "7.0"
-
Affected
Redhat
Search vendor "Redhat"
Enterprise Linux Server
Search vendor "Redhat" for product "Enterprise Linux Server"
6.0
Search vendor "Redhat" for product "Enterprise Linux Server" and version "6.0"
-
Affected
Redhat
Search vendor "Redhat"
Enterprise Linux Server
Search vendor "Redhat" for product "Enterprise Linux Server"
7.0
Search vendor "Redhat" for product "Enterprise Linux Server" and version "7.0"
-
Affected
Redhat
Search vendor "Redhat"
Enterprise Linux Workstation
Search vendor "Redhat" for product "Enterprise Linux Workstation"
6.0
Search vendor "Redhat" for product "Enterprise Linux Workstation" and version "6.0"
-
Affected
Redhat
Search vendor "Redhat"
Enterprise Linux Workstation
Search vendor "Redhat" for product "Enterprise Linux Workstation"
7.0
Search vendor "Redhat" for product "Enterprise Linux Workstation" and version "7.0"
-
Affected
Oracle
Search vendor "Oracle"
Api Gateway
Search vendor "Oracle" for product "Api Gateway"
11.1.2.4.0
Search vendor "Oracle" for product "Api Gateway" and version "11.1.2.4.0"
-
Affected
Oracle
Search vendor "Oracle"
Business Intelligence
Search vendor "Oracle" for product "Business Intelligence"
11.1.1.9.0
Search vendor "Oracle" for product "Business Intelligence" and version "11.1.1.9.0"
enterprise
Affected
Oracle
Search vendor "Oracle"
Business Intelligence
Search vendor "Oracle" for product "Business Intelligence"
12.2.1.3.0
Search vendor "Oracle" for product "Business Intelligence" and version "12.2.1.3.0"
enterprise
Affected
Oracle
Search vendor "Oracle"
Business Intelligence
Search vendor "Oracle" for product "Business Intelligence"
12.2.1.4.0
Search vendor "Oracle" for product "Business Intelligence" and version "12.2.1.4.0"
enterprise
Affected
Oracle
Search vendor "Oracle"
Communications Diameter Signaling Router
Search vendor "Oracle" for product "Communications Diameter Signaling Router"
8.0.0
Search vendor "Oracle" for product "Communications Diameter Signaling Router" and version "8.0.0"
-
Affected
Oracle
Search vendor "Oracle"
Communications Diameter Signaling Router
Search vendor "Oracle" for product "Communications Diameter Signaling Router"
8.1
Search vendor "Oracle" for product "Communications Diameter Signaling Router" and version "8.1"
-
Affected
Oracle
Search vendor "Oracle"
Communications Diameter Signaling Router
Search vendor "Oracle" for product "Communications Diameter Signaling Router"
8.2
Search vendor "Oracle" for product "Communications Diameter Signaling Router" and version "8.2"
-
Affected
Oracle
Search vendor "Oracle"
Communications Diameter Signaling Router
Search vendor "Oracle" for product "Communications Diameter Signaling Router"
8.3
Search vendor "Oracle" for product "Communications Diameter Signaling Router" and version "8.3"
-
Affected
Oracle
Search vendor "Oracle"
Communications Diameter Signaling Router
Search vendor "Oracle" for product "Communications Diameter Signaling Router"
8.4
Search vendor "Oracle" for product "Communications Diameter Signaling Router" and version "8.4"
-
Affected
Oracle
Search vendor "Oracle"
Communications Performance Intelligence Center
Search vendor "Oracle" for product "Communications Performance Intelligence Center"
10.4.0.2
Search vendor "Oracle" for product "Communications Performance Intelligence Center" and version "10.4.0.2"
-
Affected
Oracle
Search vendor "Oracle"
Communications Session Border Controller
Search vendor "Oracle" for product "Communications Session Border Controller"
7.4
Search vendor "Oracle" for product "Communications Session Border Controller" and version "7.4"
-
Affected
Oracle
Search vendor "Oracle"
Communications Session Border Controller
Search vendor "Oracle" for product "Communications Session Border Controller"
8.0.0
Search vendor "Oracle" for product "Communications Session Border Controller" and version "8.0.0"
-
Affected
Oracle
Search vendor "Oracle"
Communications Session Border Controller
Search vendor "Oracle" for product "Communications Session Border Controller"
8.1.0
Search vendor "Oracle" for product "Communications Session Border Controller" and version "8.1.0"
-
Affected
Oracle
Search vendor "Oracle"
Communications Session Border Controller
