[{"data":1,"prerenderedAt":-1},["ShallowReactive",2],{"repo-stars":3,"vuln-CVE-2009-3555":6},{"stargazers_count":4,"fetched_at":5},7,"2026-06-04T20:55:29.923Z",{"id":7,"descriptions":8,"cisa":9,"weaknesses":10,"exploits":159,"aliases":202,"duplicate_of":9,"upstream":204,"downstream":205,"duplicates":282,"related":283,"reserved_at":9,"published_at":288,"modified_at":289,"state":290,"summary":291,"references_raw":299,"kevs":1760,"epss":1761,"epss_history":1764,"metrics":2031,"affected":2043},"CVE-2009-3555","The TLS protocol, and the SSL protocol 3.0 and possibly earlier, as used in Microsoft Internet Information Services (IIS) 7.0, mod_ssl in the Apache HTTP Server 2.2.14 and earlier, OpenSSL before 0.9.8l, GnuTLS 2.8.5 and earlier, Mozilla Network Security Services (NSS) 3.12.4 and earlier, multiple Cisco products, and other products, does not properly associate renegotiation handshakes with an existing connection, which allows man-in-the-middle attackers to insert data into HTTPS sessions, and possibly other types of sessions protected by TLS or SSL, by sending an unauthenticated request that is processed retroactively by a server in a post-renegotiation context, related to a \"plaintext injection\" attack, aka the \"Project Mogul\" issue.",null,[11,27],{"_key":12,"id":12,"name":13,"description":14,"type":15,"status":16,"abstraction":17,"likelihood_of_exploit":9,"capec":18},"CWE-295","Improper Certificate Validation","The product does not validate, or incorrectly validates, a certificate.","weakness","Draft","Base",[19,23],{"id":20,"name":21,"techniques":22},"CAPEC-459","Creating a Rogue Certification Authority Certificate",[],{"id":24,"name":25,"techniques":26},"CAPEC-475","Signature Spoofing by Improper Validation",[],{"_key":28,"id":28,"name":29,"description":30,"type":15,"status":16,"abstraction":31,"likelihood_of_exploit":9,"capec":32},"CWE-300","Channel Accessible by Non-Endpoint","The product does not adequately verify the identity of actors at both ends of a communication channel, or does not adequately ensure the integrity of the channel, in a way that allows the channel to be accessed or influenced by an actor that is not an endpoint.","Class",[33,37,57,61,65,69,73,77,126],{"id":34,"name":35,"techniques":36},"CAPEC-466","Leveraging Active Adversary in the Middle Attacks to Bypass Same Origin Policy",[],{"id":38,"name":39,"techniques":40},"CAPEC-57","Utilizing REST's Trust in the System Resource to Obtain Sensitive Data",[41],{"id":42,"name":43,"tactics":44,"countermeasures":51},"T1040","Network Sniffing",[45,48],{"id":46,"name":47},"TA0031","Credential Access",{"id":49,"name":50},"TA0102","Discovery",[52],{"id":53,"name":54,"tactic":55},"D3-DNSTA","DNS Traffic Analysis",{"name":56},"Detect",{"id":58,"name":59,"techniques":60},"CAPEC-589","DNS Blocking",[],{"id":62,"name":63,"techniques":64},"CAPEC-590","IP Address Blocking",[],{"id":66,"name":67,"techniques":68},"CAPEC-612","WiFi MAC Address Tracking",[],{"id":70,"name":71,"techniques":72},"CAPEC-613","WiFi SSID Tracking",[],{"id":74,"name":75,"techniques":76},"CAPEC-615","Evil Twin Wi-Fi Attack",[],{"id":78,"name":79,"techniques":80},"CAPEC-662","Adversary in the Browser (AiTB)",[81],{"id":82,"name":83,"tactics":84,"countermeasures":88},"T1185","Browser Session Hijacking",[85],{"id":86,"name":87},"TA0100","Collection",[89,93,97,101,105,109,113,117,121],{"id":90,"name":91,"tactic":92},"D3-UGLPA","User Geolocation