U.S. flag   An official website of the United States government
Dot gov

Official websites use .gov
A .gov website belongs to an official government organization in the United States.

Https

Secure .gov websites use HTTPS
A lock (Dot gov) or https:// means you've safely connected to the .gov website. Share sensitive information only on official, secure websites.

Vulnerability Change Records for CVE-2013-0169

Change History

Modified Analysis by NIST 9/23/2019 3:36:24 PM

Action Type Old Value New Value
Changed CPE Configuration
OR
     *cpe:2.3:a:openssl:openssl:*:*:*:*:*:*:*:*
     *cpe:2.3:a:openssl:openssl:0.9.8:*:*:*:*:*:*:*
     *cpe:2.3:a:openssl:openssl:0.9.8a:*:*:*:*:*:*:*
     *cpe:2.3:a:openssl:openssl:0.9.8b:*:*:*:*:*:*:*
     *cpe:2.3:a:openssl:openssl:0.9.8c:*:*:*:*:*:*:*
     *cpe:2.3:a:openssl:openssl:0.9.8d:*:*:*:*:*:*:*
     *cpe:2.3:a:openssl:openssl:0.9.8f:*:*:*:*:*:*:*
     *cpe:2.3:a:openssl:openssl:0.9.8g:*:*:*:*:*:*:*
     *cpe:2.3:a:openssl:openssl:0.9.8h:*:*:*:*:*:*:*
     *cpe:2.3:a:openssl:openssl:0.9.8i:*:*:*:*:*:*:*
     *cpe:2.3:a:openssl:openssl:0.9.8j:*:*:*:*:*:*:*
     *cpe:2.3:a:openssl:openssl:0.9.8k:*:*:*:*:*:*:*
     *cpe:2.3:a:openssl:openssl:0.9.8l:*:*:*:*:*:*:*
     *cpe:2.3:a:openssl:openssl:0.9.8m:*:*:*:*:*:*:*
     *cpe:2.3:a:openssl:openssl:0.9.8n:*:*:*:*:*:*:*
     *cpe:2.3:a:openssl:openssl:0.9.8o:*:*:*:*:*:*:*
     *cpe:2.3:a:openssl:openssl:0.9.8p:*:*:*:*:*:*:*
     *cpe:2.3:a:openssl:openssl:0.9.8q:*:*:*:*:*:*:*
     *cpe:2.3:a:openssl:openssl:0.9.8r:*:*:*:*:*:*:*
     *cpe:2.3:a:openssl:openssl:0.9.8s:*:*:*:*:*:*:*
     *cpe:2.3:a:openssl:openssl:0.9.8t:*:*:*:*:*:*:*
     *cpe:2.3:a:openssl:openssl:0.9.8u:*:*:*:*:*:*:*
     *cpe:2.3:a:openssl:openssl:0.9.8v:*:*:*:*:*:*:*
     *cpe:2.3:a:openssl:openssl:0.9.8w:*:*:*:*:*:*:*
     *cpe:2.3:a:openssl:openssl:0.9.8x:*:*:*:*:*:*:*
     *cpe:2.3:a:openssl:openssl:1.0.0:*:*:*:*:*:*:*
