U.S. flag   An official website of the United States government
Dot gov

Official websites use .gov
A .gov website belongs to an official government organization in the United States.

Https

Secure .gov websites use HTTPS
A lock (Dot gov) or https:// means you've safely connected to the .gov website. Share sensitive information only on official, secure websites.

Vulnerability Change Records for CVE-2008-4989

Change History

Modified Analysis by NIST 2/08/2024 10:19:21 PM

Action Type Old Value New Value
Added CPE Configuration

								
							
							
						
OR
     *cpe:2.3:o:canonical:ubuntu_linux:6.06:*:*:*:*:*:*:*
     *cpe:2.3:o:canonical:ubuntu_linux:7.10:*:*:*:*:*:*:*
     *cpe:2.3:o:canonical:ubuntu_linux:8.04:*:*:*:-:*:*:*
     *cpe:2.3:o:canonical:ubuntu_linux:8.10:*:*:*:*:*:*:*
Added CPE Configuration

								
							
							
						
OR
     *cpe:2.3:o:debian:debian_linux:4.0:*:*:*:*:*:*:*
Added CPE Configuration

								
							
							
						
OR
     *cpe:2.3:o:fedoraproject:fedora:8:*:*:*:*:*:*:*
     *cpe:2.3:o:fedoraproject:fedora:9:*:*:*:*:*:*:*
Added CPE Configuration

								
							
							
						