Logon Pattern Analysis",{"name":56},{"id":94,"name":95,"tactic":96},"D3-PMAD","Protocol Metadata Anomaly Detection",{"name":56},{"id":98,"name":99,"tactic":100},"D3-CSPP","Client-server Payload Profiling",{"name":56},{"id":102,"name":103,"tactic":104},"D3-PHDURA","Per Host Download-Upload Ratio Analysis",{"name":56},{"id":106,"name":107,"tactic":108},"D3-NTSA","Network Traffic Signature Analysis",{"name":56},{"id":110,"name":111,"tactic":112},"D3-APCA","Application Protocol Command Analysis",{"name":56},{"id":114,"name":115,"tactic":116},"D3-NTCD","Network Traffic Community Deviation",{"name":56},{"id":118,"name":119,"tactic":120},"D3-RTSD","Remote Terminal Session Detection",{"name":56},{"id":122,"name":123,"tactic":124},"D3-NTF","Network Traffic Filtering",{"name":125},"Isolate",{"id":127,"name":128,"techniques":129},"CAPEC-94","Adversary in the Middle (AiTM)",[130],{"id":131,"name":132,"tactics":133,"countermeasures":136},"T1557","Adversary-in-the-Middle",[134,135],{"id":46,"name":47},{"id":86,"name":87},[137,139,141,143,145,147,149,151,153,157],{"id":90,"name":91,"tactic":138},{"name":56},{"id":94,"name":95,"tactic":140},{"name":56},{"id":98,"name":99,"tactic":142},{"name":56},{"id":102,"name":103,"tactic":144},{"name":56},{"id":106,"name":107,"tactic":146},{"name":56},{"id":110,"name":111,"tactic":148},{"name":56},{"id":114,"name":115,"tactic":150},{"name":56},{"id":118,"name":119,"tactic":152},{"name":56},{"id":154,"name":155,"tactic":156},"D3-CAA","Connection Attempt Analysis",{"name":56},{"id":122,"name":123,"tactic":158},{"name":125},[160,169,174,179,194],{"_key":161,"name":162,"source":163,"url":164,"maturity":165,"reliability_score":166,"verified":167,"type":9,"platforms":168,"requires_auth":9,"exploitdb":9,"metasploit":9},"REF_14DAFF72637C0F24","Exploit Reference (securityfocus.com)","reference","http://www.securityfocus.com/bid/36935","unknown",0.2,false,[],{"_key":170,"name":171,"source":163,"url":172,"maturity":165,"reliability_score":166,"verified":167,"type":9,"platforms":173,"requires_auth":9,"exploitdb":9,"metasploit":9},"REF_FC4E9630CE3E16ED","Exploit Reference (xss.cx)","http://xss.cx/examples/plesk-reports/plesk-parallels-controlpanel-psa.v.10.3.1_build1013110726.09%20os_redhat.el6-billing-system-plugin-javascript-injection-example-poc-report.html",[],{"_key":175,"name":176,"source":163,"url":177,"maturity":165,"reliability_score":166,"verified":167,"type":9,"platforms":178,"requires_auth":9,"exploitdb":9,"metasploit":9},"REF_3408C847D750D902","Exploit Reference (clicky.me)","http://clicky.me/tlsvuln",[],{"_key":180,"name":181,"source":182,"url":183,"maturity":184,"reliability_score":185,"verified":186,"type":187,"platforms":188,"requires_auth":9,"exploitdb":190,"metasploit":9},"10071","Mozilla NSS - NULL Character CA SSL Certificate Validation Security Bypass","exploit-database","https://www.exploit-db.com/exploits/10071","weaponized",0.8,true,"remote",[189],"multiple",{"verified":186,"type":187,"platform":189,"file":191,"codes":192},"exploits/multiple/remote/10071.txt",[7,193],"OSVDB-59970",{"_key":195,"name":196,"source":182,"url":197,"maturity":184,"reliability_score":185,"verified":186,"type":187,"platforms":198,"requires_auth":9,"exploitdb":199,"metasploit":9},"10579","TLS - Renegotiation","https://www.exploit-db.com/exploits/10579",[189],{"verified":186,"type":187,"platform":189,"file":200,"codes":201},"exploits/multiple/remote/10579.py",[7],[203],"GHSA-f7w7-6pjc-wwm6",[],[206,208,210,212,214,216,218,220,222,224,226,228,230,232,234,236,238,240,242,244,246,248,250,252,254,256,258,260,262,264,266,268,270,272,274,276,278,280],{"_key":207},"OPENSUSE-SU-2024:10071-1",{"_key":209},"OPENSUSE-SU-2024:10230-1",{"_key":211},"OPENSUSE-SU-2024:10268-1",{"_key":213},"OPENSUSE-SU-2024:14572-1",{"_key":215},"DLA-400-1",{"_key":217},"DSA-1934-1",{"_key":219},"DSA-2141-1",{"_key":221},"DSA-2141-2",{"_key":223},"DSA-2626-1",{"_key":225},"DSA-3253-1",{"_key":227},"RHSA-2009:1579",{"_key":229},"RHSA-2009:1580",{"_key":231},"RHSA-2009:1694",{"_key":233},"RHSA-2010:0011",{"_key":235},"RHSA-2010:0119",{"_key":237},"RHSA-2010:0130",{"_key":239},"RHSA-2010:0155",{"_key":241},"RHSA-2010:0162",{"_key":243},"RHSA-2010:0163",{"_key":245},"RHSA-2010:0164",{"_key":247},"RHSA-2010:0165",{"_key":249},"RHSA-2010:0166",{"_key":251},"RHSA-2010:0167",{"_key":253},"RHSA-2010:0337",{"_key":255},"RHSA-2010:0338",{"_key":257},"RHSA-2010:0339",{"_key":259},"RHSA-2010:0408",{"_key":261},"RHSA-2010:0440",{"_key":263},"RHSA-2010:0768",{"_key":265},"RHSA-2010:0770",{"_key":267},"RHSA-2010:0786",{"_key":269},"RHSA-2010:0807",{"_key":271},"RHSA-2010:0865",{"_key":273},"RHSA-2010:0986",{"_key":275},"RHSA-2010:0987",{"_key":277},"RHSA-2011:0880",{"_key":279},"RHSA-2015:1591",{"_key":281},"DEBIAN-CVE-2009-3555",[],[284,285,286,287],{"_key":207},{"_key":209},{"_key":211},{"_key":213},"2009-11-09T17:00:00.000Z","2026-05-27T15:38:56.729Z","Modified",{"cisa_kev":167,"cisa_ransomware":167,"cisa_vendor":9,"epss_severity":292,"epss_score":293,"severity":294,"severity_score":295,"severity_version":296,"severity_source":297,"severity_vector":298,"severity_status":290},"low",0.03741,"critical",9.8,"v3.1","nvd","CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H",[300,311,317,322,328,333,337,342,346,351,355,360,364,368,373,377,381,385,389,393,397,401,405,409,413,417,422,426,430,434,439,445,449,453,457,461,466,470,474,478,483,487,491,495,499,503,508,513,517,522,526,530,534,539,543,547,551,555,560,564,568,572,576,580,585,589,593,598,602,606,610,614,618,622,626,630,634,640,644,648,652,656,660,664,668,672,677,681,685,689,693,699,703,707,711,716,720,724,728,732,736,740,744,748,752,756,760,764,768,772,776,780,784,788,792,796,800,804,808,812,816,820,824,828,833,837,841,845,849,853,857,861,865,869,873,877,880,884,888,892,896,900,904,909,913,917,921,925,929,933,937,941,945,949,953,957,961,965,969,973,977,981,985,989,993,997,1001,1005,1009,1013,1017,1021,1025,1029,1033,1037,1041,1045,1049,1053,1057,1061,1065,1069,1073,1077,1082,1086,1090,1094,1098,1102,1106,1110,1114,1118,1122,1126,1130,1134,1138,1142,1146,1150,1154,1159,1163,1167,1171,1175,1179,1183,1187,1191,1195,1199,1203,1207,1211,1215,1219,1223,1227,1231,1235,1239,1243,1247,1251,1255,1259,1263,1267,1271,1275,1279,1283,1287,1291,1295,1299,1303,1307,1311,1315,1319,1323,1327,1331,1335,1339,1343,1347,1351,1355,1359,1363,1367,1371,1375,1379,1383,1387,1391,1395,1399,1403,1407,1411,1415,1419,1423,1427,1431,1435,1440,1444,1448,1452,1456,1460,1464,1468,1472,1476,1480,1484,1488,1492,1496,1500,1504,1508,1511,1515,1519,1523,1527,1531,1536,1540,1544,1548,1552,1556,1560,1564,1568,1572,1576,1580,1584,1588,1592,1596,1600,1604,1608,1612,1616,1620,1624,1628,1633,1637,1641,1645,1649,1653,1657,1661,1665,1669,1673,1677,1681,1685,1689,1693,1697,1701,1705,1709,1713,1717,1721,1725,1729,1733,1737,1741,1745,1749,1753,1757],{"url":301,"sources":302,"tags":305},"http://lists.apple.com/archives/security-announce/2010//May/msg00001.html",[303,297,304],"cve.org","osv_maven",[306,307,308,309,310],"Vendor