CVE-2014-3566 (CNNVD-201410-267)

LOW
中文标题:
OpenSSL 加密问题漏洞
英文标题:
The SSL protocol 3.0, as used in OpenSSL through 1.0.1i and other products, uses nondeterministic CB...
CVSS分数: 3.4
发布时间: 2014-10-15 00:00:00
漏洞类型: 加密问题
状态: PUBLISHED
数据质量分数: 0.30
数据版本: v3
漏洞描述
中文描述:

OpenSSL是OpenSSL团队的一个开源的能够实现安全套接层(SSLv2/v3)和安全传输层(TLSv1)协议的通用加密库。该产品支持多种加密算法,包括对称密码、哈希算法、安全散列算法等。 OpenSSL 1.0.1i版本及之前版本存在加密问题漏洞,该漏洞源于程序使用非确定性的CBC填充。攻击者利用该漏洞实施中间人攻击,获取明文数据。

英文描述:

The SSL protocol 3.0, as used in OpenSSL through 1.0.1i and other products, uses nondeterministic CBC padding, which makes it easier for man-in-the-middle attackers to obtain cleartext data via a padding-oracle attack, aka the "POODLE" issue.

CWE类型:
CWE-310
标签:
(暂无数据)
受影响产品
厂商 产品 版本 版本范围 平台 CPE
redhat enterprise_linux 5 - - cpe:2.3:o:redhat:enterprise_linux:5:*:*:*:*:*:*:*
redhat enterprise_linux_desktop 6.0 - - cpe:2.3:o:redhat:enterprise_linux_desktop:6.0:*:*:*:*:*:*:*
redhat enterprise_linux_desktop 7.0 - - cpe:2.3:o:redhat:enterprise_linux_desktop:7.0:*:*:*:*:*:*:*
redhat enterprise_linux_desktop_supplementary 5.0 - - cpe:2.3:o:redhat:enterprise_linux_desktop_supplementary:5.0:*:*:*:*:*:*:*
redhat enterprise_linux_desktop_supplementary 6.0 - - cpe:2.3:o:redhat:enterprise_linux_desktop_supplementary:6.0:*:*:*:*:*:*:*
redhat enterprise_linux_server 6.0 - - cpe:2.3:o:redhat:enterprise_linux_server:6.0:*:*:*:*:*:*:*
redhat enterprise_linux_server 7.0 - - cpe:2.3:o:redhat:enterprise_linux_server:7.0:*:*:*:*:*:*:*
redhat enterprise_linux_server_supplementary 5.0 - - cpe:2.3:o:redhat:enterprise_linux_server_supplementary:5.0:*:*:*:*:*:*:*
redhat enterprise_linux_server_supplementary 6.0 - - cpe:2.3:o:redhat:enterprise_linux_server_supplementary:6.0:*:*:*:*:*:*:*
redhat enterprise_linux_server_supplementary 7.0 - - cpe:2.3:o:redhat:enterprise_linux_server_supplementary:7.0:*:*:*:*:*:*:*
redhat enterprise_linux_workstation 6.0 - - cpe:2.3:o:redhat:enterprise_linux_workstation:6.0:*:*:*:*:*:*:*
redhat enterprise_linux_workstation 7.0 - - cpe:2.3:o:redhat:enterprise_linux_workstation:7.0:*:*:*:*:*:*:*
redhat enterprise_linux_workstation_supplementary 6.0 - - cpe:2.3:o:redhat:enterprise_linux_workstation_supplementary:6.0:*:*:*:*:*:*:*
redhat enterprise_linux_workstation_supplementary 7.0 - - cpe:2.3:o:redhat:enterprise_linux_workstation_supplementary:7.0:*:*:*:*:*:*:*
ibm aix 5.3 - - cpe:2.3:o:ibm:aix:5.3:*:*:*:*:*:*:*
ibm aix 6.1 - - cpe:2.3:o:ibm:aix:6.1:*:*:*:*:*:*:*
ibm aix 7.1 - - cpe:2.3:o:ibm:aix:7.1:*:*:*:*:*:*:*
apple mac_os_x * - - cpe:2.3:o:apple:mac_os_x:*:*:*:*:*:*:*:*
mageia mageia 3.0 - - cpe:2.3:o:mageia:mageia:3.0:*:*:*:*:*:*:*
mageia mageia 4.0 - - cpe:2.3:o:mageia:mageia:4.0:*:*:*:*:*:*:*
novell suse_linux_enterprise_desktop 9.0 - - cpe:2.3:o:novell:suse_linux_enterprise_desktop:9.0:*:*:*:*:*:*:*
novell suse_linux_enterprise_desktop 10.0 - - cpe:2.3:o:novell:suse_linux_enterprise_desktop:10.0:*:*:*:*:*:*:*