Search vendor "Oracle" for product "Communications Session Border Controller"
8.2
Search vendor "Oracle" for product "Communications Session Border Controller" and version "8.2"
-
Affected
Oracle
Search vendor "Oracle"
Communications Session Border Controller
Search vendor "Oracle" for product "Communications Session Border Controller"
8.3
Search vendor "Oracle" for product "Communications Session Border Controller" and version "8.3"
-
Affected
Oracle
Search vendor "Oracle"
Communications Session Router
Search vendor "Oracle" for product "Communications Session Router"
7.4
Search vendor "Oracle" for product "Communications Session Router" and version "7.4"
-
Affected
Oracle
Search vendor "Oracle"
Communications Session Router
Search vendor "Oracle" for product "Communications Session Router"
8.0
Search vendor "Oracle" for product "Communications Session Router" and version "8.0"
-
Affected
Oracle
Search vendor "Oracle"
Communications Session Router
Search vendor "Oracle" for product "Communications Session Router"
8.1
Search vendor "Oracle" for product "Communications Session Router" and version "8.1"
-
Affected
Oracle
Search vendor "Oracle"
Communications Session Router
Search vendor "Oracle" for product "Communications Session Router"
8.2
Search vendor "Oracle" for product "Communications Session Router" and version "8.2"
-
Affected
Oracle
Search vendor "Oracle"
Communications Session Router
Search vendor "Oracle" for product "Communications Session Router"
8.3
Search vendor "Oracle" for product "Communications Session Router" and version "8.3"
-
Affected
Oracle
Search vendor "Oracle"
Communications Unified Session Manager
Search vendor "Oracle" for product "Communications Unified Session Manager"
7.3.5
Search vendor "Oracle" for product "Communications Unified Session Manager" and version "7.3.5"
-
Affected
Oracle
Search vendor "Oracle"
Communications Unified Session Manager
Search vendor "Oracle" for product "Communications Unified Session Manager"
8.2.5
Search vendor "Oracle" for product "Communications Unified Session Manager" and version "8.2.5"
-
Affected
Oracle
Search vendor "Oracle"
Endeca Server
Search vendor "Oracle" for product "Endeca Server"
7.7.0
Search vendor "Oracle" for product "Endeca Server" and version "7.7.0"
-
Affected
Oracle
Search vendor "Oracle"
Enterprise Manager Base Platform
Search vendor "Oracle" for product "Enterprise Manager Base Platform"
12.1.0.5.0
Search vendor "Oracle" for product "Enterprise Manager Base Platform" and version "12.1.0.5.0"
-
Affected
Oracle
Search vendor "Oracle"
Enterprise Manager Base Platform
Search vendor "Oracle" for product "Enterprise Manager Base Platform"
13.2.0.0.0
Search vendor "Oracle" for product "Enterprise Manager Base Platform" and version "13.2.0.0.0"
-
Affected
Oracle
Search vendor "Oracle"
Enterprise Manager Base Platform
Search vendor "Oracle" for product "Enterprise Manager Base Platform"
13.3.0.0.0
Search vendor "Oracle" for product "Enterprise Manager Base Platform" and version "13.3.0.0.0"
-
Affected
Oracle
Search vendor "Oracle"
Enterprise Manager Ops Center
Search vendor "Oracle" for product "Enterprise Manager Ops Center"
12.3.3
Search vendor "Oracle" for product "Enterprise Manager Ops Center" and version "12.3.3"
-
Affected
Oracle
Search vendor "Oracle"
Enterprise Manager Ops Center
Search vendor "Oracle" for product "Enterprise Manager Ops Center"
12.4.0
Search vendor "Oracle" for product "Enterprise Manager Ops Center" and version "12.4.0"
-
Affected
Oracle
Search vendor "Oracle"
Jd Edwards Enterpriseone Tools
Search vendor "Oracle" for product "Jd Edwards Enterpriseone Tools"
9.2
Search vendor "Oracle" for product "Jd Edwards Enterpriseone Tools" and version "9.2"
-
Affected
Oracle
Search vendor "Oracle"
Jd Edwards World Security
Search vendor "Oracle" for product "Jd Edwards World Security"
a9.3
Search vendor "Oracle" for product "Jd Edwards World Security" and version "a9.3"
-
Affected
Oracle
Search vendor "Oracle"
Jd Edwards World Security
Search vendor "Oracle" for product "Jd Edwards World Security"
a9.3.1
Search vendor "Oracle" for product "Jd Edwards World Security" and version "a9.3.1"
-
Affected
Oracle
Search vendor "Oracle"