OR
     *cpe:2.3:o:opensuse:opensuse:*:*:*:*:*:*:*:* versions from (including) 10.3 up to (including) 11.1
     *cpe:2.3:o:suse:linux_enterprise:10.0:-:*:*:*:*:*:*
     *cpe:2.3:o:suse:linux_enterprise:11.0:-:*:*:*:*:*:*
     *cpe:2.3:o:suse:linux_enterprise_server:10:-:*:*:*:*:*:*
     *cpe:2.3:o:suse:linux_enterprise_server:11:-:*:*:*:*:*:*
Changed CPE Configuration
OR
     *cpe:2.3:a:gnu:gnutls:1.0.16:*:*:*:*:*:*:*
     *cpe:2.3:a:gnu:gnutls:1.0.17:*:*:*:*:*:*:*
     *cpe:2.3:a:gnu:gnutls:1.0.18:*:*:*:*:*:*:*
     *cpe:2.3:a:gnu:gnutls:1.0.19:*:*:*:*:*:*:*
     *cpe:2.3:a:gnu:gnutls:1.0.20:*:*:*:*:*:*:*
     *cpe:2.3:a:gnu:gnutls:1.0.21:*:*:*:*:*:*:*
     *cpe:2.3:a:gnu:gnutls:1.0.22:*:*:*:*:*:*:*
     *cpe:2.3:a:gnu:gnutls:1.0.23:*:*:*:*:*:*:*
     *cpe:2.3:a:gnu:gnutls:1.0.24:*:*:*:*:*:*:*
     *cpe:2.3:a:gnu:gnutls:1.0.25:*:*:*:*:*:*:*
     *cpe:2.3:a:gnu:gnutls:1.1.13:*:*:*:*:*:*:*
     *cpe:2.3:a:gnu:gnutls:1.1.14:*:*:*:*:*:*:*
     *cpe:2.3:a:gnu:gnutls:1.1.15:*:*:*:*:*:*:*
     *cpe:2.3:a:gnu:gnutls:1.1.16:*:*:*:*:*:*:*
     *cpe:2.3:a:gnu:gnutls:1.1.17:*:*:*:*:*:*:*
     *cpe:2.3:a:gnu:gnutls:1.1.18:*:*:*:*:*:*:*
     *cpe:2.3:a:gnu:gnutls:1.1.19:*:*:*:*:*:*:*
     *cpe:2.3:a:gnu:gnutls:1.1.20:*:*:*:*:*:*:*
     *cpe:2.3:a:gnu:gnutls:1.1.21:*:*:*:*:*:*:*
     *cpe:2.3:a:gnu:gnutls:1.1.22:*:*:*:*:*:*:*
     *cpe:2.3:a:gnu:gnutls:1.1.23:*:*:*:*:*:*:*
     *cpe:2.3:a:gnu:gnutls:1.2.0:*:*:*:*:*:*:*
     *cpe:2.3:a:gnu:gnutls:1.2.1:*:*:*:*:*:*:*
     *cpe:2.3:a:gnu:gnutls:1.2.2:*:*:*:*:*:*:*
     *cpe:2.3:a:gnu:gnutls:1.2.3:*:*:*:*:*:*:*
     *cpe:2.3:a:gnu:gnutls:1.2.4:*:*:*:*:*:*:*
     *cpe:2.3:a:gnu:gnutls:1.2.5:*:*:*:*:*:*:*
     *cpe:2.3:a:gnu:gnutls:1.2.6:*:*:*:*:*:*:*
     *cpe:2.3:a:gnu:gnutls:1.2.7:*:*:*:*:*:*:*
     *cpe:2.3:a:gnu:gnutls:1.2.8:*:*:*:*:*:*:*
     *cpe:2.3:a:gnu:gnutls:1.2.8.1a1:*:*:*:*:*:*:*
     *cpe:2.3:a:gnu:gnutls:1.2.9:*:*:*:*:*:*:*
     *cpe:2.3:a:gnu:gnutls:1.2.10:*:*:*:*:*:*:*
     *cpe:2.3:a:gnu:gnutls:1.2.11:*:*:*:*:*:*:*
     *cpe:2.3:a:gnu:gnutls:1.3.0:*:*:*:*:*:*:*
     *cpe:2.3:a:gnu:gnutls:1.3.1:*:*:*:*:*:*:*
     *cpe:2.3:a:gnu:gnutls:1.3.2:*:*:*:*:*:*:*
     *cpe:2.3:a:gnu:gnutls:1.3.3:*:*:*:*:*:*:*
     *cpe:2.3:a:gnu:gnutls:1.3.4:*:*:*:*:*:*:*
     *cpe:2.3:a:gnu:gnutls:1.3.5:*:*:*:*:*:*:*
     *cpe:2.3:a:gnu:gnutls:1.4.0:*:*:*:*:*:*:*
     *cpe:2.3:a:gnu:gnutls:1.4.1:*:*:*:*:*:*:*
     *cpe:2.3:a:gnu:gnutls:1.4.2:*:*:*:*:*:*:*
     *cpe:2.3:a:gnu:gnutls:1.4.3:*:*:*:*:*:*:*
     *cpe:2.3:a:gnu:gnutls:1.4.4:*:*:*:*:*:*:*
     *cpe:2.3:a:gnu:gnutls:1.4.5:*:*:*:*:*:*:*
     *cpe:2.3:a:gnu:gnutls:1.5.0:*:*:*:*:*:*:*
     *cpe:2.3:a:gnu:gnutls:1.5.1:*:*:*:*:*:*:*
     *cpe:2.3:a:gnu:gnutls:1.5.2:*:*:*:*:*:*:*
     *cpe:2.3:a:gnu:gnutls:1.5.3:*:*:*:*:*:*:*
     *cpe:2.3:a:gnu:gnutls:1.5.4:*:*:*:*:*:*:*
     *cpe:2.3:a:gnu:gnutls:1.5.5:*:*:*:*:*:*:*
     *cpe:2.3:a:gnu:gnutls:1.6.0:*:*:*:*:*:*:*
