U.S. flag   An official website of the United States government
Dot gov

Official websites use .gov
A .gov website belongs to an official government organization in the United States.

Https

Secure .gov websites use HTTPS
A lock (Dot gov) or https:// means you've safely connected to the .gov website. Share sensitive information only on official, secure websites.

Vulnerability Change Records for CVE-2010-3870

Change History

Modified Analysis by NIST 8/16/2022 9:28:26 AM

Action Type Old Value New Value
Added CPE Configuration

								
							
							
						
OR
     *cpe:2.3:o:canonical:ubuntu_linux:6.06:*:*:*:*:*:*:*
     *cpe:2.3:o:canonical:ubuntu_linux:8.04:*:*:*:-:*:*:*
     *cpe:2.3:o:canonical:ubuntu_linux:9.10:*:*:*:*:*:*:*
     *cpe:2.3:o:canonical:ubuntu_linux:10.04:*:*:*:-:*:*:*
     *cpe:2.3:o:canonical:ubuntu_linux:10.10:*:*:*:*:*:*:*
Changed CPE Configuration
OR
     *cpe:2.3:a:php:php:1.0:*:*:*:*:*:*:*
     *cpe:2.3:a:php:php:2.0:*:*:*:*:*:*:*
     *cpe:2.3:a:php:php:2.0b10:*:*:*:*:*:*:*
     *cpe:2.3:a:php:php:3.0:*:*:*:*:*:*:*
     *cpe:2.3:a:php:php:3.0.1:*:*:*:*:*:*:*
     *cpe:2.3:a:php:php:3.0.2:*:*:*:*:*:*:*
     *cpe:2.3:a:php:php:3.0.3:*:*:*:*:*:*:*
     *cpe:2.3:a:php:php:3.0.4:*:*:*:*:*:*:*
     *cpe:2.3:a:php:php:3.0.5:*:*:*:*:*:*:*
     *cpe:2.3:a:php:php:3.0.6:*:*:*:*:*:*:*
     *cpe:2.3:a:php:php:3.0.7:*:*:*:*:*:*:*
     *cpe:2.3:a:php:php:3.0.8:*:*:*:*:*:*:*
     *cpe:2.3:a:php:php:3.0.9:*:*:*:*:*:*:*
     *cpe:2.3:a:php:php:3.0.10:*:*:*:*:*:*:*
     *cpe:2.3:a:php:php:3.0.11:*:*:*:*:*:*:*
     *cpe:2.3:a:php:php:3.0.12:*:*:*:*:*:*:*
     *cpe:2.3:a:php:php:3.0.13:*:*:*:*:*:*:*
     *cpe:2.3:a:php:php:3.0.14:*:*:*:*:*:*:*
     *cpe:2.3:a:php:php:3.0.15:*:*:*:*:*:*:*
     *cpe:2.3:a:php:php:3.0.16:*:*:*:*:*:*:*
     *cpe:2.3:a:php:php:3.0.17:*:*:*:*:*:*:*
     *cpe:2.3:a:php:php:3.0.18:*:*:*:*:*:*:*
     *cpe:2.3:a:php:php:4.0:*:*:*:*:*:*:*
     *cpe:2.3:a:php:php:4.0:beta1:*:*:*:*:*:*
     *cpe:2.3:a:php:php:4.0:beta2:*:*:*:*:*:*
     *cpe:2.3:a:php:php:4.0:beta3:*:*:*:*:*:*
     *cpe:2.3:a:php:php:4.0:beta4:*:*:*:*:*:*
     *cpe:2.3:a:php:php:4.0:beta_4_patch1:*:*:*:*:*:*
     *cpe:2.3:a:php:php:4.0.0:*:*:*:*:*:*:*
     *cpe:2.3:a:php:php:4.0.1:*:*:*:*:*:*:*
     *cpe:2.3:a:php:php:4.0.2:*:*:*:*:*:*:*
     *cpe:2.3:a:php:php:4.0.3:*:*:*:*:*:*:*
     *cpe:2.3:a:php:php:4.0.4:*:*:*:*:*:*:*
     *cpe:2.3:a:php:php:4.0.5:*:*:*:*:*:*:*
     *cpe:2.3:a:php:php:4.0.6:*:*:*:*:*:*:*
     *cpe:2.3:a:php:php:4.0.7:*:*:*:*:*:*:*
     *cpe:2.3:a:php:php:4.1.0:*:*:*:*:*:*:*
     *cpe:2.3:a:php:php:4.1.1:*:*:*:*:*:*:*
     *cpe:2.3:a:php:php:4.1.2:*:*:*:*:*:*:*
     *cpe:2.3:a:php:php:4.2.0:*:*:*:*:*:*:*
     *cpe:2.3:a:php:php:4.2.1:*:*:*:*:*:*:*
     *cpe:2.3:a:php:php:4.2.2:*:*:*:*:*:*:*
     *cpe:2.3:a:php:php:4.2.3:*:*:*:*:*:*:*
     *cpe:2.3:a:php:php:4.3.0:*:*:*:*:*:*:*
     *cpe:2.3:a:php:php:4.3.1:*:*:*:*:*:*:*
     *cpe:2.3:a:php:php:4.3.2:*:*:*:*:*:*:*
     *cpe:2.3:a:php:php:4.3.3:*:*:*:*:*:*:*