Advisory","X Refsource APPLE","Mailing List","Third Party Advisory","WEB",{"url":312,"sources":313,"tags":314},"http://www.securitytracker.com/id?1023427",[303,297],[315,316,309],"VDB Entry","X Refsource SECTRACK",{"url":318,"sources":319,"tags":320},"http://support.avaya.com/css/P8/documents/100081611",[303,297,304],[321,309,310],"X Refsource CONFIRM",{"url":323,"sources":324,"tags":325},"http://osvdb.org/62210",[303,297],[315,326,327],"X Refsource OSVDB","Broken Link",{"url":329,"sources":330,"tags":331},"http://secunia.com/advisories/37640",[303,297],[309,332],"X Refsource SECUNIA",{"url":334,"sources":335,"tags":336},"http://www.arubanetworks.com/support/alerts/aid-020810.txt",[303,297,304],[321,327,310],{"url":338,"sources":339,"tags":340},"http://www.vupen.com/english/advisories/2010/0916",[303,297],[315,341,309],"X Refsource VUPEN",{"url":343,"sources":344,"tags":345},"http://support.avaya.com/css/P8/documents/100114327",[303,297,304],[321,309,310],{"url":347,"sources":348,"tags":349},"http://www.redhat.com/support/errata/RHSA-2010-0167.html",[303,297,304],[306,350,309,310],"X Refsource REDHAT",{"url":352,"sources":353,"tags":354},"http://www.vupen.com/english/advisories/2010/2010",[303,297],[315,341,309],{"url":356,"sources":357,"tags":358},"https://www.redhat.com/archives/fedora-package-announce/2009-December/msg00428.html",[303,297,304],[306,359,309,310],"X Refsource FEDORA",{"url":361,"sources":362,"tags":363},"http://www.vupen.com/english/advisories/2010/0086",[303,297],[315,341,309],{"url":365,"sources":366,"tags":367},"http://www.vupen.com/english/advisories/2010/1673",[303,297],[315,341,309],{"url":369,"sources":370,"tags":371},"http://www.ietf.org/mail-archive/web/tls/current/msg03948.html",[303,297,304],[308,372,309,310],"X Refsource MLIST",{"url":374,"sources":375,"tags":376},"http://secunia.com/advisories/37656",[303,297],[309,332],{"url":378,"sources":379,"tags":380},"http://www.redhat.com/support/errata/RHSA-2010-0865.html",[303,297,304],[306,350,309,310],{"url":382,"sources":383,"tags":384},"http://secunia.com/advisories/39628",[303,297],[309,332],{"url":386,"sources":387,"tags":388},"http://www.oracle.com/technetwork/topics/security/cpuapr2011-301950.html",[303,297,304],[321,309,310],{"url":390,"sources":391,"tags":392},"http://secunia.com/advisories/42724",[303,297],[309,332],{"url":394,"sources":395,"tags":396},"http://www.vupen.com/english/advisories/2009/3310",[303,297],[315,341,309],{"url":398,"sources":399,"tags":400},"http://www.vupen.com/english/advisories/2009/3205",[303,297],[315,341,309],{"url":402,"sources":403,"tags":404},"http://blogs.sun.com/security/entry/vulnerability_in_tls_protocol_during",[303,297,304],[321,309,310],{"url":406,"sources":407,"tags":408},"http://secunia.com/advisories/39461",[303,297],[309,332],{"url":410,"sources":411,"tags":412},"http://support.avaya.com/css/P8/documents/100114315",[303,297,304],[321,309,310],{"url":414,"sources":415,"tags":416},"http://www.proftpd.org/docs/RELEASE_NOTES-1.3.2c",[303,297,304],[321,327,310],{"url":418,"sources":419,"tags":420},"http://security.gentoo.org/glsa/glsa-201406-32.xml",[303,297,304],[306,421,309,310],"X Refsource