Vulnerability Change Records for CVE-2015-5143

Change History

CVE Modified by MITRE 11/28/2016 2:32:16 PM

Action Type Old Value New Value
Added Reference

								
							
							
						
http://www.securityfocus.com/bid/75666 [No Types Assigned]

Modified Analysis 10/18/2016 2:46:22 PM

Action Type Old Value New Value
Changed CPE Configuration
Configuration 1
     OR
          *cpe:2.3:a:djangoproject:django:1.8.2:*:*:*:*:*:*:*
          *cpe:2.3:a:djangoproject:django:1.8.1:*:*:*:*:*:*:*
          *cpe:2.3:a:djangoproject:django:1.8.0:*:*:*:*:*:*:*
          *cpe:2.3:a:djangoproject:django:1.7:beta1:*:*:*:*:*:*
          *cpe:2.3:a:djangoproject:django:1.7:beta2:*:*:*:*:*:*
          *cpe:2.3:a:djangoproject:django:1.7:beta3:*:*:*:*:*:*
          *cpe:2.3:a:djangoproject:django:1.7:beta4:*:*:*:*:*:*
          *cpe:2.3:a:djangoproject:django:1.7:rc1:*:*:*:*:*:*
          *cpe:2.3:a:djangoproject:django:1.7:rc2:*:*:*:*:*:*
          *cpe:2.3:a:djangoproject:django:1.7:rc3:*:*:*:*:*:*
          *cpe:2.3:a:djangoproject:django:1.7.1:*:*:*:*:*:*:*
          *cpe:2.3:a:djangoproject:django:1.7.2:*:*:*:*:*:*:*
          *cpe:2.3:a:djangoproject:django:1.7.3:*:*:*:*:*:*:*
          *cpe:2.3:a:djangoproject:django:1.7.4:*:*:*:*:*:*:*
          *cpe:2.3:a:djangoproject:django:1.7.5:*:*:*:*:*:*:*
          *cpe:2.3:a:djangoproject:django:1.7.6:*:*:*:*:*:*:*
          *cpe:2.3:a:djangoproject:django:1.7.7:*:*:*:*:*:*:*
          *cpe:2.3:a:djangoproject:django:1.7.8:*:*:*:*:*:*:*
          *cpe:2.3:a:djangoproject:django:1.7.9:*:*:*:*:*:*:*
          *cpe:2.3:a:djangoproject:django:1.6.9:*:*:*:*:*:*:*
          *cpe:2.3:a:djangoproject:django:1.6.8:*:*:*:*:*:*:*
          *cpe:2.3:a:djangoproject:django:1.6.7:*:*:*:*:*:*:*
          *cpe:2.3:a:djangoproject:django:1.6.6:*:*:*:*:*:*:*
          *cpe:2.3:a:djangoproject:django:1.6.5:*:*:*:*:*:*:*
          *cpe:2.3:a:djangoproject:django:1.6.4:*:*:*:*:*:*:*
          *cpe:2.3:a:djangoproject:django:1.6.3:*:*:*:*:*:*:*
          *cpe:2.3:a:djangoproject:django:1.6.2:*:*:*:*:*:*:*
          *cpe:2.3:a:djangoproject:django:1.6.10:*:*:*:*:*:*:*
          *cpe:2.3:a:djangoproject:django:1.6.1:*:*:*:*:*:*:*
          *cpe:2.3:a:djangoproject:django:1.6:beta4:*:*:*:*:*:*
          *cpe:2.3:a:djangoproject:django:1.6:beta3:*:*:*:*:*:*
          *cpe:2.3:a:djangoproject:django:1.6:beta2:*:*:*:*:*:*
          *cpe:2.3:a:djangoproject:django:1.6:beta1:*:*:*:*:*:*
          *cpe:2.3:a:djangoproject:django:1.6:-:*:*:*:*:*:*
          *cpe:2.3:a:djangoproject:django:1.5.9:*:*:*:*:*:*:*
          *cpe:2.3:a:djangoproject:django:1.5.8:*:*:*:*:*:*:*
          *cpe:2.3:a:djangoproject:django:1.5.7:*:*:*:*:*:*:*
          *cpe:2.3:a:djangoproject:django:1.5.6:*:*:*:*:*:*:*
          *cpe:2.3:a:djangoproject:django:1.5.5:*:*:*:*:*:*:*
          *cpe:2.3:a:djangoproject:django:1.5.4:*:*:*:*:*:*:*
          *cpe:2.3:a:djangoproject:django:1.5.3:*:*:*:*:*:*:*
          *cpe:2.3:a:djangoproject:django:1.5.2:*:*:*:*:*:*:*
          *cpe:2.3:a:djangoproject:django:1.5.12:*:*:*:*:*:*:*
          *cpe:2.3:a:djangoproject:django:1.5.11:*:*:*:*:*:*:*
          *cpe:2.3:a:djangoproject:django:1.5.10:*:*:*:*:*:*:*
          *cpe:2.3:a:djangoproject:django:1.5.1:*:*:*:*:*:*:*
          *cpe:2.3:a:djangoproject:django:1.5:beta:*:*:*:*:*:*
          *cpe:2.3:a:djangoproject:django:1.5:alpha:*:*:*:*:*:*
          *cpe:2.3:a:djangoproject:django:1.5:*:*:*:*:*:*:*
          *cpe:2.3:a:djangoproject:django:1.4.20:*:*:*:*:*:*:*
Configuration 1
     OR
          *cpe:2.3:a:djangoproject:django:1.8.2:*:*:*:*:*:*:*
          *cpe:2.3:a:djangoproject:django:1.8.1:*:*:*:*:*:*:*
          *cpe:2.3:a:djangoproject:django:1.8.0:*:*:*:*:*:*:*
          *cpe:2.3:a:djangoproject:django:1.7:beta1:*:*:*:*:*:*
          *cpe:2.3:a:djangoproject:django:1.7:beta2:*:*:*:*:*:*