novell suse_linux_enterprise_desktop 11.0 - - cpe:2.3:o:novell:suse_linux_enterprise_desktop:11.0:*:*:*:*:*:*:*
novell suse_linux_enterprise_desktop 12.0 - - cpe:2.3:o:novell:suse_linux_enterprise_desktop:12.0:*:*:*:*:*:*:*
novell suse_linux_enterprise_software_development_kit 11.0 - - cpe:2.3:a:novell:suse_linux_enterprise_software_development_kit:11.0:sp3:*:*:*:*:*:*
novell suse_linux_enterprise_software_development_kit 12.0 - - cpe:2.3:a:novell:suse_linux_enterprise_software_development_kit:12.0:*:*:*:*:*:*:*
novell suse_linux_enterprise_server 11.0 - - cpe:2.3:o:novell:suse_linux_enterprise_server:11.0:sp3:*:*:*:*:*:*
novell suse_linux_enterprise_server 12.0 - - cpe:2.3:o:novell:suse_linux_enterprise_server:12.0:*:*:*:*:*:*:*
opensuse opensuse 12.3 - - cpe:2.3:o:opensuse:opensuse:12.3:*:*:*:*:*:*:*
opensuse opensuse 13.1 - - cpe:2.3:o:opensuse:opensuse:13.1:*:*:*:*:*:*:*
fedoraproject fedora 19 - - cpe:2.3:o:fedoraproject:fedora:19:*:*:*:*:*:*:*
fedoraproject fedora 20 - - cpe:2.3:o:fedoraproject:fedora:20:*:*:*:*:*:*:*
fedoraproject fedora 21 - - cpe:2.3:o:fedoraproject:fedora:21:*:*:*:*:*:*:*
openssl openssl 0.9.8 - - cpe:2.3:a:openssl:openssl:0.9.8:*:*:*:*:*:*:*
openssl openssl 0.9.8a - - cpe:2.3:a:openssl:openssl:0.9.8a:*:*:*:*:*:*:*
openssl openssl 0.9.8b - - cpe:2.3:a:openssl:openssl:0.9.8b:*:*:*:*:*:*:*
openssl openssl 0.9.8c - - cpe:2.3:a:openssl:openssl:0.9.8c:*:*:*:*:*:*:*
openssl openssl 0.9.8d - - cpe:2.3:a:openssl:openssl:0.9.8d:*:*:*:*:*:*:*
openssl openssl 0.9.8e - - cpe:2.3:a:openssl:openssl:0.9.8e:*:*:*:*:*:*:*
openssl openssl 0.9.8f - - cpe:2.3:a:openssl:openssl:0.9.8f:*:*:*:*:*:*:*
openssl openssl 0.9.8g - - cpe:2.3:a:openssl:openssl:0.9.8g:*:*:*:*:*:*:*
openssl openssl 0.9.8h - - cpe:2.3:a:openssl:openssl:0.9.8h:*:*:*:*:*:*:*
openssl openssl 0.9.8i - - cpe:2.3:a:openssl:openssl:0.9.8i:*:*:*:*:*:*:*
openssl openssl 0.9.8j - - cpe:2.3:a:openssl:openssl:0.9.8j:*:*:*:*:*:*:*
openssl openssl 0.9.8k - - cpe:2.3:a:openssl:openssl:0.9.8k:*:*:*:*:*:*:*
openssl openssl 0.9.8l - - cpe:2.3:a:openssl:openssl:0.9.8l:*:*:*:*:*:*:*
openssl openssl 0.9.8m - - cpe:2.3:a:openssl:openssl:0.9.8m:*:*:*:*:*:*:*
openssl openssl 0.9.8n - - cpe:2.3:a:openssl:openssl:0.9.8n:*:*:*:*:*:*:*
openssl openssl 0.9.8o - - cpe:2.3:a:openssl:openssl:0.9.8o:*:*:*:*:*:*:*
openssl openssl 0.9.8p - - cpe:2.3:a:openssl:openssl:0.9.8p:*:*:*:*:*:*:*
openssl openssl 0.9.8q - - cpe:2.3:a:openssl:openssl:0.9.8q:*:*:*:*:*:*:*
openssl openssl 0.9.8r - - cpe:2.3:a:openssl:openssl:0.9.8r:*:*:*:*:*:*:*
openssl openssl 0.9.8s - - cpe:2.3:a:openssl:openssl:0.9.8s:*:*:*:*:*:*:*
openssl openssl 0.9.8t - - cpe:2.3:a:openssl:openssl:0.9.8t:*:*:*:*:*:*:*
openssl openssl 0.9.8u - - cpe:2.3:a:openssl:openssl:0.9.8u:*:*:*:*:*:*:*
openssl openssl 0.9.8v - - cpe:2.3:a:openssl:openssl:0.9.8v:*:*:*:*:*:*:*
openssl openssl 0.9.8w - - cpe:2.3:a:openssl:openssl:0.9.8w:*:*:*:*:*:*:*
