VDB
BDU%3A2019-01881
BDU%3A2019-01881
PUBLISHED
CVSS 7.099999904632568 HIGH
Уязвимость реализации алгоритма шифрования ECDSA библиотеки OpenSSL, позволяющая нарушителю получить несанкционированный доступ к защищаемой информации
Risk Scores
CVSS 2.0
7.099999904632568
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Canonical Ltd., Oracle Corp., Red Hat Inc., Сообщество свободного программного обеспечения, ООО «РусБИТех-Астра», OpenSSL Software Foundation, Node.js Foundation, Novell Inc. | Ubuntu, API Gateway, Red Hat Enterprise Linux, Debian GNU/Linux, Enterprise Manager Ops Center, JD Edwards EnterpriseOne Tools, Tuxedo, VM VirtualBox, PeopleSoft Enterprise PeopleTools, Astra Linux Special Edition (запись в едином реестре российских программ №369), Primavera P6 Enterprise Project Portfolio Management, OpenSSL, Business Intelligence Enterprise Edition, Enterprise Manager Base Platform, Node.js, Endeca Server, Application Server, MySQL Enterprise Backup, Enterprise Communications Broker, JD Edwards World Security, OpenSUSE Leap, MySQL Connectors, MySQL Server, MySQL Enterprise Monitor, Astra Linux Special Edition для «Эльбрус» (запись в едином реестре российских программ №11156), Oracle Communications Session Border Controller, Communications Unified Session Manager, Oracle Communications Session Router, Communications Diameter Signaling Router, MySQL Workbench, Services Tools Bundle |
Timeline
- May 31, 2019 CVE Published
- Mar 23, 2021 CVE Updated
- Mar 18, 2026 Distribution Patch
References
- http://www.securitytracker.com/id/1041986 url
- https://git.openssl.org/gitweb/?p=openssl.git;a=commitdiff;h=b1d6d55ece1c26fa2829e2b819b038d7b6d692b4 url
- https://lists.debian.org/debian-lts-announce/2018/11/msg00024.html url
- https://nodejs.org/en/blog/vulnerability/november-2018-security-releases/ url
- https://www.debian.org/security/2018/dsa-4348 url
- https://www.oracle.com/technetwork/security-advisory/cpuapr2019-5072813.html url
- https://www.oracle.com/security-alerts/public-vuln-to-advisory-mapping.html url
- https://usn.ubuntu.com/3840-1/ advisory
- https://wiki.astralinux.ru/pages/viewpage.action?pageId=57444186 advisory
- https://www.oracle.com/technetwork/security-advisory/cpujul2019-5072835.html advisory
- http://www.securityfocus.com/bid/105750 url
- https://git.openssl.org/gitweb/?p=openssl.git;a=commitdiff;h=56fb454d281a023b3f950d969693553d3f3ceea1 url
- https://security.netapp.com/advisory/ntap-20181105-0002/ url
- https://www.openssl.org/news/secadv/20181029.txt url
- https://www.oracle.com/security-alerts/cpujan2020.html url
- https://wiki.astralinux.ru/astra-linux-se81-bulletin-20200429SE81 advisory
- https://www.suse.com/security/cve/CVE-2018-0735/ advisory
- https://access.redhat.com/security/cve/CVE-2018-0735 advisory
- https://www.oracle.com/technetwork/security-advisory/cpujan2019-5072801.html advisory