U.S. flag   An official website of the United States government
Dot gov

Official websites use .gov
A .gov website belongs to an official government organization in the United States.

Https

Secure .gov websites use HTTPS
A lock (Dot gov) or https:// means you've safely connected to the .gov website. Share sensitive information only on official, secure websites.

Vulnerability Change Records for CVE-2014-3490

Change History

Modified Analysis by NIST 3/21/2019 10:22:35 AM

Action Type Old Value New Value
Changed CPE Configuration
OR
     *cpe:2.3:a:redhat:jboss_enterprise_application_platform:6.3.0:*:*:*:*:*:*:*
     *cpe:2.3:a:redhat:resteasy:2.3.1:*:*:*:*:*:*:*
     *cpe:2.3:a:redhat:resteasy:2.3.2:*:*:*:*:*:*:*
     *cpe:2.3:a:redhat:resteasy:2.3.4:*:*:*:*:*:*:*
     *cpe:2.3:a:redhat:resteasy:2.3.5:*:*:*:*:*:*:*
     *cpe:2.3:a:redhat:resteasy:2.3.6:*:*:*:*:*:*:*
     *cpe:2.3:a:redhat:resteasy:2.3.7:*:*:*:*:*:*:*
     *cpe:2.3:a:redhat:resteasy:2.3.7.1:*:*:*:*:*:*:*
     *cpe:2.3:a:redhat:resteasy:2.3.7.2:*:*:*:*:*:*:*
     *cpe:2.3:a:redhat:resteasy:2.3.8:*:*:*:*:*:*:*
     *cpe:2.3:a:redhat:resteasy:3.0:beta1:*:*:*:*:*:*
     *cpe:2.3:a:redhat:resteasy:3.0:beta2:*:*:*:*:*:*
     *cpe:2.3:a:redhat:resteasy:3.0:beta3:*:*:*:*:*:*
     *cpe:2.3:a:redhat:resteasy:3.0:beta4:*:*:*:*:*:*
     *cpe:2.3:a:redhat:resteasy:3.0:beta5:*:*:*:*:*:*
     *cpe:2.3:a:redhat:resteasy:3.0:beta6:*:*:*:*:*:*
     *cpe:2.3:a:redhat:resteasy:3.0:rc1:*:*:*:*:*:*
     *cpe:2.3:a:redhat:resteasy:3.0.0:*:*:*:*:*:*:*
     *cpe:2.3:a:redhat:resteasy:3.0.1:*:*:*:*:*:*:*
     *cpe:2.3:a:redhat:resteasy:3.0.2:*:*:*:*:*:*:*
     *cpe:2.3:a:redhat:resteasy:3.0.4:*:*:*:*:*:*:*
     *cpe:2.3:a:redhat:resteasy:3.0.5:*:*:*:*:*:*:*
     *cpe:2.3:a:redhat:resteasy:3.0.6:*:*:*:*:*:*:*
     *cpe:2.3:a:redhat:resteasy:3.0.7:*:*:*:*:*:*:*
     *cpe:2.3:a:redhat:resteasy:3.0.8:*:*:*:*:*:*:*
OR
     *cpe:2.3:a:redhat:jboss_enterprise_application_platform:6.3.0:*:*:*:*:*:*:*
     *cpe:2.3:a:redhat:resteasy:*:*:*:*:*:*:*:* versions from (including) 2.3.1 up to (including) 2.3.7.2
     *cpe:2.3:a:redhat:resteasy:3.0:beta1:*:*:*:*:*:*
     *cpe:2.3:a:redhat:resteasy:3.0:beta2:*:*:*:*:*:*
     *cpe:2.3:a:redhat:resteasy:3.0:beta3:*:*:*:*:*:*
     *cpe:2.3:a:redhat:resteasy:3.0:beta4:*:*:*:*:*:*
     *cpe:2.3:a:redhat:resteasy:3.0:beta5:*:*:*:*:*:*
     *cpe:2.3:a:redhat:resteasy:3.0:beta6:*:*:*:*:*:*
     *cpe:2.3:a:redhat:resteasy:3.0:rc1:*:*:*:*:*:*
     *cpe:2.3:a:redhat:resteasy:*:*:*:*:*:*:*:* versions from (including) 3.0.0 up to (excluding) 3.0.9
Changed Evaluator Description
<a href="http://cwe.mitre.org/data/definitions/611.html" target="_blank">CWE-611: Improper Restriction of XML External Entity Reference ('XXE')</a>
<a href="http://cwe.mitre.org/data/definitions/611.html" rel="nofollow">CWE-611: Improper Restriction of XML External Entity Reference ('XXE')</a>
Changed Reference Type
http://rhn.redhat.com/errata/RHSA-2014-1011.html No Types Assigned
http://rhn.redhat.com/errata/RHSA-2014-1011.html Third Party Advisory
Changed Reference Type
http://rhn.redhat.com/errata/RHSA-2014-1039.html No Types Assigned
http://rhn.redhat.com/errata/RHSA-2014-1039.html Third Party Advisory
Changed Reference Type
http://rhn.redhat.com/errata/RHSA-2014-1040.html No Types Assigned
http://rhn.redhat.com/errata/RHSA-2014-1040.html Third Party Advisory
Changed Reference Type
http://rhn.redhat.com/errata/RHSA-2014-1298.html No Types Assigned
http://rhn.redhat.com/errata/RHSA-2014-1298.html Third Party Advisory
Changed Reference Type
http://rhn.redhat.com/errata/RHSA-2015-0125.html No Types Assigned
http://rhn.redhat.com/errata/RHSA-2015-0125.html Third Party Advisory
Changed Reference Type
http://rhn.redhat.com/errata/RHSA-2015-0675.html No Types Assigned
http://rhn.redhat.com/errata/RHSA-2015-0675.html Third Party Advisory
Changed Reference Type
http://rhn.redhat.com/errata/RHSA-2015-0720.html No Types Assigned
http://rhn.redhat.com/errata/RHSA-2015-0720.html Third Party Advisory
Changed Reference Type
http://rhn.redhat.com/errata/RHSA-2015-0765.html No Types Assigned
http://rhn.redhat.com/errata/RHSA-2015-0765.html Third Party Advisory
Changed Reference Type
http://secunia.com/advisories/60019 No Types Assigned
http://secunia.com/advisories/60019 Third Party Advisory
Changed Reference Type
http://www.oracle.com/technetwork/security-advisory/cpuoct2018-4428296.html No Types Assigned
http://www.oracle.com/technetwork/security-advisory/cpuoct2018-4428296.html Patch, Third Party Advisory
Changed Reference Type
http://www.securityfocus.com/bid/69058 No Types Assigned
http://www.securityfocus.com/bid/69058 Third Party Advisory, VDB Entry
Changed Reference Type
https://github.com/resteasy/Resteasy/pull/521 No Types Assigned
https://github.com/resteasy/Resteasy/pull/521 Third Party Advisory
Changed Reference Type
https://github.com/resteasy/Resteasy/pull/533 No Types Assigned
https://github.com/resteasy/Resteasy/pull/533 Third Party Advisory
Changed Reference Type
https://github.com/ronsigal/Resteasy/commit/9b7d0f574cafdcf3bea5428f3145ab4908fc6d83 Patch
https://github.com/ronsigal/Resteasy/commit/9b7d0f574cafdcf3bea5428f3145ab4908fc6d83 Patch, Third Party Advisory