openssl openssl 0.9.8x - - cpe:2.3:a:openssl:openssl:0.9.8x:*:*:*:*:*:*:*
openssl openssl 0.9.8y - - cpe:2.3:a:openssl:openssl:0.9.8y:*:*:*:*:*:*:*
openssl openssl 0.9.8z - - cpe:2.3:a:openssl:openssl:0.9.8z:*:*:*:*:*:*:*
openssl openssl 0.9.8za - - cpe:2.3:a:openssl:openssl:0.9.8za:*:*:*:*:*:*:*
openssl openssl 0.9.8zb - - cpe:2.3:a:openssl:openssl:0.9.8zb:*:*:*:*:*:*:*
openssl openssl 1.0.0 - - cpe:2.3:a:openssl:openssl:1.0.0:*:*:*:*:*:*:*
openssl openssl 1.0.0a - - cpe:2.3:a:openssl:openssl:1.0.0a:*:*:*:*:*:*:*
openssl openssl 1.0.0b - - cpe:2.3:a:openssl:openssl:1.0.0b:*:*:*:*:*:*:*
openssl openssl 1.0.0c - - cpe:2.3:a:openssl:openssl:1.0.0c:*:*:*:*:*:*:*
openssl openssl 1.0.0d - - cpe:2.3:a:openssl:openssl:1.0.0d:*:*:*:*:*:*:*
openssl openssl 1.0.0e - - cpe:2.3:a:openssl:openssl:1.0.0e:*:*:*:*:*:*:*
openssl openssl 1.0.0f - - cpe:2.3:a:openssl:openssl:1.0.0f:*:*:*:*:*:*:*
openssl openssl 1.0.0g - - cpe:2.3:a:openssl:openssl:1.0.0g:*:*:*:*:*:*:*
openssl openssl 1.0.0h - - cpe:2.3:a:openssl:openssl:1.0.0h:*:*:*:*:*:*:*
openssl openssl 1.0.0i - - cpe:2.3:a:openssl:openssl:1.0.0i:*:*:*:*:*:*:*
openssl openssl 1.0.0j - - cpe:2.3:a:openssl:openssl:1.0.0j:*:*:*:*:*:*:*
openssl openssl 1.0.0k - - cpe:2.3:a:openssl:openssl:1.0.0k:*:*:*:*:*:*:*
openssl openssl 1.0.0l - - cpe:2.3:a:openssl:openssl:1.0.0l:*:*:*:*:*:*:*
openssl openssl 1.0.0m - - cpe:2.3:a:openssl:openssl:1.0.0m:*:*:*:*:*:*:*
openssl openssl 1.0.0n - - cpe:2.3:a:openssl:openssl:1.0.0n:*:*:*:*:*:*:*
openssl openssl 1.0.1 - - cpe:2.3:a:openssl:openssl:1.0.1:*:*:*:*:*:*:*
openssl openssl 1.0.1a - - cpe:2.3:a:openssl:openssl:1.0.1a:*:*:*:*:*:*:*
openssl openssl 1.0.1b - - cpe:2.3:a:openssl:openssl:1.0.1b:*:*:*:*:*:*:*
openssl openssl 1.0.1c - - cpe:2.3:a:openssl:openssl:1.0.1c:*:*:*:*:*:*:*
openssl openssl 1.0.1d - - cpe:2.3:a:openssl:openssl:1.0.1d:*:*:*:*:*:*:*
openssl openssl 1.0.1e - - cpe:2.3:a:openssl:openssl:1.0.1e:*:*:*:*:*:*:*
openssl openssl 1.0.1f - - cpe:2.3:a:openssl:openssl:1.0.1f:*:*:*:*:*:*:*
openssl openssl 1.0.1g - - cpe:2.3:a:openssl:openssl:1.0.1g:*:*:*:*:*:*:*
openssl openssl 1.0.1h - - cpe:2.3:a:openssl:openssl:1.0.1h:*:*:*:*:*:*:*
openssl openssl 1.0.1i - - cpe:2.3:a:openssl:openssl:1.0.1i:*:*:*:*:*:*:*
ibm vios 2.2.0.10 - - cpe:2.3:a:ibm:vios:2.2.0.10:*:*:*:*:*:*:*
ibm vios 2.2.0.11 - - cpe:2.3:a:ibm:vios:2.2.0.11:*:*:*:*:*:*:*
ibm vios 2.2.0.12 - - cpe:2.3:a:ibm:vios:2.2.0.12:*:*:*:*:*:*:*
ibm vios 2.2.0.13 - - cpe:2.3:a:ibm:vios:2.2.0.13:*:*:*:*:*:*:*
ibm vios 2.2.1.0 - - cpe:2.3:a:ibm:vios:2.2.1.0:*:*:*:*:*:*:*
ibm vios 2.2.1.1 - - cpe:2.3:a:ibm:vios:2.2.1.1:*:*:*:*:*:*:*
ibm vios 2.2.1.3 - - cpe:2.3:a:ibm:vios:2.2.1.3:*:*:*:*:*:*:*
ibm vios 2.2.1.4 - - cpe:2.3:a:ibm:vios:2.2.1.4:*:*:*:*:*:*:*
ibm vios 2.2.1.5 - - cpe:2.3:a:ibm:vios:2.2.1.5:*:*:*:*:*:*:*
ibm vios 2.2.1.6 - - cpe:2.3:a:ibm:vios:2.2.1.6:*:*:*:*:*:*:*
ibm vios 2.2.1.7 - - cpe:2.3:a:ibm:vios:2.2.1.7:*:*:*:*:*:*:*
