U.S. flag   An official website of the United States government
Dot gov

Official websites use .gov
A .gov website belongs to an official government organization in the United States.

Https

Secure .gov websites use HTTPS
A lock (Dot gov) or https:// means you've safely connected to the .gov website. Share sensitive information only on official, secure websites.

Vulnerability Change Records for CVE-2014-3577

Change History

Modified Analysis by NIST 7/18/2018 10:53:48 AM

Action Type Old Value New Value
Changed CPE Configuration
OR
     *cpe:2.3:a:apache:httpasyncclient:4.0:*:*:*:*:*:*:*
     *cpe:2.3:a:apache:httpasyncclient:4.0:alpha1:*:*:*:*:*:*
     *cpe:2.3:a:apache:httpasyncclient:4.0:alpha2:*:*:*:*:*:*
     *cpe:2.3:a:apache:httpasyncclient:4.0:alpha3:*:*:*:*:*:*
     *cpe:2.3:a:apache:httpasyncclient:4.0:beta1:*:*:*:*:*:*
     *cpe:2.3:a:apache:httpasyncclient:4.0:beta2:*:*:*:*:*:*
     *cpe:2.3:a:apache:httpasyncclient:4.0:beta3:*:*:*:*:*:*
     *cpe:2.3:a:apache:httpasyncclient:4.0:beta4:*:*:*:*:*:*
     *cpe:2.3:a:apache:httpasyncclient:*:*:*:*:*:*:*:* versions up to (including) 4.0.1
OR
     *cpe:2.3:a:apache:httpasyncclient:*:*:*:*:*:*:*:* versions from (including) 4.0 up to (including) 4.0.1
Changed CPE Configuration
OR
     *cpe:2.3:a:apache:httpclient:4.0:*:*:*:*:*:*:*
     *cpe:2.3:a:apache:httpclient:4.0:alpha1:*:*:*:*:*:*
     *cpe:2.3:a:apache:httpclient:4.0:alpha2:*:*:*:*:*:*
     *cpe:2.3:a:apache:httpclient:4.0:alpha3:*:*:*:*:*:*
     *cpe:2.3:a:apache:httpclient:4.0:alpha4:*:*:*:*:*:*
     *cpe:2.3:a:apache:httpclient:4.0:beta1:*:*:*:*:*:*
     *cpe:2.3:a:apache:httpclient:4.0:beta2:*:*:*:*:*:*
     *cpe:2.3:a:apache:httpclient:4.0.1:*:*:*:*:*:*:*
     *cpe:2.3:a:apache:httpclient:4.1:*:*:*:*:*:*:*
     *cpe:2.3:a:apache:httpclient:4.1:alpha1:*:*:*:*:*:*
     *cpe:2.3:a:apache:httpclient:4.1:alpha2:*:*:*:*:*:*
     *cpe:2.3:a:apache:httpclient:4.1:beta1:*:*:*:*:*:*
     *cpe:2.3:a:apache:httpclient:4.1.1:*:*:*:*:*:*:*
     *cpe:2.3:a:apache:httpclient:4.1.2:*:*:*:*:*:*:*
     *cpe:2.3:a:apache:httpclient:4.2:*:*:*:*:*:*:*
     *cpe:2.3:a:apache:httpclient:4.2:alpha1:*:*:*:*:*:*
     *cpe:2.3:a:apache:httpclient:4.2:beta1:*:*:*:*:*:*
     *cpe:2.3:a:apache:httpclient:4.2.1:*:*:*:*:*:*:*
     *cpe:2.3:a:apache:httpclient:4.2.2:*:*:*:*:*:*:*
     *cpe:2.3:a:apache:httpclient:4.2.3:*:*:*:*:*:*:*
     *cpe:2.3:a:apache:httpclient:4.3:*:*:*:*:*:*:*
     *cpe:2.3:a:apache:httpclient:4.3:alpha1:*:*:*:*:*:*
     *cpe:2.3:a:apache:httpclient:4.3:beta1:*:*:*:*:*:*
     *cpe:2.3:a:apache:httpclient:4.3:beta2:*:*:*:*:*:*
     *cpe:2.3:a:apache:httpclient:4.3.1:*:*:*:*:*:*:*
     *cpe:2.3:a:apache:httpclient:4.3.2:*:*:*:*:*:*:*
     *cpe:2.3:a:apache:httpclient:4.3.3:*:*:*:*:*:*:*
     *cpe:2.3:a:apache:httpclient:*:*:*:*:*:*:*:* versions up to (including) 4.3.4
OR