     *cpe:2.3:a:openssl:openssl:1.0.0a:*:*:*:*:*:*:*
     *cpe:2.3:a:openssl:openssl:1.0.0b:*:*:*:*:*:*:*
     *cpe:2.3:a:openssl:openssl:1.0.0c:*:*:*:*:*:*:*
     *cpe:2.3:a:openssl:openssl:1.0.0d:*:*:*:*:*:*:*
     *cpe:2.3:a:openssl:openssl:1.0.0e:*:*:*:*:*:*:*
     *cpe:2.3:a:openssl:openssl:1.0.0f:*:*:*:*:*:*:*
     *cpe:2.3:a:openssl:openssl:1.0.0g:*:*:*:*:*:*:*
     *cpe:2.3:a:openssl:openssl:1.0.0i:*:*:*:*:*:*:*
     *cpe:2.3:a:openssl:openssl:1.0.0j:*:*:*:*:*:*:*
     *cpe:2.3:a:openssl:openssl:1.0.1:*:*:*:*:*:*:*
     *cpe:2.3:a:openssl:openssl:1.0.1a:*:*:*:*:*:*:*
     *cpe:2.3:a:openssl:openssl:1.0.1b:*:*:*:*:*:*:*
     *cpe:2.3:a:openssl:openssl:1.0.1c:*:*:*:*:*:*:*
OR
     *cpe:2.3:a:openssl:openssl:*:*:*:*:*:*:*:* versions from (including) 0.9.8 up to (including) 0.9.8x
     *cpe:2.3:a:openssl:openssl:*:*:*:*:*:*:*:* versions from (including) 1.0.0 up to (including) 1.0.0j
     *cpe:2.3:a:openssl:openssl:*:*:*:*:*:*:*:* versions from (including) 1.0.1 up to (including) 1.0.1d
Changed Evaluator Description
Per http://www.openssl.org/news/vulnerabilities.html:
Fixed in OpenSSL 1.0.1d (Affected 1.0.1c, 1.0.1b, 1.0.1a, 1.0.1) 
Fixed in OpenSSL 1.0.0k (Affected 1.0.0j, 1.0.0i, 1.0.0g, 1.0.0f, 1.0.0e, 1.0.0d, 1.0.0c, 1.0.0b, 1.0.0a, 1.0.0) 
Fixed in OpenSSL 0.9.8y (Affected 0.9.8x, 0.9.8w, 0.9.8v, 0.9.8u, 0.9.8t, 0.9.8s, 0.9.8r, 0.9.8q, 0.9.8p, 0.9.8o, 0.9.8n, 0.9.8m, 0.9.8l, 0.9.8k, 0.9.8j, 0.9.8i, 0.9.8h, 0.9.8g, 0.9.8f, 0.9.8d, 0.9.8c, 0.9.8b, 0.9.8a, 0.9.8)
Per http://www.openssl.org/news/vulnerabilities.html:
Fixed in OpenSSL 1.0.1d (Affected 1.0.1c, 1.0.1b, 1.0.1a, 1.0.1) 
Fixed in OpenSSL 1.0.0k (Affected 1.0.0j, 1.0.0i, 1.0.0g, 1.0.0f, 1.0.0e, 1.0.0d, 1.0.0c, 1.0.0b, 1.0.0a, 1.0.0) 
Fixed in OpenSSL 0.9.8y (Affected 0.9.8x, 0.9.8w, 0.9.8v, 0.9.8u, 0.9.8t, 0.9.8s, 0.9.8r, 0.9.8q, 0.9.8p, 0.9.8o, 0.9.8n, 0.9.8m, 0.9.8l, 0.9.8k, 0.9.8j, 0.9.8i, 0.9.8h, 0.9.8g, 0.9.8f, 0.9.8d, 0.9.8c, 0.9.8b, 0.9.8a, 0.9.8)