     *cpe:2.3:a:gnu:gnutls:1.6.1:*:*:*:*:*:*:*
     *cpe:2.3:a:gnu:gnutls:1.6.2:*:*:*:*:*:*:*
     *cpe:2.3:a:gnu:gnutls:1.6.3:*:*:*:*:*:*:*
     *cpe:2.3:a:gnu:gnutls:1.7.0:*:*:*:*:*:*:*
     *cpe:2.3:a:gnu:gnutls:1.7.1:*:*:*:*:*:*:*
     *cpe:2.3:a:gnu:gnutls:1.7.2:*:*:*:*:*:*:*
     *cpe:2.3:a:gnu:gnutls:1.7.3:*:*:*:*:*:*:*
     *cpe:2.3:a:gnu:gnutls:1.7.4:*:*:*:*:*:*:*
     *cpe:2.3:a:gnu:gnutls:1.7.5:*:*:*:*:*:*:*
     *cpe:2.3:a:gnu:gnutls:1.7.6:*:*:*:*:*:*:*
     *cpe:2.3:a:gnu:gnutls:1.7.7:*:*:*:*:*:*:*
     *cpe:2.3:a:gnu:gnutls:1.7.8:*:*:*:*:*:*:*
     *cpe:2.3:a:gnu:gnutls:1.7.9:*:*:*:*:*:*:*
     *cpe:2.3:a:gnu:gnutls:1.7.10:*:*:*:*:*:*:*
     *cpe:2.3:a:gnu:gnutls:1.7.11:*:*:*:*:*:*:*
     *cpe:2.3:a:gnu:gnutls:1.7.12:*:*:*:*:*:*:*
     *cpe:2.3:a:gnu:gnutls:1.7.13:*:*:*:*:*:*:*
     *cpe:2.3:a:gnu:gnutls:1.7.14:*:*:*:*:*:*:*
     *cpe:2.3:a:gnu:gnutls:1.7.15:*:*:*:*:*:*:*
     *cpe:2.3:a:gnu:gnutls:1.7.16:*:*:*:*:*:*:*
     *cpe:2.3:a:gnu:gnutls:1.7.17:*:*:*:*:*:*:*
     *cpe:2.3:a:gnu:gnutls:1.7.18:*:*:*:*:*:*:*
     *cpe:2.3:a:gnu:gnutls:1.7.19:*:*:*:*:*:*:*
     *cpe:2.3:a:gnu:gnutls:2.0.0:*:*:*:*:*:*:*
     *cpe:2.3:a:gnu:gnutls:2.0.1:*:*:*:*:*:*:*
     *cpe:2.3:a:gnu:gnutls:2.0.2:*:*:*:*:*:*:*
     *cpe:2.3:a:gnu:gnutls:2.0.3:*:*:*:*:*:*:*
     *cpe:2.3:a:gnu:gnutls:2.0.4:*:*:*:*:*:*:*
     *cpe:2.3:a:gnu:gnutls:2.1.0:*:*:*:*:*:*:*
     *cpe:2.3:a:gnu:gnutls:2.1.1:*:*:*:*:*:*:*
     *cpe:2.3:a:gnu:gnutls:2.1.2:*:*:*:*:*:*:*
     *cpe:2.3:a:gnu:gnutls:2.1.3:*:*:*:*:*:*:*
     *cpe:2.3:a:gnu:gnutls:2.1.4:*:*:*:*:*:*:*
     *cpe:2.3:a:gnu:gnutls:2.1.5:*:*:*:*:*:*:*
     *cpe:2.3:a:gnu:gnutls:2.1.6:*:*:*:*:*:*:*
     *cpe:2.3:a:gnu:gnutls:2.1.7:*:*:*:*:*:*:*
     *cpe:2.3:a:gnu:gnutls:2.1.8:*:*:*:*:*:*:*
     *cpe:2.3:a:gnu:gnutls:2.2.0:*:*:*:*:*:*:*
     *cpe:2.3:a:gnu:gnutls:2.2.1:*:*:*:*:*:*:*
     *cpe:2.3:a:gnu:gnutls:2.2.2:*:*:*:*:*:*:*
     *cpe:2.3:a:gnu:gnutls:2.2.3:*:*:*:*:*:*:*
     *cpe:2.3:a:gnu:gnutls:2.2.4:*:*:*:*:*:*:*
     *cpe:2.3:a:gnu:gnutls:2.2.5:*:*:*:*:*:*:*
     *cpe:2.3:a:gnu:gnutls:2.3.0:*:*:*:*:*:*:*
     *cpe:2.3:a:gnu:gnutls:2.3.1:*:*:*:*:*:*:*
     *cpe:2.3:a:gnu:gnutls:2.3.2:*:*:*:*:*:*:*
     *cpe:2.3:a:gnu:gnutls:2.3.3:*:*:*:*:*:*:*
     *cpe:2.3:a:gnu:gnutls:2.3.4:*:*:*:*:*:*:*
     *cpe:2.3:a:gnu:gnutls:2.3.5:*:*:*:*:*:*:*
     *cpe:2.3:a:gnu:gnutls:2.3.6:*:*:*:*:*:*:*
     *cpe:2.3:a:gnu:gnutls:2.3.7:*:*:*:*:*:*:*
     *cpe:2.3:a:gnu:gnutls:2.3.8:*:*:*:*:*:*:*
     *cpe:2.3:a:gnu:gnutls:2.3.9:*:*:*:*:*:*:*
     *cpe:2.3:a:gnu:gnutls:2.3.10:*:*:*:*:*:*:*
     *cpe:2.3:a:gnu:gnutls:2.3.11:*:*:*:*:*:*:*
     *cpe:2.3:a:gnu:gnutls:2.4.0:*:*:*:*:*:*:*
     *cpe:2.3:a:gnu:gnutls:2.4.1:*:*:*:*:*:*:*
     *cpe:2.3:a:gnu:gnutls:2.4.2:*:*:*:*:*:*:*
     *cpe:2.3:a:gnu:gnutls:*:*:*:*:*:*:*:* versions up to (including) 2.6.0
OR
     *cpe:2.3:a:gnu:gnutls:*:*:*:*:*:*:*:* versions up to (excluding) 2.6.1
Added CVSS V3.1