GENTOO",{"url":423,"sources":424,"tags":425},"http://www.ingate.com/Relnote.php?ver=481",[303,297,304],[321,309,310],{"url":427,"sources":428,"tags":429},"http://www.securitytracker.com/id?1023204",[303,297],[315,316,309],{"url":431,"sources":432,"tags":433},"http://secunia.com/advisories/40866",[303,297],[309,332],{"url":435,"sources":436,"tags":437},"http://marc.info/?l=bugtraq&m=134254866602253&w=2",[303,297,304],[306,438,309,310],"X Refsource HP",{"url":440,"sources":441,"tags":442},"http://www.us-cert.gov/cas/techalerts/TA10-222A.html",[303,297,304],[309,443,444,310],"X Refsource CERT","US Government Resource",{"url":446,"sources":447,"tags":448},"http://www.securitytracker.com/id?1023211",[303,297],[315,316,309],{"url":450,"sources":451,"tags":452},"http://h20000.www2.hp.com/bizsupport/TechSupport/Document.jsp?objectID=c01945686",[303,297,304],[306,438,327,310],{"url":454,"sources":455,"tags":456},"http://secunia.com/advisories/39317",[303,297],[309,332],{"url":458,"sources":459,"tags":460},"http://www.securitytracker.com/id?1023212",[303,297],[315,316,309],{"url":462,"sources":463,"tags":464},"http://lists.opensuse.org/opensuse-security-announce/2010-12/msg00005.html",[303,297,304],[306,465,309,310],"X Refsource SUSE",{"url":467,"sources":468,"tags":469},"http://secunia.com/advisories/39127",[303,297],[309,332],{"url":471,"sources":472,"tags":473},"http://secunia.com/advisories/40545",[303,297],[309,332],{"url":475,"sources":476,"tags":477},"http://www.vupen.com/english/advisories/2010/3069",[303,297],[315,341,309],{"url":479,"sources":480,"tags":481},"http://openbsd.org/errata45.html#010_openssl",[303,297,304],[306,482,309,310],"X Refsource OPENBSD",{"url":484,"sources":485,"tags":486},"http://www.securitytracker.com/id?1023210",[303,297],[315,316,309],{"url":488,"sources":489,"tags":490},"http://www.securitytracker.com/id?1023270",[303,297],[315,316,309],{"url":492,"sources":493,"tags":494},"http://secunia.com/advisories/40070",[303,297],[309,332],{"url":496,"sources":497,"tags":498},"http://www.securitytracker.com/id?1023273",[303,297],[315,316,309],{"url":500,"sources":501,"tags":502},"http://kbase.redhat.com/faq/docs/DOC-20491",[303,297,304],[321,309,310],{"url":504,"sources":505,"tags":506},"http://www.ubuntu.com/usn/USN-927-5",[303,297,304],[306,507,309,310],"X Refsource UBUNTU",{"url":509,"sources":510,"tags":511},"http://www-01.ibm.com/support/docview.wss?uid=swg1PM12247",[303,297,304],[306,512,309,310],"X Refsource AIXAPAR",{"url":514,"sources":515,"tags":516},"http://lists.opensuse.org/opensuse-security-announce/2011-07/msg00014.html",[303,297,304],[306,465,309,310],{"url":518,"sources":519,"tags":520},"http://www.mandriva.com/security/advisories?name=MDVSA-2010:089",[303,297,304],[306,521,327,310],"X Refsource MANDRIVA",{"url":523,"sources":524,"tags":525},"http://www.redhat.com/support/errata/RHSA-2010-0770.html",[303,297,304],[306,350,309,310],{"url":527,"sources":528,"tags":529},"http://www.openssl.org/news/secadv_20091111.txt",[303,297,304],[321,309,310],{"url":531,"sources":532,"tags":533},"http://www.securitytracker.com/id?1023275",[303,297],[315,316,309],{"url":535,"sources":536,"tags":537},"http://www.debian.org/security/2015/dsa-3253",[303,297,304],[306,538,309,310],"X Refsource