U.S. flag   An official website of the United States government
Dot gov

Official websites use .gov
A .gov website belongs to an official government organization in the United States.

Https

Secure .gov websites use HTTPS
A lock (Dot gov) or https:// means you've safely connected to the .gov website. Share sensitive information only on official, secure websites.

Vulnerability Change Records for CVE-2014-8991

Change History

Modified Analysis by NIST 11/22/2016 10:57:45 AM

Action Type Old Value New Value
Changed CPE Configuration
Configuration 1
     OR
          *cpe:2.3:a:python:pip:1.3:*:*:*:*:*:*:*
          *cpe:2.3:a:python:pip:1.3.1:*:*:*:*:*:*:*
          *cpe:2.3:a:python:pip:1.4:*:*:*:*:*:*:*
          *cpe:2.3:a:python:pip:1.4.1:*:*:*:*:*:*:*
          *cpe:2.3:a:python:pip:1.5:*:*:*:*:*:*:*
          *cpe:2.3:a:python:pip:1.5.1:*:*:*:*:*:*:*
          *cpe:2.3:a:python:pip:1.5.2:*:*:*:*:*:*:*
          *cpe:2.3:a:python:pip:1.5.3:*:*:*:*:*:*:*
          *cpe:2.3:a:python:pip:1.5.4:*:*:*:*:*:*:*
          *cpe:2.3:a:python:pip:1.5.5:*:*:*:*:*:*:*
          *cpe:2.3:a:python:pip:1.5.6:*:*:*:*:*:*:*
Configuration 1
     OR
          *cpe:2.3:o:oracle:solaris:11.2:*:*:*:*:*:*:*
Configuration 2
     OR
          *cpe:2.3:a:python:pip:1.3:*:*:*:*:*:*:*
          *cpe:2.3:a:python:pip:1.3.1:*:*:*:*:*:*:*
          *cpe:2.3:a:python:pip:1.4:*:*:*:*:*:*:*
          *cpe:2.3:a:python:pip:1.4.1:*:*:*:*:*:*:*
          *cpe:2.3:a:python:pip:1.5:*:*:*:*:*:*:*
          *cpe:2.3:a:python:pip:1.5.1:*:*:*:*:*:*:*
          *cpe:2.3:a:python:pip:1.5.2:*:*:*:*:*:*:*
          *cpe:2.3:a:python:pip:1.5.3:*:*:*:*:*:*:*
          *cpe:2.3:a:python:pip:1.5.4:*:*:*:*:*:*:*
          *cpe:2.3:a:python:pip:1.5.5:*:*:*:*:*:*:*
          *cpe:2.3:a:python:pip:1.5.6:*:*:*:*:*:*:*
Changed Reference Type
http://www.openwall.com/lists/oss-security/2014/11/19/17 No Types Assigned
http://www.openwall.com/lists/oss-security/2014/11/19/17 Third Party Advisory
Changed Reference Type
http://www.openwall.com/lists/oss-security/2014/11/20/6 No Types Assigned
http://www.openwall.com/lists/oss-security/2014/11/20/6 Third Party Advisory
Changed Reference Type
http://www.oracle.com/technetwork/topics/security/bulletinjul2015-2511963.html No Types Assigned
http://www.oracle.com/technetwork/topics/security/bulletinjul2015-2511963.html Third Party Advisory
Changed Reference Type
http://www.securityfocus.com/bid/71209 No Types Assigned
http://www.securityfocus.com/bid/71209 Third Party Advisory, VDB Entry
Changed Reference Type
https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=725847 Exploit
https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=725847 Third Party Advisory
Changed Reference Type
https://github.com/pypa/pip/pull/2122 No Types Assigned
https://github.com/pypa/pip/pull/2122 Vendor Advisory, Patch