     *cpe:2.3:a:apache:httpclient:*:*:*:*:*:*:*:* versions from (including) 4.0 up to (including) 4.3.4
Changed Evaluator Description
<a href="http://cwe.mitre.org/data/definitions/297.html" target="_blank">CWE-297: Improper Validation of Certificate with Host Mismatch</a>
<a href="http://cwe.mitre.org/data/definitions/297.html" rel="nofollow">CWE-297: Improper Validation of Certificate with Host Mismatch</a>
Changed Reference Type
http://packetstormsecurity.com/files/127913/Apache-HttpComponents-Man-In-The-Middle.html Exploit
http://packetstormsecurity.com/files/127913/Apache-HttpComponents-Man-In-The-Middle.html Exploit, Third Party Advisory, VDB Entry
Changed Reference Type
http://rhn.redhat.com/errata/RHSA-2014-1146.html No Types Assigned
http://rhn.redhat.com/errata/RHSA-2014-1146.html Third Party Advisory
Changed Reference Type
http://rhn.redhat.com/errata/RHSA-2014-1166.html No Types Assigned
http://rhn.redhat.com/errata/RHSA-2014-1166.html Third Party Advisory
Changed Reference Type
http://rhn.redhat.com/errata/RHSA-2014-1833.html No Types Assigned
http://rhn.redhat.com/errata/RHSA-2014-1833.html Third Party Advisory
Changed Reference Type
http://rhn.redhat.com/errata/RHSA-2014-1834.html No Types Assigned
http://rhn.redhat.com/errata/RHSA-2014-1834.html Third Party Advisory
Changed Reference Type
http://rhn.redhat.com/errata/RHSA-2014-1835.html No Types Assigned
http://rhn.redhat.com/errata/RHSA-2014-1835.html Third Party Advisory
Changed Reference Type
http://rhn.redhat.com/errata/RHSA-2014-1836.html No Types Assigned
http://rhn.redhat.com/errata/RHSA-2014-1836.html Third Party Advisory
Changed Reference Type
http://rhn.redhat.com/errata/RHSA-2014-1891.html No Types Assigned
http://rhn.redhat.com/errata/RHSA-2014-1891.html Third Party Advisory
Changed Reference Type
http://rhn.redhat.com/errata/RHSA-2014-1892.html No Types Assigned
http://rhn.redhat.com/errata/RHSA-2014-1892.html Third Party Advisory
Changed Reference Type
http://rhn.redhat.com/errata/RHSA-2015-0125.html No Types Assigned
http://rhn.redhat.com/errata/RHSA-2015-0125.html Third Party Advisory
Changed Reference Type
http://rhn.redhat.com/errata/RHSA-2015-0158.html No Types Assigned
http://rhn.redhat.com/errata/RHSA-2015-0158.html Third Party Advisory
Changed Reference Type
http://rhn.redhat.com/errata/RHSA-2015-0675.html No Types Assigned
http://rhn.redhat.com/errata/RHSA-2015-0675.html Third Party Advisory
Changed Reference Type
http://rhn.redhat.com/errata/RHSA-2015-0720.html No Types Assigned
http://rhn.redhat.com/errata/RHSA-2015-0720.html Third Party Advisory
Changed Reference Type
http://rhn.redhat.com/errata/RHSA-2015-0765.html No Types Assigned
http://rhn.redhat.com/errata/RHSA-2015-0765.html Third Party Advisory
Changed Reference Type
http://rhn.redhat.com/errata/RHSA-2015-0850.html No Types Assigned
http://rhn.redhat.com/errata/RHSA-2015-0850.html Third Party Advisory
Changed Reference Type