DEBIAN",{"url":540,"sources":541,"tags":542},"http://www.vupen.com/english/advisories/2009/3484",[303,297],[315,341,309],{"url":544,"sources":545,"tags":546},"http://www.securitytracker.com/id?1023207",[303,297],[315,316,309],{"url":548,"sources":549,"tags":550},"http://secunia.com/advisories/37859",[303,297],[309,332],{"url":552,"sources":553,"tags":554},"http://marc.info/?l=bugtraq&m=142660345230545&w=2",[303,297,304],[306,438,309,310],{"url":556,"sources":557,"tags":558},"http://sunsolve.sun.com/search/document.do?assetkey=1-77-1021752.1-1",[303,297,304],[306,559,327,310],"X Refsource SUNALERT",{"url":561,"sources":562,"tags":563},"http://lists.fedoraproject.org/pipermail/package-announce/2010-May/040652.html",[303,297,304],[306,359,309,310],{"url":565,"sources":566,"tags":567},"http://www.vupen.com/english/advisories/2010/0848",[303,297],[315,341,309],{"url":569,"sources":570,"tags":571},"http://www.openwall.com/lists/oss-security/2009/11/07/3",[303,297,304],[308,372,309,310],{"url":573,"sources":574,"tags":575},"http://secunia.com/advisories/39819",[303,297],[309,332],{"url":577,"sources":578,"tags":579},"http://www-01.ibm.com/support/docview.wss?uid=swg1IC68055",[303,297,304],[306,512,309,310],{"url":581,"sources":582,"tags":583},"http://www.links.org/?p=786",[303,297,304],[584,309,310],"X Refsource MISC",{"url":586,"sources":587,"tags":588},"http://osvdb.org/60521",[303,297],[315,326,327],{"url":590,"sources":591,"tags":592},"http://www.openwall.com/lists/oss-security/2009/11/23/10",[303,297,304],[308,372,309,310],{"url":594,"sources":595,"tags":596},"http://www.kb.cert.org/vuls/id/120541",[303,297,304],[309,597,444,310],"X Refsource CERT VN",{"url":599,"sources":600,"tags":601},"http://www.securitytracker.com/id?1023217",[303,297],[315,316,309],{"url":603,"sources":604,"tags":605},"http://www.redhat.com/support/errata/RHSA-2010-0768.html",[303,297,304],[306,350,309,310],{"url":607,"sources":608,"tags":609},"http://www.vupen.com/english/advisories/2009/3353",[303,297],[315,341,309],{"url":611,"sources":612,"tags":613},"http://lists.fedoraproject.org/pipermail/package-announce/2010-April/039561.html",[303,297,304],[306,359,309,310],{"url":615,"sources":616,"tags":617},"http://secunia.com/advisories/39136",[303,297],[309,332],{"url":619,"sources":620,"tags":621},"http://www.openoffice.org/security/cves/CVE-2009-3555.html",[303,297,304],[321,309,310],{"url":623,"sources":624,"tags":625},"http://www.vupen.com/english/advisories/2011/0032",[303,297],[315,341,309],{"url":627,"sources":628,"tags":629},"http://securitytracker.com/id?1023148",[303,297],[315,316,309],{"url":631,"sources":632,"tags":633},"http://lists.opensuse.org/opensuse-security-announce/2011-07/msg00013.html",[303,297,304],[306,465,309,310],{"url":164,"sources":635,"tags":636},[303,297],[315,637,638,639,309],"X Refsource BID","Exploit","Patch",{"url":641,"sources":642,"tags":643},"http://www.tombom.co.uk/blog/?p=85",[303,297,304],[584,327,310],{"url":645,"sources":646,"tags":647},"http://marc.info/?l=bugtraq&m=130497311408250&w=2",[303,297,304],[306,438,309,310],{"url":649,"sources":650,"tags":651},"http://www.vupen.com/english/advisories/2010/1107",[303,297],[315,341,309],{"url":653,"sources":654,"tags":655},"http://www.securitytracker.com/id?1023218",[303,297],[315,316,309],{"url":657,"sources":658,"tags":659},"http://www.vupen.com/english/advisories/2010/1350",[303,297],[315,341,309],{"url":661,"sources":662,"tags":663},"http://www.redhat.com/support/errata/RHSA-2010-0338.html",[303,297,304],[306,350,309,310],{"url":665,"sources":666,"tags":667},"http://secunia.com/advisories/42379",[303,297],[309,332],{"url":669,"sources":670,"tags":671},"https://www.redhat.com/archives/fedora-package-announce/2009-December/msg00442.html",[303,297,304],[306,359,309,310],{"url":673,"sources":674,"tags":675},"http://www.cisco.com/en/US/products/products_security_advisory09186a0080b01d1d.shtml",[303,297,304],[306,676,309,310],"X