U.S. flag   An official website of the United States government
Dot gov

Official websites use .gov
A .gov website belongs to an official government organization in the United States.

Https

Secure .gov websites use HTTPS
A lock (Dot gov) or https:// means you've safely connected to the .gov website. Share sensitive information only on official, secure websites.

Vulnerability Change Records for CVE-2020-20949

Change History

Initial Analysis by NIST 2/02/2021 10:31:16 AM

Action Type Old Value New Value
Added CPE Configuration

								
							
							
						
OR
     *cpe:2.3:a:ietf:public_key_cryptography_standards_\#1:1.5:*:*:*:*:*:*:*
Added CPE Configuration

								
							
							
						
OR
     *cpe:2.3:a:st:stm32cubef0:-:*:*:*:*:*:*:*
     *cpe:2.3:a:st:stm32cubef1:-:*:*:*:*:*:*:*
     *cpe:2.3:a:st:stm32cubef2:-:*:*:*:*:*:*:*
     *cpe:2.3:a:st:stm32cubef3:-:*:*:*:*:*:*:*
     *cpe:2.3:a:st:stm32cubef4:-:*:*:*:*:*:*:*
     *cpe:2.3:a:st:stm32cubef7:-:*:*:*:*:*:*:*
     *cpe:2.3:a:st:stm32cubeg0:-:*:*:*:*:*:*:*
     *cpe:2.3:a:st:stm32cubeg4:-:*:*:*:*:*:*:*
     *cpe:2.3:a:st:stm32cubeh7:-:*:*:*:*:*:*:*
     *cpe:2.3:a:st:stm32cubeide:-:*:*:*:*:*:*:*
     *cpe:2.3:a:st:stm32cubel0:-:*:*:*:*:*:*:*
     *cpe:2.3:a:st:stm32cubel1:-:*:*:*:*:*:*:*
     *cpe:2.3:a:st:stm32cubel4:-:*:*:*:*:*:*:*
     *cpe:2.3:a:st:stm32cubel4\+:-:*:*:*:*:*:*:*
     *cpe:2.3:a:st:stm32cubel5:-:*:*:*:*:*:*:*
     *cpe:2.3:a:st:stm32cubemonitor:-:*:*:*:*:*:*:*
     *cpe:2.3:a:st:stm32cubemp1:-:*:*:*:*:*:*:*
     *cpe:2.3:a:st:stm32cubemx:-:*:*:*:*:*:*:*
     *cpe:2.3:a:st:stm32cubeprogrammer:-:*:*:*:*:*:*:*
     *cpe:2.3:a:st:stm32cubewb:-:*:*:*:*:*:*:*
     *cpe:2.3:a:st:stm32cubewl:-:*:*:*:*:*:*:*
Added CVSS V2

								
							
							
						
NIST (AV:N/AC:M/Au:N/C:P/I:N/A:N)
Added CVSS V3.1

								
							
							
						
NIST AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:N/A:N
Added CWE

								
							
							
						
NIST CWE-326
Changed Reference Type
http://archiv.infsec.ethz.ch/education/fs08/secsem/bleichenbacher98.pdf No Types Assigned
http://archiv.infsec.ethz.ch/education/fs08/secsem/bleichenbacher98.pdf Technical Description, Third Party Advisory
Changed Reference Type
http://st.com No Types Assigned
http://st.com Product
Changed Reference Type
http://x-cube-cryptolib.com No Types Assigned
http://x-cube-cryptolib.com Broken Link
Changed Reference Type
https://bi-zone.medium.com/silence-will-fall-or-how-it-can-take-2-years-to-get-your-vuln-registered-e6134846f5bb No Types Assigned
https://bi-zone.medium.com/silence-will-fall-or-how-it-can-take-2-years-to-get-your-vuln-registered-e6134846f5bb Technical Description, Third Party Advisory
Changed Reference Type
https://www.st.com/en/embedded-software/x-cube-cryptolib.html No Types Assigned
https://www.st.com/en/embedded-software/x-cube-cryptolib.html Third Party Advisory