ibm vios 2.2.1.8 - - cpe:2.3:a:ibm:vios:2.2.1.8:*:*:*:*:*:*:*
ibm vios 2.2.1.9 - - cpe:2.3:a:ibm:vios:2.2.1.9:*:*:*:*:*:*:*
ibm vios 2.2.2.0 - - cpe:2.3:a:ibm:vios:2.2.2.0:*:*:*:*:*:*:*
ibm vios 2.2.2.1 - - cpe:2.3:a:ibm:vios:2.2.2.1:*:*:*:*:*:*:*
ibm vios 2.2.2.2 - - cpe:2.3:a:ibm:vios:2.2.2.2:*:*:*:*:*:*:*
ibm vios 2.2.2.3 - - cpe:2.3:a:ibm:vios:2.2.2.3:*:*:*:*:*:*:*
ibm vios 2.2.2.4 - - cpe:2.3:a:ibm:vios:2.2.2.4:*:*:*:*:*:*:*
ibm vios 2.2.2.5 - - cpe:2.3:a:ibm:vios:2.2.2.5:*:*:*:*:*:*:*
ibm vios 2.2.3.0 - - cpe:2.3:a:ibm:vios:2.2.3.0:*:*:*:*:*:*:*
ibm vios 2.2.3.1 - - cpe:2.3:a:ibm:vios:2.2.3.1:*:*:*:*:*:*:*
ibm vios 2.2.3.2 - - cpe:2.3:a:ibm:vios:2.2.3.2:*:*:*:*:*:*:*
ibm vios 2.2.3.3 - - cpe:2.3:a:ibm:vios:2.2.3.3:*:*:*:*:*:*:*
ibm vios 2.2.3.4 - - cpe:2.3:a:ibm:vios:2.2.3.4:*:*:*:*:*:*:*
netbsd netbsd 5.1 - - cpe:2.3:o:netbsd:netbsd:5.1:*:*:*:*:*:*:*
netbsd netbsd 5.1.1 - - cpe:2.3:o:netbsd:netbsd:5.1.1:*:*:*:*:*:*:*
netbsd netbsd 5.1.2 - - cpe:2.3:o:netbsd:netbsd:5.1.2:*:*:*:*:*:*:*
netbsd netbsd 5.1.3 - - cpe:2.3:o:netbsd:netbsd:5.1.3:*:*:*:*:*:*:*
netbsd netbsd 5.1.4 - - cpe:2.3:o:netbsd:netbsd:5.1.4:*:*:*:*:*:*:*
netbsd netbsd 5.2 - - cpe:2.3:o:netbsd:netbsd:5.2:*:*:*:*:*:*:*
netbsd netbsd 5.2.1 - - cpe:2.3:o:netbsd:netbsd:5.2.1:*:*:*:*:*:*:*
netbsd netbsd 5.2.2 - - cpe:2.3:o:netbsd:netbsd:5.2.2:*:*:*:*:*:*:*
netbsd netbsd 6.0 - - cpe:2.3:o:netbsd:netbsd:6.0:*:*:*:*:*:*:*
netbsd netbsd 6.0.1 - - cpe:2.3:o:netbsd:netbsd:6.0.1:*:*:*:*:*:*:*
netbsd netbsd 6.0.2 - - cpe:2.3:o:netbsd:netbsd:6.0.2:*:*:*:*:*:*:*
netbsd netbsd 6.0.3 - - cpe:2.3:o:netbsd:netbsd:6.0.3:*:*:*:*:*:*:*
netbsd netbsd 6.0.4 - - cpe:2.3:o:netbsd:netbsd:6.0.4:*:*:*:*:*:*:*
netbsd netbsd 6.0.5 - - cpe:2.3:o:netbsd:netbsd:6.0.5:*:*:*:*:*:*:*
netbsd netbsd 6.0.6 - - cpe:2.3:o:netbsd:netbsd:6.0.6:*:*:*:*:*:*:*
netbsd netbsd 6.1 - - cpe:2.3:o:netbsd:netbsd:6.1:*:*:*:*:*:*:*
netbsd netbsd 6.1.1 - - cpe:2.3:o:netbsd:netbsd:6.1.1:*:*:*:*:*:*:*
netbsd netbsd 6.1.2 - - cpe:2.3:o:netbsd:netbsd:6.1.2:*:*:*:*:*:*:*
netbsd netbsd 6.1.3 - - cpe:2.3:o:netbsd:netbsd:6.1.3:*:*:*:*:*:*:*
netbsd netbsd 6.1.4 - - cpe:2.3:o:netbsd:netbsd:6.1.4:*:*:*:*:*:*:*
netbsd netbsd 6.1.5 - - cpe:2.3:o:netbsd:netbsd:6.1.5:*:*:*:*:*:*:*
debian debian_linux 7.0 - - cpe:2.3:o:debian:debian_linux:7.0:*:*:*:*:*:*:*
debian debian_linux 8.0 - - cpe:2.3:o:debian:debian_linux:8.0:*:*:*:*:*:*:*
oracle database 11.2.0.4 - - cpe:2.3:a:oracle:database:11.2.0.4:*:*:*:*:*:*:*
oracle database 12.1.0.2 - - cpe:2.3:a:oracle:database:12.1.0.2:*:*:*:*:*:*:*
解决方案
中文解决方案:
(暂无数据)
英文解决方案:
(暂无数据)
临时解决方案:
(暂无数据)
参考链接
HPSBOV03227 vendor-advisory
cve.org
访问
无标题 x_refsource_CONFIRM
cve.org
访问
1031090 vdb-entry
cve.org
访问
无标题 x_refsource_CONFIRM
cve.org
访问
RHSA-2014:1880 vendor-advisory
cve.org
访问
HPSBHF03300 vendor-advisory
cve.org
访问
无标题 x_refsource_CONFIRM
cve.org
访问
VU#577193 third-party-advisory