     *cpe:2.3:a:php:php:4.3.4:*:*:*:*:*:*:*
     *cpe:2.3:a:php:php:4.3.5:*:*:*:*:*:*:*
     *cpe:2.3:a:php:php:4.3.6:*:*:*:*:*:*:*
     *cpe:2.3:a:php:php:4.3.7:*:*:*:*:*:*:*
     *cpe:2.3:a:php:php:4.3.8:*:*:*:*:*:*:*
     *cpe:2.3:a:php:php:4.3.9:*:*:*:*:*:*:*
     *cpe:2.3:a:php:php:4.3.10:*:*:*:*:*:*:*
     *cpe:2.3:a:php:php:4.3.11:*:*:*:*:*:*:*
     *cpe:2.3:a:php:php:4.4.0:*:*:*:*:*:*:*
     *cpe:2.3:a:php:php:4.4.1:*:*:*:*:*:*:*
     *cpe:2.3:a:php:php:4.4.2:*:*:*:*:*:*:*
     *cpe:2.3:a:php:php:4.4.3:*:*:*:*:*:*:*
     *cpe:2.3:a:php:php:4.4.4:*:*:*:*:*:*:*
     *cpe:2.3:a:php:php:4.4.5:*:*:*:*:*:*:*
     *cpe:2.3:a:php:php:4.4.6:*:*:*:*:*:*:*
     *cpe:2.3:a:php:php:4.4.7:*:*:*:*:*:*:*
     *cpe:2.3:a:php:php:4.4.8:*:*:*:*:*:*:*
     *cpe:2.3:a:php:php:4.4.9:*:*:*:*:*:*:*
     *cpe:2.3:a:php:php:5.0.0:*:*:*:*:*:*:*
     *cpe:2.3:a:php:php:5.0.0:beta1:*:*:*:*:*:*
     *cpe:2.3:a:php:php:5.0.0:beta2:*:*:*:*:*:*
     *cpe:2.3:a:php:php:5.0.0:beta3:*:*:*:*:*:*
     *cpe:2.3:a:php:php:5.0.0:beta4:*:*:*:*:*:*
     *cpe:2.3:a:php:php:5.0.0:rc1:*:*:*:*:*:*
     *cpe:2.3:a:php:php:5.0.0:rc2:*:*:*:*:*:*
     *cpe:2.3:a:php:php:5.0.0:rc3:*:*:*:*:*:*
     *cpe:2.3:a:php:php:5.0.1:*:*:*:*:*:*:*
     *cpe:2.3:a:php:php:5.0.2:*:*:*:*:*:*:*
     *cpe:2.3:a:php:php:5.0.3:*:*:*:*:*:*:*
     *cpe:2.3:a:php:php:5.0.4:*:*:*:*:*:*:*
     *cpe:2.3:a:php:php:5.0.5:*:*:*:*:*:*:*
     *cpe:2.3:a:php:php:5.1.0:*:*:*:*:*:*:*
     *cpe:2.3:a:php:php:5.1.1:*:*:*:*:*:*:*
     *cpe:2.3:a:php:php:5.1.2:*:*:*:*:*:*:*
     *cpe:2.3:a:php:php:5.1.3:*:*:*:*:*:*:*
     *cpe:2.3:a:php:php:5.1.4:*:*:*:*:*:*:*
     *cpe:2.3:a:php:php:5.1.5:*:*:*:*:*:*:*
     *cpe:2.3:a:php:php:5.1.6:*:*:*:*:*:*:*
     *cpe:2.3:a:php:php:5.2.0:*:*:*:*:*:*:*
     *cpe:2.3:a:php:php:5.2.1:*:*:*:*:*:*:*
     *cpe:2.3:a:php:php:5.2.2:*:*:*:*:*:*:*
     *cpe:2.3:a:php:php:5.2.3:*:*:*:*:*:*:*
     *cpe:2.3:a:php:php:5.2.4:*:*:*:*:*:*:*
     *cpe:2.3:a:php:php:5.2.4:*:windows:*:*:*:*:*
     *cpe:2.3:a:php:php:5.2.5:*:*:*:*:*:*:*
     *cpe:2.3:a:php:php:5.2.6:*:*:*:*:*:*:*
     *cpe:2.3:a:php:php:5.2.7:*:*:*:*:*:*:*
     *cpe:2.3:a:php:php:5.2.8:*:*:*:*:*:*:*
     *cpe:2.3:a:php:php:5.2.9:*:*:*:*:*:*:*
     *cpe:2.3:a:php:php:5.2.10:*:*:*:*:*:*:*
     *cpe:2.3:a:php:php:5.2.11:*:*:*:*:*:*:*
     *cpe:2.3:a:php:php:5.2.12:*:*:*:*:*:*:*
     *cpe:2.3:a:php:php:5.2.13:*:*:*:*:*:*:*
     *cpe:2.3:a:php:php:5.2.14:*:*:*:*:*:*:*
     *cpe:2.3:a:php:php:5.2.15:*:*:*:*:*:*:*
     *cpe:2.3:a:php:php:5.2.16:*:*:*:*:*:*:*
     *cpe:2.3:a:php:php:5.2.17:*:*:*:*:*:*:*
     *cpe:2.3:a:php:php:5.3.0:*:*:*:*:*:*:*
     *cpe:2.3:a:php:php:5.3.1:*:*:*:*:*:*:*
     *cpe:2.3:a:php:php:5.3.2:*:*:*:*:*:*:*
     *cpe:2.3:a:php:php:*:*:*:*:*:*:*:* versions up to (including) 5.3.3
OR
     *cpe:2.3:a:php:php:*:*:*:*:*:*:*:* versions up to (excluding) 5.2.14
     *cpe:2.3:a:php:php:*:*:*:*:*:*:*:* versions from (including) 5.3.0 up to (excluding) 5.3.4
Changed Reference Type