http://rhn.redhat.com/errata/RHSA-2015-0851.html No Types Assigned
http://rhn.redhat.com/errata/RHSA-2015-0851.html Third Party Advisory
Changed Reference Type
http://rhn.redhat.com/errata/RHSA-2015-1176.html No Types Assigned
http://rhn.redhat.com/errata/RHSA-2015-1176.html Third Party Advisory
Changed Reference Type
http://rhn.redhat.com/errata/RHSA-2015-1177.html No Types Assigned
http://rhn.redhat.com/errata/RHSA-2015-1177.html Third Party Advisory
Changed Reference Type
http://rhn.redhat.com/errata/RHSA-2015-1888.html No Types Assigned
http://rhn.redhat.com/errata/RHSA-2015-1888.html Third Party Advisory
Changed Reference Type
http://rhn.redhat.com/errata/RHSA-2016-1773.html No Types Assigned
http://rhn.redhat.com/errata/RHSA-2016-1773.html Third Party Advisory
Changed Reference Type
http://rhn.redhat.com/errata/RHSA-2016-1931.html No Types Assigned
http://rhn.redhat.com/errata/RHSA-2016-1931.html Third Party Advisory
Changed Reference Type
http://seclists.org/fulldisclosure/2014/Aug/48 Exploit
http://seclists.org/fulldisclosure/2014/Aug/48 Exploit, Mailing List, Third Party Advisory
Changed Reference Type
http://secunia.com/advisories/60466 No Types Assigned
http://secunia.com/advisories/60466 Third Party Advisory
Changed Reference Type
http://secunia.com/advisories/60589 No Types Assigned
http://secunia.com/advisories/60589 Third Party Advisory
Changed Reference Type
http://secunia.com/advisories/60713 No Types Assigned
http://secunia.com/advisories/60713 Third Party Advisory
Changed Reference Type
http://www.osvdb.org/110143 No Types Assigned
http://www.osvdb.org/110143 Broken Link
Changed Reference Type
http://www.securityfocus.com/bid/69258 No Types Assigned
http://www.securityfocus.com/bid/69258 Third Party Advisory, VDB Entry
Changed Reference Type
http://www.securitytracker.com/id/1030812 No Types Assigned
http://www.securitytracker.com/id/1030812 Third Party Advisory, VDB Entry
Changed Reference Type
http://www.ubuntu.com/usn/USN-2769-1 No Types Assigned
http://www.ubuntu.com/usn/USN-2769-1 Third Party Advisory
Changed Reference Type
https://access.redhat.com/solutions/1165533 No Types Assigned
https://access.redhat.com/solutions/1165533 Third Party Advisory
Changed Reference Type
https://exchange.xforce.ibmcloud.com/vulnerabilities/95327 No Types Assigned
https://exchange.xforce.ibmcloud.com/vulnerabilities/95327 Third Party Advisory, VDB Entry
Changed Reference Type
https://h20566.www2.hpe.com/portal/site/hpsc/public/kb/docDisplay?docId=emr_na-c05103564 No Types Assigned
https://h20566.www2.hpe.com/portal/site/hpsc/public/kb/docDisplay?docId=emr_na-c05103564 Third Party Advisory
Changed Reference Type
https://h20566.www2.hpe.com/portal/site/hpsc/public/kb/docDisplay?docId=emr_na-c05363782 No Types Assigned
https://h20566.www2.hpe.com/portal/site/hpsc/public/kb/docDisplay?docId=emr_na-c05363782 Third Party Advisory