Jd Edwards World Security
Search vendor "Oracle" for product "Jd Edwards World Security"
a9.4
Search vendor "Oracle" for product "Jd Edwards World Security" and version "a9.4"
-
Affected
Oracle
Search vendor "Oracle"
Mysql
Search vendor "Oracle" for product "Mysql"
>= 5.6.0 <= 5.6.43
Search vendor "Oracle" for product "Mysql" and version " >= 5.6.0 <= 5.6.43"
-
Affected
Oracle
Search vendor "Oracle"
Mysql
Search vendor "Oracle" for product "Mysql"
>= 5.7.0 <= 5.7.25
Search vendor "Oracle" for product "Mysql" and version " >= 5.7.0 <= 5.7.25"
-
Affected
Oracle
Search vendor "Oracle"
Mysql
Search vendor "Oracle" for product "Mysql"
>= 8.0.0 <= 8.0.15
Search vendor "Oracle" for product "Mysql" and version " >= 8.0.0 <= 8.0.15"
-
Affected
Oracle
Search vendor "Oracle"
Mysql Enterprise Monitor
Search vendor "Oracle" for product "Mysql Enterprise Monitor"
<= 4.0.8
Search vendor "Oracle" for product "Mysql Enterprise Monitor" and version " <= 4.0.8"
-
Affected
Oracle
Search vendor "Oracle"
Mysql Enterprise Monitor
Search vendor "Oracle" for product "Mysql Enterprise Monitor"
>= 8.0.0 <= 8.0.14
Search vendor "Oracle" for product "Mysql Enterprise Monitor" and version " >= 8.0.0 <= 8.0.14"
-
Affected
Oracle
Search vendor "Oracle"
Mysql Workbench
Search vendor "Oracle" for product "Mysql Workbench"
<= 8.0.16
Search vendor "Oracle" for product "Mysql Workbench" and version " <= 8.0.16"
-
Affected
Oracle
Search vendor "Oracle"
Peoplesoft Enterprise Peopletools
Search vendor "Oracle" for product "Peoplesoft Enterprise Peopletools"
8.55
Search vendor "Oracle" for product "Peoplesoft Enterprise Peopletools" and version "8.55"
-
Affected
Oracle
Search vendor "Oracle"
Peoplesoft Enterprise Peopletools
Search vendor "Oracle" for product "Peoplesoft Enterprise Peopletools"
8.56
Search vendor "Oracle" for product "Peoplesoft Enterprise Peopletools" and version "8.56"
-
Affected
Oracle
Search vendor "Oracle"
Peoplesoft Enterprise Peopletools
Search vendor "Oracle" for product "Peoplesoft Enterprise Peopletools"
8.57
Search vendor "Oracle" for product "Peoplesoft Enterprise Peopletools" and version "8.57"
-
Affected
Oracle
Search vendor "Oracle"
Secure Global Desktop
Search vendor "Oracle" for product "Secure Global Desktop"
5.4
Search vendor "Oracle" for product "Secure Global Desktop" and version "5.4"
-
Affected
Oracle
Search vendor "Oracle"
Services Tools Bundle
Search vendor "Oracle" for product "Services Tools Bundle"
19.2
Search vendor "Oracle" for product "Services Tools Bundle" and version "19.2"
-
Affected
Paloaltonetworks
Search vendor "Paloaltonetworks"
Pan-os
Search vendor "Paloaltonetworks" for product "Pan-os"
>= 7.1.0 < 7.1.15
Search vendor "Paloaltonetworks" for product "Pan-os" and version " >= 7.1.0 < 7.1.15"
-
Affected
Paloaltonetworks
Search vendor "Paloaltonetworks"
Pan-os
Search vendor "Paloaltonetworks" for product "Pan-os"
>= 8.0.0 < 8.0.20
Search vendor "Paloaltonetworks" for product "Pan-os" and version " >= 8.0.0 < 8.0.20"
-
Affected
Paloaltonetworks
Search vendor "Paloaltonetworks"
Pan-os
Search vendor "Paloaltonetworks" for product "Pan-os"
>= 8.1.0 < 8.1.8
Search vendor "Paloaltonetworks" for product "Pan-os" and version " >= 8.1.0 < 8.1.8"
-
Affected
Paloaltonetworks
Search vendor "Paloaltonetworks"
Pan-os
Search vendor "Paloaltonetworks" for product "Pan-os"
>= 9.0.0 < 9.0.2
Search vendor "Paloaltonetworks" for product "Pan-os" and version " >= 9.0.0 < 9.0.2"
-
Affected
Nodejs
Search vendor "Nodejs"
Node.js
Search vendor "Nodejs" for product "Node.js"
>= 6.0.0 <= 6.8.1
Search vendor "Nodejs" for product "Node.js" and version " >= 6.0.0 <= 6.8.1"
-
Affected
Nodejs
Search vendor "Nodejs"
Node.js
Search vendor "Nodejs" for product "Node.js"
>= 6.9.0 < 6.17.0
Search vendor "Nodejs" for product "Node.js" and version " >= 6.9.0 < 6.17.0"
lts
Affected
Nodejs
Search vendor "Nodejs"
Node.js
Search vendor "Nodejs" for product "Node.js"
>= 8.0.0 <= 8.8.1
Search vendor "Nodejs" for product "Node.js" and version " >= 8.0.0 <= 8.8.1"
-
Affected
Nodejs
Search vendor "Nodejs"
Node.js
Search vendor "Nodejs" for product "Node.js"
>= 8.9.0 < 8.15.1
Search vendor "Nodejs" for product "Node.js" and version " >= 8.9.0 < 8.15.1"
lts
Affected