								
							
							
						
NIST AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:H/A:N
Added CWE

								
							
							
						
NIST CWE-295
Removed CWE
NIST CWE-255

								
						
Changed Reference Type
http://article.gmane.org/gmane.comp.encryption.gpg.gnutls.devel/3215 Patch
http://article.gmane.org/gmane.comp.encryption.gpg.gnutls.devel/3215 Broken Link, Patch
Changed Reference Type
http://article.gmane.org/gmane.comp.encryption.gpg.gnutls.devel/3217 No Types Assigned
http://article.gmane.org/gmane.comp.encryption.gpg.gnutls.devel/3217 Broken Link
Changed Reference Type
http://lists.opensuse.org/opensuse-security-announce/2008-12/msg00002.html No Types Assigned
http://lists.opensuse.org/opensuse-security-announce/2008-12/msg00002.html Mailing List
Changed Reference Type
http://lists.opensuse.org/opensuse-security-announce/2009-04/msg00010.html No Types Assigned
http://lists.opensuse.org/opensuse-security-announce/2009-04/msg00010.html Mailing List
Changed Reference Type
http://secunia.com/advisories/32619 Vendor Advisory
http://secunia.com/advisories/32619 Broken Link, Vendor Advisory
Changed Reference Type
http://secunia.com/advisories/32681 No Types Assigned
http://secunia.com/advisories/32681 Broken Link
Changed Reference Type
http://secunia.com/advisories/32687 No Types Assigned
http://secunia.com/advisories/32687 Broken Link
Changed Reference Type
http://secunia.com/advisories/32879 No Types Assigned
http://secunia.com/advisories/32879 Broken Link
Changed Reference Type
http://secunia.com/advisories/33501 No Types Assigned
http://secunia.com/advisories/33501 Broken Link
Changed Reference Type
http://secunia.com/advisories/33694 No Types Assigned
http://secunia.com/advisories/33694 Broken Link
Changed Reference Type
http://secunia.com/advisories/35423 No Types Assigned
http://secunia.com/advisories/35423 Broken Link
Changed Reference Type
http://security.gentoo.org/glsa/glsa-200901-10.xml No Types Assigned
http://security.gentoo.org/glsa/glsa-200901-10.xml Third Party Advisory
Changed Reference Type
http://sunsolve.sun.com/search/document.do?assetkey=1-26-260528-1 No Types Assigned
http://sunsolve.sun.com/search/document.do?assetkey=1-26-260528-1 Broken Link
Changed Reference Type
http://wiki.rpath.com/Advisories:rPSA-2008-0322 No Types Assigned
http://wiki.rpath.com/Advisories:rPSA-2008-0322 Broken Link
Changed Reference Type
http://www.debian.org/security/2009/dsa-1719 No Types Assigned
http://www.debian.org/security/2009/dsa-1719 Mailing List
Changed Reference Type
http://www.gnu.org/software/gnutls/security.html No Types Assigned
http://www.gnu.org/software/gnutls/security.html Product
Changed Reference Type
http://www.mandriva.com/security/advisories?name=MDVSA-2008:227 No Types Assigned
http://www.mandriva.com/security/advisories?name=MDVSA-2008:227 Broken Link
Changed Reference Type
http://www.redhat.com/support/errata/RHSA-2008-0982.html No Types Assigned
http://www.redhat.com/support/errata/RHSA-2008-0982.html Broken Link
Changed Reference Type
http://www.securityfocus.com/archive/1/498431/100/0/threaded No Types Assigned
http://www.securityfocus.com/archive/1/498431/100/0/threaded Broken Link, Third Party Advisory, VDB Entry
Changed Reference Type
http://www.securityfocus.com/bid/32232 Patch
http://www.securityfocus.com/bid/32232 Broken Link, Patch, Third Party Advisory, VDB Entry
Changed Reference Type
http://www.securitytracker.com/id?1021167 No Types Assigned
http://www.securitytracker.com/id?1021167 Broken Link, Third Party Advisory, VDB Entry
Changed Reference Type
http://www.ubuntu.com/usn/usn-678-2 No Types Assigned
http://www.ubuntu.com/usn/usn-678-2 Third Party Advisory
Changed Reference Type
http://www.vupen.com/english/advisories/2008/3086 No Types Assigned
http://www.vupen.com/english/advisories/2008/3086 Broken Link
Changed Reference Type
http://www.vupen.com/english/advisories/2009/1567 No Types Assigned
http://www.vupen.com/english/advisories/2009/1567 Broken Link
Changed Reference Type
https://exchange.xforce.ibmcloud.com/vulnerabilities/46482 No Types Assigned
https://exchange.xforce.ibmcloud.com/vulnerabilities/46482 Third Party Advisory, VDB Entry
Changed Reference Type
https://issues.rpath.com/browse/RPL-2886 No Types Assigned
https://issues.rpath.com/browse/RPL-2886 Broken Link
Changed Reference Type
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A11650 No Types Assigned
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A11650 Broken Link
Changed Reference Type
https://usn.ubuntu.com/678-1/ No Types Assigned
https://usn.ubuntu.com/678-1/ Broken Link
Changed Reference Type
https://www.redhat.com/archives/fedora-package-announce/2008-November/msg00222.html No Types Assigned
https://www.redhat.com/archives/fedora-package-announce/2008-November/msg00222.html Mailing List
Changed Reference Type
https://www.redhat.com/archives/fedora-package-announce/2008-November/msg00293.html No Types Assigned
https://www.redhat.com/archives/fedora-package-announce/2008-November/msg00293.html Mailing List