cve.org
访问
HPSBMU03184 vendor-advisory
cve.org
访问
HPSBGN03209 vendor-advisory
cve.org
访问
openSUSE-SU-2014:1331 vendor-advisory
cve.org
访问
无标题 x_refsource_CONFIRM
cve.org
访问
1031106 vdb-entry
cve.org
访问
HPSBGN03201 vendor-advisory
cve.org
访问
无标题 x_refsource_CONFIRM
cve.org
访问
[openssl-dev] 20141014 Patch to mitigate CVE-2014-3566 ("POODLE") mailing-list
cve.org
访问
SSRT101898 vendor-advisory
cve.org
访问
SSRT101896 vendor-advisory
cve.org
访问
60056 third-party-advisory
cve.org
访问
RHSA-2014:1877 vendor-advisory
cve.org
访问
HPSBUX03162 vendor-advisory
cve.org
访问
61130 third-party-advisory
cve.org
访问
RHSA-2015:1546 vendor-advisory
cve.org
访问
SUSE-SU-2015:0503 vendor-advisory
cve.org
访问
无标题 x_refsource_CONFIRM
cve.org
访问
无标题 x_refsource_CONFIRM
cve.org
访问
APPLE-SA-2014-10-16-3 vendor-advisory
cve.org
访问
无标题 x_refsource_CONFIRM
cve.org
访问
RHSA-2014:1920 vendor-advisory
cve.org
访问
1031087 vdb-entry
cve.org
访问
HPSBMU03234 vendor-advisory
cve.org
访问
无标题 x_refsource_CONFIRM
cve.org
访问
无标题 x_refsource_CONFIRM
cve.org
访问
SSRT101849 vendor-advisory
cve.org
访问
无标题 x_refsource_CONFIRM
cve.org
访问
61359 third-party-advisory
cve.org
访问
无标题 x_refsource_CONFIRM
cve.org
访问
1031093 vdb-entry
cve.org
访问
1031132 vdb-entry
cve.org
访问
DSA-3144 vendor-advisory
cve.org
访问
SSRT101790 vendor-advisory
cve.org
访问
DSA-3253 vendor-advisory
cve.org
访问
SSRT101846 vendor-advisory
cve.org
访问
无标题 x_refsource_CONFIRM
cve.org
访问
无标题 x_refsource_CONFIRM
cve.org
访问
APPLE-SA-2014-10-16-4 vendor-advisory
cve.org
访问
无标题 x_refsource_CONFIRM
cve.org
访问
SSRT101854 vendor-advisory
cve.org
访问
无标题 x_refsource_CONFIRM
cve.org
访问
无标题 x_refsource_MISC
cve.org
访问
无标题 x_refsource_CONFIRM
cve.org
访问
HPSBST03195 vendor-advisory
cve.org
访问
61827 third-party-advisory
cve.org
访问
HPSBMU03152 vendor-advisory
cve.org
访问
RHSA-2015:0079 vendor-advisory
cve.org
访问
无标题 x_refsource_CONFIRM
cve.org
访问
HPSBMU03304 vendor-advisory
cve.org
访问
无标题 x_refsource_CONFIRM
cve.org
访问
RHSA-2015:1545 vendor-advisory
cve.org
访问
无标题 x_refsource_CONFIRM
cve.org
访问
HPSBMU03259 vendor-advisory
cve.org
访问
1031094 vdb-entry
cve.org
访问
无标题 x_refsource_CONFIRM
cve.org
访问
61316 third-party-advisory
cve.org
访问
GLSA-201606-11 vendor-advisory
cve.org
访问
RHSA-2014:1881 vendor-advisory
cve.org
访问
无标题 x_refsource_MISC
cve.org
访问
1031096 vdb-entry
cve.org
访问
61810 third-party-advisory
cve.org
访问
DSA-3053 vendor-advisory
cve.org
访问
无标题 x_refsource_CONFIRM
cve.org
访问
1031107 vdb-entry
cve.org
访问
1031095 vdb-entry
cve.org
访问
HPSBMU03223 vendor-advisory
cve.org
访问
SUSE-SU-2014:1549 vendor-advisory
cve.org
访问
HPSBGN03305 vendor-advisory
cve.org
访问
HPSBUX03194 vendor-advisory
cve.org
访问
SSRT101868 vendor-advisory
cve.org
访问
1031091 vdb-entry
cve.org
访问
HPSBMU03260 vendor-advisory
cve.org
访问
1031123 vdb-entry
cve.org
访问
无标题 x_refsource_MISC
cve.org
访问
无标题 x_refsource_CONFIRM
cve.org
访问
1031092 vdb-entry
cve.org
访问
无标题 x_refsource_CONFIRM
cve.org
访问
