U.S. flag   An official website of the United States government
Dot gov

Official websites use .gov
A .gov website belongs to an official government organization in the United States.

Https

Secure .gov websites use HTTPS
A lock (Dot gov) or https:// means you've safely connected to the .gov website. Share sensitive information only on official, secure websites.

Vulnerability Change Records for CVE-2014-7819

Change History

Modified Analysis by NIST 12/18/2018 12:27:13 PM

Action Type Old Value New Value
Added CPE Configuration

								
							
							
						
OR
     *cpe:2.3:a:sprockets_project:sprockets:*:*:*:*:*:*:*:* versions from (including) 2.0.0 up to (excluding) 2.0.5
     *cpe:2.3:a:sprockets_project:sprockets:*:*:*:*:*:*:*:* versions from (including) 2.1.0 up to (excluding) 2.1.4
     *cpe:2.3:a:sprockets_project:sprockets:*:*:*:*:*:*:*:* versions from (including) 2.2.0 up to (excluding) 2.2.3
     *cpe:2.3:a:sprockets_project:sprockets:*:*:*:*:*:*:*:* versions from (including) 2.3.0 up to (excluding) 2.3.3
     *cpe:2.3:a:sprockets_project:sprockets:*:*:*:*:*:*:*:* versions from (including) 2.4.0 up to (excluding) 2.4.6
     *cpe:2.3:a:sprockets_project:sprockets:*:*:*:*:*:*:*:* versions from (including) 2.5.0 up to (excluding) 2.5.1
     *cpe:2.3:a:sprockets_project:sprockets:2.6.0:*:*:*:*:*:*:*
     *cpe:2.3:a:sprockets_project:sprockets:*:*:*:*:*:*:*:* versions from (including) 2.7.0 up to (excluding) 2.7.1
     *cpe:2.3:a:sprockets_project:sprockets:*:*:*:*:*:*:*:* versions from (including) 2.8.0 up to (excluding) 2.8.3
     *cpe:2.3:a:sprockets_project:sprockets:*:*:*:*:*:*:*:* versions from (including) 2.9.0 up to (excluding) 2.9.4
     *cpe:2.3:a:sprockets_project:sprockets:*:*:*:*:*:*:*:* versions from (including) 2.10.0 up to (excluding) 2.10.2
     *cpe:2.3:a:sprockets_project:sprockets:*:*:*:*:*:*:*:* versions from (including) 2.11.0 up to (excluding) 2.11.3
     *cpe:2.3:a:sprockets_project:sprockets:*:*:*:*:*:*:*:* versions from (including) 2.12.0 up to (excluding) 2.12.3
     *cpe:2.3:a:sprockets_project:sprockets:3.0.0:beta1:*:*:*:*:*:*
     *cpe:2.3:a:sprockets_project:sprockets:3.0.0:beta2:*:*:*:*:*:*
Removed CPE Configuration
AND
     OR
          *cpe:2.3:a:sprockets_project:sprockets:*:*:*:*:*:*:*:* versions up to (including) 2.0.5
          *cpe:2.3:a:sprockets_project:sprockets:*:*:*:*:*:*:*:* versions up to (including) 2.1.3
          *cpe:2.3:a:sprockets_project:sprockets:*:*:*:*:*:*:*:* versions up to (including) 2.2.2
          *cpe:2.3:a:sprockets_project:sprockets:*:*:*:*:*:*:*:* versions up to (including) 2.3.2
          *cpe:2.3:a:sprockets_project:sprockets:*:*:*:*:*:*:*:* versions up to (including) 2.4.5
          *cpe:2.3:a:sprockets_project:sprockets:2.5.0:*:*:*:*:*:*:*
          *cpe:2.3:a:sprockets_project:sprockets:2.6.0:*:*:*:*:*:*:*
          *cpe:2.3:a:sprockets_project:sprockets:2.7.0:*:*:*:*:*:*:*
          *cpe:2.3:a:sprockets_project:sprockets:*:*:*:*:*:*:*:* versions up to (including) 2.8.2
          *cpe:2.3:a:sprockets_project:sprockets:*:*:*:*:*:*:*:* versions up to (including) 2.9.3
          *cpe:2.3:a:sprockets_project:sprockets:*:*:*:*:*:*:*:* versions up to (including) 2.10.1
          *cpe:2.3:a:sprockets_project:sprockets:*:*:*:*:*:*:*:* versions up to (including) 2.11.2
          *cpe:2.3:a:sprockets_project:sprockets:*:*:*:*:*:*:*:* versions up to (including) 2.12.2
          *cpe:2.3:a:sprockets_project:sprockets:3.0.0:beta.2:*:*:*:*:*:*
     OR
          *cpe:2.3:a:rubyonrails:ruby_on_rails:*:*:*:*:*:*:*:* versions up to (including) 3.2.17
          *cpe:2.3:a:rubyonrails:ruby_on_rails:*:*:*:*:*:*:*:* versions up to (including) 4.1.7

								
						
Changed Reference Type
http://lists.opensuse.org/opensuse-updates/2014-11/msg00103.html No Types Assigned
http://lists.opensuse.org/opensuse-updates/2014-11/msg00103.html Mailing List, Third Party Advisory
Changed Reference Type
http://lists.opensuse.org/opensuse-updates/2014-11/msg00105.html No Types Assigned
http://lists.opensuse.org/opensuse-updates/2014-11/msg00105.html Mailing List, Third Party Advisory
Changed Reference Type
http://lists.opensuse.org/opensuse-updates/2014-11/msg00110.html No Types Assigned
http://lists.opensuse.org/opensuse-updates/2014-11/msg00110.html Mailing List, Third Party Advisory
Changed Reference Type
http://lists.opensuse.org/opensuse-updates/2014-11/msg00111.html No Types Assigned
http://lists.opensuse.org/opensuse-updates/2014-11/msg00111.html Mailing List, Third Party Advisory
Changed Reference Type
https://groups.google.com/forum/message/raw?msg=rubyonrails-security/doAVp0YaTqY/aHFngBqNBoAJ No Types Assigned
https://groups.google.com/forum/message/raw?msg=rubyonrails-security/doAVp0YaTqY/aHFngBqNBoAJ Third Party Advisory
Changed Reference Type
https://groups.google.com/forum/message/raw?msg=rubyonrails-security/wQBeGXqGs3E/JqUMB6fhh3gJ No Types Assigned
https://groups.google.com/forum/message/raw?msg=rubyonrails-security/wQBeGXqGs3E/JqUMB6fhh3gJ Third Party Advisory