http://bugs.php.net/bug.php?id=48230 Exploit
http://bugs.php.net/bug.php?id=48230 Exploit, Vendor Advisory
Changed Reference Type
http://bugs.php.net/bug.php?id=49687 No Types Assigned
http://bugs.php.net/bug.php?id=49687 Exploit, Vendor Advisory
Changed Reference Type
http://lists.apple.com/archives/security-announce/2011/Mar/msg00006.html No Types Assigned
http://lists.apple.com/archives/security-announce/2011/Mar/msg00006.html Mailing List, Third Party Advisory
Changed Reference Type
http://lists.fedoraproject.org/pipermail/package-announce/2011-January/052836.html No Types Assigned
http://lists.fedoraproject.org/pipermail/package-announce/2011-January/052836.html Mailing List, Third Party Advisory
Changed Reference Type
http://lists.fedoraproject.org/pipermail/package-announce/2011-January/052845.html No Types Assigned
http://lists.fedoraproject.org/pipermail/package-announce/2011-January/052845.html Mailing List, Third Party Advisory
Changed Reference Type
http://lists.opensuse.org/opensuse-security-announce/2010-12/msg00000.html No Types Assigned
http://lists.opensuse.org/opensuse-security-announce/2010-12/msg00000.html Mailing List, Third Party Advisory
Changed Reference Type
http://marc.info/?l=bugtraq&m=133469208622507&w=2 No Types Assigned
http://marc.info/?l=bugtraq&m=133469208622507&w=2 Mailing List, Third Party Advisory
Changed Reference Type
http://secunia.com/advisories/42410 No Types Assigned
http://secunia.com/advisories/42410 Third Party Advisory
Changed Reference Type
http://secunia.com/advisories/42812 No Types Assigned
http://secunia.com/advisories/42812 Third Party Advisory
Changed Reference Type
http://sirdarckcat.blogspot.com/2009/10/couple-of-unicode-issues-on-php-and.html Exploit
http://sirdarckcat.blogspot.com/2009/10/couple-of-unicode-issues-on-php-and.html Exploit, Third Party Advisory
Changed Reference Type
http://support.apple.com/kb/HT4581 No Types Assigned
http://support.apple.com/kb/HT4581 Third Party Advisory
Changed Reference Type
http://svn.php.net/viewvc?view=revision&revision=304959 Patch
http://svn.php.net/viewvc?view=revision&revision=304959 Patch, Vendor Advisory
Changed Reference Type
http://us2.php.net/manual/en/function.utf8-decode.php#83935 Exploit
http://us2.php.net/manual/en/function.utf8-decode.php#83935 Exploit, Vendor Advisory
Changed Reference Type
http://www.acunetix.com/blog/web-security-articles/security-risks-associated-with-utf8_decode/ Exploit
http://www.acunetix.com/blog/web-security-articles/security-risks-associated-with-utf8_decode/ Exploit, Third Party Advisory
Changed Reference Type
http://www.blackhat.com/presentations/bh-usa-09/VELANAVA/BHUSA09-VelaNava-FavoriteXSS-SLIDES.pdf Exploit
http://www.blackhat.com/presentations/bh-usa-09/VELANAVA/BHUSA09-VelaNava-FavoriteXSS-SLIDES.pdf Exploit, Third Party Advisory
Changed Reference Type
http://www.mandriva.com/en/security/advisories?name=MDVSA-2010:224 No Types Assigned
