U.S. flag   An official website of the United States government
Dot gov

Official websites use .gov
A .gov website belongs to an official government organization in the United States.

Https

Secure .gov websites use HTTPS
A lock (Dot gov) or https:// means you've safely connected to the .gov website. Share sensitive information only on official, secure websites.

Vulnerability Change Records for CVE-2015-0289

Change History

Modified Analysis by NIST 3/20/2015 11:55:06 AM

Action Type Old Value New Value
Added CVSS V2

								
							
							
						
(AV:N/AC:L/Au:N/C:N/I:N/A:P)
Added CWE

								
							
							
						
NVD-CWE-Other
Added CPE Configuration

								
							
							
						
Configuration 1
     OR
          *cpe:2.3:a:openssl:openssl:0.9.8ze:*:*:*:*:*:*:* (and previous)
          *cpe:2.3:a:openssl:openssl:1.0.0:*:*:*:*:*:*:*
          *cpe:2.3:a:openssl:openssl:1.0.0a:*:*:*:*:*:*:*
          *cpe:2.3:a:openssl:openssl:1.0.0b:*:*:*:*:*:*:*
          *cpe:2.3:a:openssl:openssl:1.0.0c:*:*:*:*:*:*:*
          *cpe:2.3:a:openssl:openssl:1.0.0d:*:*:*:*:*:*:*
          *cpe:2.3:a:openssl:openssl:1.0.0e:*:*:*:*:*:*:*
          *cpe:2.3:a:openssl:openssl:1.0.0f:*:*:*:*:*:*:*
          *cpe:2.3:a:openssl:openssl:1.0.0g:*:*:*:*:*:*:*
          *cpe:2.3:a:openssl:openssl:1.0.0h:*:*:*:*:*:*:*
          *cpe:2.3:a:openssl:openssl:1.0.0i:*:*:*:*:*:*:*
          *cpe:2.3:a:openssl:openssl:1.0.0j:*:*:*:*:*:*:*
          *cpe:2.3:a:openssl:openssl:1.0.0k:*:*:*:*:*:*:*
          *cpe:2.3:a:openssl:openssl:1.0.0l:*:*:*:*:*:*:*
          *cpe:2.3:a:openssl:openssl:1.0.0m:*:*:*:*:*:*:*
          *cpe:2.3:a:openssl:openssl:1.0.0n:*:*:*:*:*:*:*
          *cpe:2.3:a:openssl:openssl:1.0.0o:*:*:*:*:*:*:*
          *cpe:2.3:a:openssl:openssl:1.0.0p:*:*:*:*:*:*:*
          *cpe:2.3:a:openssl:openssl:1.0.0q:*:*:*:*:*:*:*
          *cpe:2.3:a:openssl:openssl:1.0.1:*:*:*:*:*:*:*
          *cpe:2.3:a:openssl:openssl:1.0.1a:*:*:*:*:*:*:*
          *cpe:2.3:a:openssl:openssl:1.0.1b:*:*:*:*:*:*:*
          *cpe:2.3:a:openssl:openssl:1.0.1c:*:*:*:*:*:*:*
          *cpe:2.3:a:openssl:openssl:1.0.1d:*:*:*:*:*:*:*
          *cpe:2.3:a:openssl:openssl:1.0.1e:*:*:*:*:*:*:*
          *cpe:2.3:a:openssl:openssl:1.0.1f:*:*:*:*:*:*:*
          *cpe:2.3:a:openssl:openssl:1.0.1g:*:*:*:*:*:*:*
          *cpe:2.3:a:openssl:openssl:1.0.1h:*:*:*:*:*:*:*
          *cpe:2.3:a:openssl:openssl:1.0.1i:*:*:*:*:*:*:*
          *cpe:2.3:a:openssl:openssl:1.0.1j:*:*:*:*:*:*:*
          *cpe:2.3:a:openssl:openssl:1.0.1k:*:*:*:*:*:*:*
          *cpe:2.3:a:openssl:openssl:1.0.1l:*:*:*:*:*:*:*
          *cpe:2.3:a:openssl:openssl:1.0.2:*:*:*:*:*:*:*
Changed Reference Type
https://www.openssl.org/news/secadv_20150319.txt No Types Assigned
https://www.openssl.org/news/secadv_20150319.txt Advisory
Added Evaluator Description

								
							
							
						
<a href="http://cwe.mitre.org/data/definitions/476.html">CWE-476: NULL Pointer Dereference</a>