          *cpe:2.3:a:djangoproject:django:1.7:beta3:*:*:*:*:*:*
          *cpe:2.3:a:djangoproject:django:1.7:beta4:*:*:*:*:*:*
          *cpe:2.3:a:djangoproject:django:1.7:rc1:*:*:*:*:*:*
          *cpe:2.3:a:djangoproject:django:1.7:rc2:*:*:*:*:*:*
          *cpe:2.3:a:djangoproject:django:1.7:rc3:*:*:*:*:*:*
          *cpe:2.3:a:djangoproject:django:1.7.1:*:*:*:*:*:*:*
          *cpe:2.3:a:djangoproject:django:1.7.2:*:*:*:*:*:*:*
          *cpe:2.3:a:djangoproject:django:1.7.3:*:*:*:*:*:*:*
          *cpe:2.3:a:djangoproject:django:1.7.4:*:*:*:*:*:*:*
          *cpe:2.3:a:djangoproject:django:1.7.5:*:*:*:*:*:*:*
          *cpe:2.3:a:djangoproject:django:1.7.6:*:*:*:*:*:*:*
          *cpe:2.3:a:djangoproject:django:1.7.7:*:*:*:*:*:*:*
          *cpe:2.3:a:djangoproject:django:1.7.8:*:*:*:*:*:*:*
          *cpe:2.3:a:djangoproject:django:1.7.9:*:*:*:*:*:*:*
          *cpe:2.3:a:djangoproject:django:1.6.9:*:*:*:*:*:*:*
          *cpe:2.3:a:djangoproject:django:1.6.8:*:*:*:*:*:*:*
          *cpe:2.3:a:djangoproject:django:1.6.7:*:*:*:*:*:*:*
          *cpe:2.3:a:djangoproject:django:1.6.6:*:*:*:*:*:*:*
          *cpe:2.3:a:djangoproject:django:1.6.5:*:*:*:*:*:*:*
          *cpe:2.3:a:djangoproject:django:1.6.4:*:*:*:*:*:*:*
          *cpe:2.3:a:djangoproject:django:1.6.3:*:*:*:*:*:*:*
          *cpe:2.3:a:djangoproject:django:1.6.2:*:*:*:*:*:*:*
          *cpe:2.3:a:djangoproject:django:1.6.10:*:*:*:*:*:*:*
          *cpe:2.3:a:djangoproject:django:1.6.1:*:*:*:*:*:*:*
          *cpe:2.3:a:djangoproject:django:1.6:beta4:*:*:*:*:*:*
          *cpe:2.3:a:djangoproject:django:1.6:beta3:*:*:*:*:*:*
          *cpe:2.3:a:djangoproject:django:1.6:beta2:*:*:*:*:*:*
          *cpe:2.3:a:djangoproject:django:1.6:beta1:*:*:*:*:*:*
          *cpe:2.3:a:djangoproject:django:1.6:-:*:*:*:*:*:*
          *cpe:2.3:a:djangoproject:django:1.5.9:*:*:*:*:*:*:*
          *cpe:2.3:a:djangoproject:django:1.5.8:*:*:*:*:*:*:*
          *cpe:2.3:a:djangoproject:django:1.5.7:*:*:*:*:*:*:*
          *cpe:2.3:a:djangoproject:django:1.5.6:*:*:*:*:*:*:*
          *cpe:2.3:a:djangoproject:django:1.5.5:*:*:*:*:*:*:*
          *cpe:2.3:a:djangoproject:django:1.5.4:*:*:*:*:*:*:*
          *cpe:2.3:a:djangoproject:django:1.5.3:*:*:*:*:*:*:*
          *cpe:2.3:a:djangoproject:django:1.5.2:*:*:*:*:*:*:*
          *cpe:2.3:a:djangoproject:django:1.5.12:*:*:*:*:*:*:*
          *cpe:2.3:a:djangoproject:django:1.5.11:*:*:*:*:*:*:*
          *cpe:2.3:a:djangoproject:django:1.5.10:*:*:*:*:*:*:*
          *cpe:2.3:a:djangoproject:django:1.5.1:*:*:*:*:*:*:*
          *cpe:2.3:a:djangoproject:django:1.5:beta:*:*:*:*:*:*
          *cpe:2.3:a:djangoproject:django:1.5:alpha:*:*:*:*:*:*
          *cpe:2.3:a:djangoproject:django:1.5:*:*:*:*:*:*:*
          *cpe:2.3:a:djangoproject:django:1.4.20:*:*:*:*:*:*:*
Configuration 2
     OR
          *cpe:2.3:o:debian:debian_linux:7.0:*:*:*:*:*:*:*
          *cpe:2.3:o:debian:debian_linux:8.0:*:*:*:*:*:*:*
Configuration 3
     OR
          *cpe:2.3:o:oracle:solaris:11.3:*:*:*:*:*:*:*
Configuration 4
     OR
          *cpe:2.3:o:canonical:ubuntu_linux:12.04:*:*:*:lts:*:*:*
          *cpe:2.3:o:canonical:ubuntu_linux:14.04:*:*:*:lts:*:*:*
          *cpe:2.3:o:canonical:ubuntu_linux:15.04:*:*:*:*:*:*:*
          *cpe:2.3:o:canonical:ubuntu_linux:15.10:*:*:*:*:*:*:*
Changed Reference Type
http://www.debian.org/security/2015/dsa-3305 No Types Assigned
http://www.debian.org/security/2015/dsa-3305 Third Party Advisory
Changed Reference Type
http://www.oracle.com/technetwork/topics/security/bulletinoct2015-2511968.html No Types Assigned
http://www.oracle.com/technetwork/topics/security/bulletinoct2015-2511968.html Third Party Advisory
Changed Reference Type
http://www.ubuntu.com/usn/USN-2671-1 No Types Assigned
http://www.ubuntu.com/usn/USN-2671-1 Third Party Advisory