http://www.mandriva.com/en/security/advisories?name=MDVSA-2010:224 Third Party Advisory
Changed Reference Type
http://www.openwall.com/lists/oss-security/2010/11/02/1 No Types Assigned
http://www.openwall.com/lists/oss-security/2010/11/02/1 Mailing List, Third Party Advisory
Changed Reference Type
http://www.openwall.com/lists/oss-security/2010/11/02/11 No Types Assigned
http://www.openwall.com/lists/oss-security/2010/11/02/11 Mailing List, Third Party Advisory
Changed Reference Type
http://www.openwall.com/lists/oss-security/2010/11/02/2 No Types Assigned
http://www.openwall.com/lists/oss-security/2010/11/02/2 Mailing List, Third Party Advisory
Changed Reference Type
http://www.openwall.com/lists/oss-security/2010/11/02/4 No Types Assigned
http://www.openwall.com/lists/oss-security/2010/11/02/4 Mailing List, Third Party Advisory
Changed Reference Type
http://www.openwall.com/lists/oss-security/2010/11/02/6 No Types Assigned
http://www.openwall.com/lists/oss-security/2010/11/02/6 Mailing List, Third Party Advisory
Changed Reference Type
http://www.openwall.com/lists/oss-security/2010/11/02/8 No Types Assigned
http://www.openwall.com/lists/oss-security/2010/11/02/8 Mailing List, Third Party Advisory
Changed Reference Type
http://www.openwall.com/lists/oss-security/2010/11/03/1 No Types Assigned
http://www.openwall.com/lists/oss-security/2010/11/03/1 Mailing List, Third Party Advisory
Changed Reference Type
http://www.php.net/ChangeLog-5.php No Types Assigned
http://www.php.net/ChangeLog-5.php Vendor Advisory
Changed Reference Type
http://www.redhat.com/support/errata/RHSA-2010-0919.html No Types Assigned
http://www.redhat.com/support/errata/RHSA-2010-0919.html Third Party Advisory
Changed Reference Type
http://www.redhat.com/support/errata/RHSA-2011-0195.html No Types Assigned
http://www.redhat.com/support/errata/RHSA-2011-0195.html Third Party Advisory
Changed Reference Type
http://www.securityfocus.com/bid/44605 No Types Assigned
http://www.securityfocus.com/bid/44605 Third Party Advisory, VDB Entry
Changed Reference Type
http://www.securitytracker.com/id?1024797 No Types Assigned
http://www.securitytracker.com/id?1024797 Third Party Advisory, VDB Entry
Changed Reference Type
http://www.ubuntu.com/usn/USN-1042-1 No Types Assigned
http://www.ubuntu.com/usn/USN-1042-1 Third Party Advisory
Changed Reference Type
http://www.vupen.com/english/advisories/2010/3081 No Types Assigned
http://www.vupen.com/english/advisories/2010/3081 Third Party Advisory
Changed Reference Type
http://www.vupen.com/english/advisories/2011/0020 No Types Assigned
http://www.vupen.com/english/advisories/2011/0020 Third Party Advisory
Changed Reference Type
http://www.vupen.com/english/advisories/2011/0021 No Types Assigned
http://www.vupen.com/english/advisories/2011/0021 Third Party Advisory
Changed Reference Type
http://www.vupen.com/english/advisories/2011/0077 No Types Assigned
http://www.vupen.com/english/advisories/2011/0077 Third Party Advisory