U.S. flag   An official website of the United States government
Dot gov

Official websites use .gov
A .gov website belongs to an official government organization in the United States.

Https

Secure .gov websites use HTTPS
A lock (Dot gov) or https:// means you've safely connected to the .gov website. Share sensitive information only on official, secure websites.

Vulnerability Change Records for CVE-2017-8938

Change History

Initial Analysis by NIST 5/25/2017 8:58:56 AM

Action Type Old Value New Value
Added CPE Configuration

								
							
							
						
OR
     *cpe:2.3:a:radio_javan_inc.:radio_javan:9.3.4:*:*:*:*:iphone_os:*:*
     *cpe:2.3:a:radio_javan_inc.:radio_javan:9.4:*:*:*:*:iphone_os:*:*
     *cpe:2.3:a:radio_javan_inc.:radio_javan:9.4.1:*:*:*:*:iphone_os:*:*
     *cpe:2.3:a:radio_javan_inc.:radio_javan:9.4.2:*:*:*:*:iphone_os:*:*
     *cpe:2.3:a:radio_javan_inc.:radio_javan:9.4.3:*:*:*:*:iphone_os:*:*
     *cpe:2.3:a:radio_javan_inc.:radio_javan:9.4.4:*:*:*:*:iphone_os:*:*
     *cpe:2.3:a:radio_javan_inc.:radio_javan:9.4.5:*:*:*:*:iphone_os:*:*
     *cpe:2.3:a:radio_javan_inc.:radio_javan:9.5:*:*:*:*:iphone_os:*:*
     *cpe:2.3:a:radio_javan_inc.:radio_javan:9.5.1:*:*:*:*:iphone_os:*:*
     *cpe:2.3:a:radio_javan_inc.:radio_javan:9.6:*:*:*:*:iphone_os:*:*
     *cpe:2.3:a:radio_javan_inc.:radio_javan:9.6.1:*:*:*:*:iphone_os:*:*
Added CVSS V2

								
							
							
						
(AV:N/AC:M/Au:N/C:P/I:N/A:N)
Added CVSS V3

								
							
							
						
AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:N/A:N
Added CWE

								
							
							
						
CWE-295
Changed Reference Type
https://medium.com/@chronic_9612/follow-up-76-popular-apps-confirmed-vulnerable-to-silent-interception-of-tls-protected-data-64185035029f No Types Assigned
https://medium.com/@chronic_9612/follow-up-76-popular-apps-confirmed-vulnerable-to-silent-interception-of-tls-protected-data-64185035029f Third Party Advisory