Modified Analysis 7/15/2015 2:50:25 PM

Action Type Old Value New Value
Added CPE Configuration

								
							
							
						
Configuration 1
     OR
          *cpe:2.3:a:djangoproject:django:1.8.2:*:*:*:*:*:*:*
          *cpe:2.3:a:djangoproject:django:1.8.1:*:*:*:*:*:*:*
          *cpe:2.3:a:djangoproject:django:1.8.0:*:*:*:*:*:*:*
          *cpe:2.3:a:djangoproject:django:1.7:beta1:*:*:*:*:*:*
          *cpe:2.3:a:djangoproject:django:1.7:beta2:*:*:*:*:*:*
          *cpe:2.3:a:djangoproject:django:1.7:beta3:*:*:*:*:*:*
          *cpe:2.3:a:djangoproject:django:1.7:beta4:*:*:*:*:*:*
          *cpe:2.3:a:djangoproject:django:1.7:rc1:*:*:*:*:*:*
          *cpe:2.3:a:djangoproject:django:1.7:rc2:*:*:*:*:*:*
          *cpe:2.3:a:djangoproject:django:1.7:rc3:*:*:*:*:*:*
          *cpe:2.3:a:djangoproject:django:1.7.1:*:*:*:*:*:*:*
          *cpe:2.3:a:djangoproject:django:1.7.2:*:*:*:*:*:*:*
          *cpe:2.3:a:djangoproject:django:1.7.3:*:*:*:*:*:*:*
          *cpe:2.3:a:djangoproject:django:1.7.4:*:*:*:*:*:*:*
          *cpe:2.3:a:djangoproject:django:1.7.5:*:*:*:*:*:*:*
          *cpe:2.3:a:djangoproject:django:1.7.6:*:*:*:*:*:*:*
          *cpe:2.3:a:djangoproject:django:1.7.7:*:*:*:*:*:*:*
          *cpe:2.3:a:djangoproject:django:1.7.8:*:*:*:*:*:*:*
          *cpe:2.3:a:djangoproject:django:1.7.9:*:*:*:*:*:*:*
          *cpe:2.3:a:djangoproject:django:1.6.9:*:*:*:*:*:*:*
          *cpe:2.3:a:djangoproject:django:1.6.8:*:*:*:*:*:*:*
          *cpe:2.3:a:djangoproject:django:1.6.7:*:*:*:*:*:*:*
          *cpe:2.3:a:djangoproject:django:1.6.6:*:*:*:*:*:*:*
          *cpe:2.3:a:djangoproject:django:1.6.5:*:*:*:*:*:*:*
          *cpe:2.3:a:djangoproject:django:1.6.4:*:*:*:*:*:*:*
          *cpe:2.3:a:djangoproject:django:1.6.3:*:*:*:*:*:*:*
          *cpe:2.3:a:djangoproject:django:1.6.2:*:*:*:*:*:*:*
          *cpe:2.3:a:djangoproject:django:1.6.10:*:*:*:*:*:*:*
          *cpe:2.3:a:djangoproject:django:1.6.1:*:*:*:*:*:*:*
          *cpe:2.3:a:djangoproject:django:1.6:beta4:*:*:*:*:*:*
          *cpe:2.3:a:djangoproject:django:1.6:beta3:*:*:*:*:*:*
          *cpe:2.3:a:djangoproject:django:1.6:beta2:*:*:*:*:*:*
          *cpe:2.3:a:djangoproject:django:1.6:beta1:*:*:*:*:*:*
          *cpe:2.3:a:djangoproject:django:1.6:-:*:*:*:*:*:*
          *cpe:2.3:a:djangoproject:django:1.5.9:*:*:*:*:*:*:*
          *cpe:2.3:a:djangoproject:django:1.5.8:*:*:*:*:*:*:*
          *cpe:2.3:a:djangoproject:django:1.5.7:*:*:*:*:*:*:*
          *cpe:2.3:a:djangoproject:django:1.5.6:*:*:*:*:*:*:*
          *cpe:2.3:a:djangoproject:django:1.5.5:*:*:*:*:*:*:*