Affected users should upgrade to OpenSSL 1.0.1e, 1.0.0k or 0.9.8y
(The fix in 1.0.1d wasn't complete, so please use 1.0.1e or later)
Changed Reference Type
http://blog.fuseyism.com/index.php/2013/02/20/security-icedtea-2-1-6-2-2-6-2-3-7-for-openjdk-7-released/ No Types Assigned
http://blog.fuseyism.com/index.php/2013/02/20/security-icedtea-2-1-6-2-2-6-2-3-7-for-openjdk-7-released/ Third Party Advisory
Changed Reference Type
http://lists.apple.com/archives/security-announce/2013/Sep/msg00002.html No Types Assigned
http://lists.apple.com/archives/security-announce/2013/Sep/msg00002.html Mailing List, Third Party Advisory
Changed Reference Type
http://lists.fedoraproject.org/pipermail/package-announce/2013-April/101366.html No Types Assigned
http://lists.fedoraproject.org/pipermail/package-announce/2013-April/101366.html Third Party Advisory
Changed Reference Type
http://lists.opensuse.org/opensuse-security-announce/2013-02/msg00020.html No Types Assigned
http://lists.opensuse.org/opensuse-security-announce/2013-02/msg00020.html Third Party Advisory
Changed Reference Type
http://lists.opensuse.org/opensuse-security-announce/2013-03/msg00000.html No Types Assigned
http://lists.opensuse.org/opensuse-security-announce/2013-03/msg00000.html Third Party Advisory
Changed Reference Type
http://lists.opensuse.org/opensuse-security-announce/2013-03/msg00002.html No Types Assigned
http://lists.opensuse.org/opensuse-security-announce/2013-03/msg00002.html Third Party Advisory
Changed Reference Type
http://lists.opensuse.org/opensuse-security-announce/2013-04/msg00020.html No Types Assigned
http://lists.opensuse.org/opensuse-security-announce/2013-04/msg00020.html Third Party Advisory
Changed Reference Type
http://lists.opensuse.org/opensuse-security-announce/2014-03/msg00001.html No Types Assigned
http://lists.opensuse.org/opensuse-security-announce/2014-03/msg00001.html Third Party Advisory
Changed Reference Type
http://lists.opensuse.org/opensuse-security-announce/2015-03/msg00027.html No Types Assigned
http://lists.opensuse.org/opensuse-security-announce/2015-03/msg00027.html Third Party Advisory
Changed Reference Type
http://lists.opensuse.org/opensuse-security-announce/2016-03/msg00011.html No Types Assigned
http://lists.opensuse.org/opensuse-security-announce/2016-03/msg00011.html Third Party Advisory
Changed Reference Type
http://marc.info/?l=bugtraq&m=136396549913849&w=2 No Types Assigned
http://marc.info/?l=bugtraq&m=136396549913849&w=2 Third Party Advisory
Changed Reference Type
http://marc.info/?l=bugtraq&m=136432043316835&w=2 No Types Assigned
http://marc.info/?l=bugtraq&m=136432043316835&w=2 Third Party Advisory
Changed Reference Type
http://marc.info/?l=bugtraq&m=136439120408139&w=2 No Types Assigned
http://marc.info/?l=bugtraq&m=136439120408139&w=2 Third Party Advisory
Changed Reference Type
http://marc.info/?l=bugtraq&m=136733161405818&w=2 No Types Assigned
http://marc.info/?l=bugtraq&m=136733161405818&w=2 Third Party Advisory
Changed Reference Type
http://marc.info/?l=bugtraq&m=137545771702053&w=2 No Types Assigned
http://marc.info/?l=bugtraq&m=137545771702053&w=2 Third Party Advisory
Changed Reference Type
http://openwall.com/lists/oss-security/2013/02/05/24 No Types Assigned
http://openwall.com/lists/oss-security/2013/02/05/24 Mailing List
Changed Reference Type
http://rhn.redhat.com/errata/RHSA-2013-0587.html No Types Assigned
http://rhn.redhat.com/errata/RHSA-2013-0587.html Third Party Advisory
Changed Reference Type
http://rhn.redhat.com/errata/RHSA-2013-0782.html No Types Assigned
http://rhn.redhat.com/errata/RHSA-2013-0782.html Third Party Advisory
Changed Reference Type
http://rhn.redhat.com/errata/RHSA-2013-0783.html No Types Assigned
http://rhn.redhat.com/errata/RHSA-2013-0783.html Third Party Advisory
Changed Reference Type
http://rhn.redhat.com/errata/RHSA-2013-0833.html No Types Assigned
http://rhn.redhat.com/errata/RHSA-2013-0833.html Third Party Advisory
Changed Reference Type
http://rhn.redhat.com/errata/RHSA-2013-1455.html No Types Assigned
http://rhn.redhat.com/errata/RHSA-2013-1455.html Third Party Advisory
Changed Reference Type
http://rhn.redhat.com/errata/RHSA-2013-1456.html No Types Assigned
http://rhn.redhat.com/errata/RHSA-2013-1456.html Third Party Advisory
Changed Reference Type
http://secunia.com/advisories/53623 No Types Assigned
http://secunia.com/advisories/53623 Third Party Advisory
Changed Reference Type
http://secunia.com/advisories/55108 No Types Assigned
http://secunia.com/advisories/55108 Third Party Advisory
Changed Reference Type
http://secunia.com/advisories/55139 No Types Assigned
http://secunia.com/advisories/55139 Third Party Advisory