SUSE-SU-2015:0376 vendor-advisory
cve.org
访问
61926 third-party-advisory
cve.org
访问
RHSA-2014:1876 vendor-advisory
cve.org
访问
无标题 x_refsource_CONFIRM
cve.org
访问
HPSBHF03156 vendor-advisory
cve.org
访问
openSUSE-SU-2016:0640 vendor-advisory
cve.org
访问
无标题 x_refsource_CONFIRM
cve.org
访问
无标题 x_refsource_CONFIRM
cve.org
访问
SSRT101838 vendor-advisory
cve.org
访问
HPSBGN03569 vendor-advisory
cve.org
访问
APPLE-SA-2015-09-16-2 vendor-advisory
cve.org
访问
无标题 x_refsource_CONFIRM
cve.org
访问
无标题 x_refsource_CONFIRM
cve.org
访问
SUSE-SU-2014:1357 vendor-advisory
cve.org
访问
无标题 x_refsource_CONFIRM
cve.org
访问
RHSA-2015:0264 vendor-advisory
cve.org
访问
无标题 x_refsource_CONFIRM
cve.org
访问
无标题 x_refsource_CONFIRM
cve.org
访问
无标题 x_refsource_CONFIRM
cve.org
访问
SSRT101897 vendor-advisory
cve.org
访问
HPSBGN03203 vendor-advisory
cve.org
访问
60206 third-party-advisory
cve.org
访问
无标题 x_refsource_CONFIRM
cve.org
访问
60792 third-party-advisory
cve.org
访问
无标题 x_refsource_CONFIRM
cve.org
访问
APPLE-SA-2014-10-16-1 vendor-advisory
cve.org
访问
DSA-3489 vendor-advisory
cve.org
访问
无标题 x_refsource_CONFIRM
cve.org
访问
1031105 vdb-entry
cve.org
访问
无标题 x_refsource_CONFIRM
cve.org
访问
FEDORA-2014-13069 vendor-advisory
cve.org
访问
1031131 vdb-entry
cve.org
访问
USN-2487-1 vendor-advisory
cve.org
访问
SSRT101795 vendor-advisory
cve.org
访问
HPSBGN03222 vendor-advisory
cve.org
访问
无标题 x_refsource_MISC
cve.org
访问
1031130 vdb-entry
cve.org
访问
HPSBMU03301 vendor-advisory
cve.org
访问
HPSBGN03164 vendor-advisory
cve.org
访问
RHSA-2014:1948 vendor-advisory
cve.org
访问
NetBSD-SA2014-015 vendor-advisory
cve.org
访问
HPSBGN03192 vendor-advisory
cve.org
访问
RHSA-2014:1653 vendor-advisory
cve.org
访问
SUSE-SU-2015:0392 vendor-advisory
cve.org
访问
HPSBMU03416 vendor-advisory
cve.org
访问
无标题 x_refsource_CONFIRM
cve.org
访问
无标题 x_refsource_CONFIRM
cve.org
访问
无标题 x_refsource_CONFIRM
cve.org
访问
HPSBMU03283 vendor-advisory
cve.org
访问
RHSA-2015:0085 vendor-advisory
cve.org
访问
无标题 x_refsource_CONFIRM
cve.org
访问
无标题 x_refsource_CONFIRM
cve.org
访问
FEDORA-2014-12951 vendor-advisory
cve.org
访问
HPSBGN03191 vendor-advisory
cve.org
访问
无标题 x_refsource_CONFIRM
cve.org
访问
SUSE-SU-2014:1526 vendor-advisory
cve.org
访问
HPSBGN03332 vendor-advisory
cve.org
访问
RHSA-2014:1652 vendor-advisory
cve.org
访问
无标题 x_refsource_CONFIRM
cve.org
访问
无标题 x_refsource_MISC
cve.org
访问
SUSE-SU-2015:0345 vendor-advisory
cve.org
访问
HPSBST03265 vendor-advisory
cve.org
访问
RHSA-2015:0086 vendor-advisory
cve.org
访问
HPSBMU03241 vendor-advisory
cve.org
访问
1031124 vdb-entry
cve.org
访问
SUSE-SU-2015:0578 vendor-advisory
cve.org
访问
SUSE-SU-2015:0336 vendor-advisory
cve.org
访问
RHSA-2015:0080 vendor-advisory
cve.org
访问
RHSA-2014:1882 vendor-advisory
cve.org
访问
RHSA-2015:0068 vendor-advisory
cve.org
访问
HPSBGN03251 vendor-advisory
cve.org
访问
USN-2486-1 vendor-advisory
cve.org
访问
HPSBGN03391 vendor-advisory
cve.org
访问
59627 third-party-advisory
cve.org
访问
HPSBMU03214 vendor-advisory
cve.org
访问