          *cpe:2.3:a:djangoproject:django:1.5.4:*:*:*:*:*:*:*
          *cpe:2.3:a:djangoproject:django:1.5.3:*:*:*:*:*:*:*
          *cpe:2.3:a:djangoproject:django:1.5.2:*:*:*:*:*:*:*
          *cpe:2.3:a:djangoproject:django:1.5.12:*:*:*:*:*:*:*
          *cpe:2.3:a:djangoproject:django:1.5.11:*:*:*:*:*:*:*
          *cpe:2.3:a:djangoproject:django:1.5.10:*:*:*:*:*:*:*
          *cpe:2.3:a:djangoproject:django:1.5.1:*:*:*:*:*:*:*
          *cpe:2.3:a:djangoproject:django:1.5:beta:*:*:*:*:*:*
          *cpe:2.3:a:djangoproject:django:1.5:alpha:*:*:*:*:*:*
          *cpe:2.3:a:djangoproject:django:1.5:*:*:*:*:*:*:*
          *cpe:2.3:a:djangoproject:django:1.4.20:*:*:*:*:*:*:*
Added CVSS V2

								
							
							
						
(AV:N/AC:L/Au:N/C:N/I:N/A:C)
Added CWE

								
							
							
						
CWE-399
Changed Reference Type
https://www.djangoproject.com/weblog/2015/jul/08/security-releases/ No Types Assigned
https://www.djangoproject.com/weblog/2015/jul/08/security-releases/ Advisory, Patch

Initial CVE Analysis 7/15/2015 12:18:15 PM

Action Type Old Value New Value

CVE Modified by MITRE 12/23/2016 9:59:28 PM

Action Type Old Value New Value
Added Reference

								
							
							
						
http://lists.opensuse.org/opensuse-updates/2015-10/msg00043.html [No Types Assigned]
Added Reference

								
							
							
						
http://lists.opensuse.org/opensuse-updates/2015-10/msg00046.html [No Types Assigned]
Added Reference

								
							
							
						
http://rhn.redhat.com/errata/RHSA-2015-1678.html [No Types Assigned]
Added Reference

								
							
							
						
http://rhn.redhat.com/errata/RHSA-2015-1686.html [No Types Assigned]

CVE Modified by MITRE 9/21/2017 9:29:23 PM

Action Type Old Value New Value
Added Reference

								
							
							
						
http://www.securitytracker.com/id/1032820 [No Types Assigned]

CVE Modified by MITRE 12/07/2016 1:15:50 PM

Action Type Old Value New Value
Added Reference

								
							
							
						
http://lists.fedoraproject.org/pipermail/package-announce/2015-November/172084.html [No Types Assigned]
Added Reference

								
							
							
						
https://security.gentoo.org/glsa/201510-06 [No Types Assigned]

CVE Modified by Source 10/17/2016 11:47:11 PM

Action Type Old Value New Value
Added Reference

								
							
							
						
http://www.oracle.com/technetwork/topics/security/bulletinoct2015-2511968.html

CVE Translated 7/17/2015 8:45:11 AM

Action Type Old Value New Value
Changed Translation
Vulnerabilidad en la sesión backends en Django (CVE-2015-5143)
la sesión backends en Django