Changed Reference Type
http://secunia.com/advisories/55322 No Types Assigned
http://secunia.com/advisories/55322 Third Party Advisory
Changed Reference Type
http://secunia.com/advisories/55350 No Types Assigned
http://secunia.com/advisories/55350 Third Party Advisory
Changed Reference Type
http://secunia.com/advisories/55351 No Types Assigned
http://secunia.com/advisories/55351 Third Party Advisory
Changed Reference Type
http://security.gentoo.org/glsa/glsa-201406-32.xml No Types Assigned
http://security.gentoo.org/glsa/glsa-201406-32.xml Third Party Advisory
Changed Reference Type
http://support.apple.com/kb/HT5880 No Types Assigned
http://support.apple.com/kb/HT5880 Third Party Advisory
Changed Reference Type
http://www-01.ibm.com/support/docview.wss?uid=swg21644047 No Types Assigned
http://www-01.ibm.com/support/docview.wss?uid=swg21644047 Third Party Advisory
Changed Reference Type
http://www.debian.org/security/2013/dsa-2621 No Types Assigned
http://www.debian.org/security/2013/dsa-2621 Third Party Advisory
Changed Reference Type
http://www.debian.org/security/2013/dsa-2622 No Types Assigned
http://www.debian.org/security/2013/dsa-2622 Third Party Advisory
Changed Reference Type
http://www.isg.rhul.ac.uk/tls/TLStiming.pdf No Types Assigned
http://www.isg.rhul.ac.uk/tls/TLStiming.pdf Third Party Advisory
Changed Reference Type
http://www.kb.cert.org/vuls/id/737740 US Government Resource
http://www.kb.cert.org/vuls/id/737740 Third Party Advisory, US Government Resource
Changed Reference Type
http://www.mandriva.com/security/advisories?name=MDVSA-2013:095 No Types Assigned
http://www.mandriva.com/security/advisories?name=MDVSA-2013:095 Third Party Advisory
Changed Reference Type
http://www.matrixssl.org/news.html No Types Assigned
http://www.matrixssl.org/news.html Third Party Advisory
Changed Reference Type
http://www.oracle.com/technetwork/topics/security/javacpufeb2013update-1905892.html No Types Assigned
http://www.oracle.com/technetwork/topics/security/javacpufeb2013update-1905892.html Third Party Advisory
Changed Reference Type
http://www.securityfocus.com/bid/57778 No Types Assigned
http://www.securityfocus.com/bid/57778 Third Party Advisory, VDB Entry
Changed Reference Type
http://www.securitytracker.com/id/1029190 No Types Assigned
http://www.securitytracker.com/id/1029190 Third Party Advisory, VDB Entry
Changed Reference Type
http://www.splunk.com/view/SP-CAAAHXG No Types Assigned
http://www.splunk.com/view/SP-CAAAHXG Third Party Advisory
Changed Reference Type
http://www.ubuntu.com/usn/USN-1735-1 No Types Assigned
http://www.ubuntu.com/usn/USN-1735-1 Third Party Advisory
Changed Reference Type
http://www.us-cert.gov/cas/techalerts/TA13-051A.html US Government Resource
http://www.us-cert.gov/cas/techalerts/TA13-051A.html Third Party Advisory, US Government Resource
Changed Reference Type
https://cert-portal.siemens.com/productcert/pdf/ssa-556833.pdf No Types Assigned
https://cert-portal.siemens.com/productcert/pdf/ssa-556833.pdf Third Party Advisory
Changed Reference Type
https://lists.debian.org/debian-lts-announce/2018/09/msg00029.html No Types Assigned
https://lists.debian.org/debian-lts-announce/2018/09/msg00029.html Third Party Advisory
Changed Reference Type
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A18841 No Types Assigned
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A18841 Tool Signature
Changed Reference Type
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A19016 No Types Assigned
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A19016 Tool Signature
Changed Reference Type
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A19424 No Types Assigned
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A19424 Tool Signature
Changed Reference Type
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A19540 No Types Assigned
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A19540 Tool Signature
Changed Reference Type
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A19608 No Types Assigned
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A19608 Third Party Advisory
Changed Reference Type
https://puppet.com/security/cve/cve-2013-0169 No Types Assigned
https://puppet.com/security/cve/cve-2013-0169 Third Party Advisory
Changed Reference Type
https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US&docId=emr_na-c03883001 No Types Assigned
https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US&docId=emr_na-c03883001 Third Party Advisory
Changed Reference Type
https://wiki.mageia.org/en/Support/Advisories/MGASA-2013-0084 No Types Assigned
https://wiki.mageia.org/en/Support/Advisories/MGASA-2013-0084 Third Party Advisory