无标题 x_refsource_CONFIRM
cve.org
访问
HPSBMU03263 vendor-advisory
cve.org
访问
无标题 x_refsource_CONFIRM
cve.org
访问
20141014 SSL Padding Oracle On Downgraded Legacy Encryption (POODLE) Vulnerability vendor-advisory
cve.org
访问
HPSBGN03205 vendor-advisory
cve.org
访问
RHSA-2015:0698 vendor-advisory
cve.org
访问
无标题 x_refsource_CONFIRM
cve.org
访问
SUSE-SU-2014:1361 vendor-advisory
cve.org
访问
无标题 x_refsource_CONFIRM
cve.org
访问
60859 third-party-advisory
cve.org
访问
APPLE-SA-2014-10-20-2 vendor-advisory
cve.org
访问
GLSA-201507-14 vendor-advisory
cve.org
访问
SSRT101921 vendor-advisory
cve.org
访问
SSRT101951 vendor-advisory
cve.org
访问
无标题 x_refsource_CONFIRM
cve.org
访问
61345 third-party-advisory
cve.org
访问
61019 third-party-advisory
cve.org
访问
70574 vdb-entry
cve.org
访问
1031120 vdb-entry
cve.org
访问
无标题 x_refsource_CONFIRM
cve.org
访问
无标题 x_refsource_CONFIRM
cve.org
访问
61825 third-party-advisory
cve.org
访问
无标题 x_refsource_CONFIRM
cve.org
访问
1031029 vdb-entry
cve.org
访问
HPSBUX03281 vendor-advisory
cve.org
访问
HPSBMU03267 vendor-advisory
cve.org
访问
无标题 x_refsource_CONFIRM
cve.org
访问
无标题 x_refsource_CONFIRM
cve.org
访问
HPSBMU03261 vendor-advisory
cve.org
访问
SUSE-SU-2016:1459 vendor-advisory
cve.org
访问
无标题 x_refsource_CONFIRM
cve.org
访问
无标题 x_refsource_CONFIRM
cve.org
访问
61782 third-party-advisory
cve.org
访问
无标题 x_refsource_CONFIRM
cve.org
访问
MDVSA-2015:062 vendor-advisory
cve.org
访问
FEDORA-2015-9110 vendor-advisory
cve.org
访问
1031085 vdb-entry
cve.org
访问
HPSBST03418 vendor-advisory
cve.org
访问
无标题 x_refsource_CONFIRM
cve.org
访问
APPLE-SA-2014-10-20-1 vendor-advisory
cve.org
访问
无标题 x_refsource_CONFIRM
cve.org
访问
无标题 x_refsource_MISC
cve.org
访问
MDVSA-2014:203 vendor-advisory
cve.org
访问
SSRT101968 vendor-advisory
cve.org
访问
无标题 x_refsource_MISC
cve.org
访问
无标题 x_refsource_CONFIRM
cve.org
访问
无标题 x_refsource_CONFIRM
cve.org
访问
openSUSE-SU-2015:0190 vendor-advisory
cve.org
访问
APPLE-SA-2015-01-27-4 vendor-advisory
cve.org
访问
61303 third-party-advisory
cve.org
访问
无标题 x_refsource_CONFIRM
cve.org
访问
1031039 vdb-entry
cve.org
访问
SUSE-SU-2016:1457 vendor-advisory
cve.org
访问
无标题 x_refsource_CONFIRM
cve.org
访问
SUSE-SU-2015:0344 vendor-advisory
cve.org
访问
SSRT101922 vendor-advisory
cve.org
访问
1031089 vdb-entry
cve.org
访问
HPSBMU03183 vendor-advisory
cve.org
访问
TA14-290A third-party-advisory
cve.org
访问
FEDORA-2014-13012 vendor-advisory
cve.org
访问
61819 third-party-advisory
cve.org
访问
HPSBGN03255 vendor-advisory
cve.org
访问
1031088 vdb-entry
cve.org
访问
DSA-3147 vendor-advisory
cve.org
访问
61995 third-party-advisory
cve.org
访问
HPSBGN03202 vendor-advisory
cve.org
访问
无标题 x_refsource_CONFIRM
cve.org
访问
无标题 x_refsource_CONFIRM
cve.org
访问
1031086 vdb-entry
cve.org
访问
HPSBPI03360 vendor-advisory
cve.org
访问
无标题 x_refsource_CONFIRM
cve.org
访问
RHSA-2014:1692 vendor-advisory
cve.org
访问
FEDORA-2015-9090 vendor-advisory
cve.org
访问
无标题 x_refsource_MISC
cve.org
访问
无标题 x_refsource_CONFIRM
cve.org
访问
HPSBPI03107 vendor-advisory
cve.org
访问
[cxf-commits] 20200116 svn commit: r1055336 - in /websites/production/cxf/content: cache/main.pageCache security-advisories.data/CVE-2019-12423.txt.asc security-advisories.data/CVE-2019-17573.txt.asc security-advisories.html mailing-list
cve.org
访问
[cxf-commits] 20200319 svn commit: r1058035 - in /websites/production/cxf/content: cache/main.pageCache security-advisories.data/CVE-2019-17573.txt.asc security-advisories.html mailing-list
cve.org
访问
[cxf-commits] 20200401 svn commit: r1058573 - in /websites/production/cxf/content: cache/main.pageCache index.html security-advisories.data/CVE-2020-1954.txt.asc security-advisories.html mailing-list
cve.org
访问
[cxf-commits] 20201112 svn commit: r1067927 - in /websites/production/cxf/content: cache/main.pageCache security-advisories.data/CVE-2020-13954.txt.asc security-advisories.html mailing-list
cve.org
访问
[cxf-commits] 20210402 svn commit: r1073270 - in /websites/production/cxf/content: cache/main.pageCache security-advisories.data/CVE-2021-22696.txt.asc security-advisories.html mailing-list
cve.org
访问
[cxf-commits] 20210616 svn commit: r1075801 - in /websites/production/cxf/content: cache/main.pageCache index.html security-advisories.data/CVE-2021-30468.txt.asc security-advisories.html mailing-list
cve.org
访问
无标题 x_refsource_MISC
cve.org
访问
af854a3a-2127-422b-91ae-364da2661108 OTHER
nvd.nist.gov
访问
CVSS评分详情
3.4
LOW
CVSS向量: CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:C/C:L/I:N/A:N
CVSS版本: 3.1
机密性
LOW
完整性
NONE
可用性
NONE
时间信息
发布时间:
2014-10-15 00:00:00
修改时间:
2024-11-27 19:31:57
创建时间:
2025-11-11 15:33:47
更新时间:
2025-11-11 15:51:41
利用信息
暂无可利用代码信息
数据源详情
数据源 记录ID 版本 提取时间
CVE cve_CVE-2014-3566 2025-11-11 15:18:45 2025-11-11 07:33:47
NVD nvd_CVE-2014-3566 2025-11-11 14:54:35 2025-11-11 07:42:32
CNNVD cnnvd_CNNVD-201410-267 2025-11-11 15:09:30 2025-11-11 07:51:41
版本与语言
当前版本: v3
主要语言: EN
支持语言:
EN ZH
安全公告
暂无安全公告信息
变更历史
v3 CNNVD
2025-11-11 15:51:41
vulnerability_type: 未提取 → 加密问题; cnnvd_id: 未提取 → CNNVD-201410-267; data_sources: ['cve', 'nvd'] → ['cnnvd', 'cve', 'nvd']
查看详细变更
  • vulnerability_type: 未提取 -> 加密问题
  • cnnvd_id: 未提取 -> CNNVD-201410-267
  • data_sources: ['cve', 'nvd'] -> ['cnnvd', 'cve', 'nvd']
v2 NVD
2025-11-11 15:42:32
severity: SeverityLevel.MEDIUM → SeverityLevel.LOW; cvss_score: 未提取 → 3.4; cvss_vector: NOT_EXTRACTED → CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:C/C:L/I:N/A:N; cvss_version: NOT_EXTRACTED → 3.1; affected_products_count: 0 → 136; references_count: 265 → 244; data_sources: ['cve'] → ['cve', 'nvd']
查看详细变更
  • severity: SeverityLevel.MEDIUM -> SeverityLevel.LOW
  • cvss_score: 未提取 -> 3.4
  • cvss_vector: NOT_EXTRACTED -> CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:C/C:L/I:N/A:N
  • cvss_version: NOT_EXTRACTED -> 3.1
  • affected_products_count: 0 -> 136
  • references_count: 265 -> 244
  • data_sources: ['cve'] -> ['cve', 'nvd']