Refsource CISCO",{"url":678,"sources":679,"tags":680},"http://www-01.ibm.com/support/docview.wss?uid=swg1IC67848",[303,297,304],[306,512,309,310],{"url":682,"sources":683,"tags":684},"http://www.securitytracker.com/id?1023213",[303,297],[315,316,309],{"url":686,"sources":687,"tags":688},"http://lists.fedoraproject.org/pipermail/package-announce/2010-October/049702.html",[303,297,304],[306,359,309,310],{"url":690,"sources":691,"tags":692},"http://www.vupen.com/english/advisories/2010/1793",[303,297],[315,341,309],{"url":694,"sources":695,"tags":696},"https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A11617",[303,297],[315,697,698,309],"Signature","X Refsource OVAL",{"url":700,"sources":701,"tags":702},"http://extendedsubset.com/?p=8",[303,297,304],[584,327,310],{"url":704,"sources":705,"tags":706},"http://secunia.com/advisories/37292",[303,297],[309,332],{"url":708,"sources":709,"tags":710},"http://www.securityfocus.com/archive/1/522176",[303,297],[306,438,309,315],{"url":712,"sources":713,"tags":714},"https://exchange.xforce.ibmcloud.com/vulnerabilities/54158",[303,297,304],[315,715,309,310],"X Refsource XF",{"url":717,"sources":718,"tags":719},"http://lists.apple.com/archives/security-announce/2010//May/msg00002.html",[303,297,304],[306,307,308,309,310],{"url":721,"sources":722,"tags":723},"http://secunia.com/advisories/39278",[303,297],[309,332],{"url":725,"sources":726,"tags":727},"http://www.securitytracker.com/id?1023205",[303,297],[315,316,309],{"url":729,"sources":730,"tags":731},"http://www.redhat.com/support/errata/RHSA-2010-0130.html",[303,297,304],[306,350,309,310],{"url":733,"sources":734,"tags":735},"http://tomcat.apache.org/native-doc/miscellaneous/changelog-1.1.x.html",[303,297,304],[321,327,310],{"url":737,"sources":738,"tags":739},"http://support.apple.com/kb/HT4004",[303,297,304],[321,309,310],{"url":741,"sources":742,"tags":743},"http://www.securitytracker.com/id?1023215",[303,297],[315,316,309],{"url":745,"sources":746,"tags":747},"http://www.ubuntu.com/usn/USN-1010-1",[303,297,304],[306,507,309,310],{"url":749,"sources":750,"tags":751},"http://www.securitytracker.com/id?1023206",[303,297],[315,316,309],{"url":753,"sources":754,"tags":755},"http://lists.opensuse.org/opensuse-security-announce/2010-05/msg00001.html",[303,297,304],[306,465,309,310],{"url":757,"sources":758,"tags":759},"https://h20566.www2.hpe.com/portal/site/hpsc/public/kb/docDisplay?docId=emr_na-c05150888",[303,297,304],[321,309,310],{"url":761,"sources":762,"tags":763},"http://security.gentoo.org/glsa/glsa-200912-01.xml",[303,297,304],[306,421,309,310],{"url":765,"sources":766,"tags":767},"http://marc.info/?l=bugtraq&m=127419602507642&w=2",[303,297,304],[306,438,309,310],{"url":769,"sources":770,"tags":771},"http://www.vupen.com/english/advisories/2009/3313",[303,297],[315,341,309],{"url":773,"sources":774,"tags":775},"http://sunsolve.sun.com/search/document.do?assetkey=1-66-274990-1",[303,297,304],[306,559,327,310],{"url":777,"sources":778,"tags":779},"http://www.securitytracker.com/id?1023208",[303,297],[315,316,309],{"url":781,"sources":782,"tags":783},"http://secunia.com/advisories/43308",[303,297],[309,332],{"url":785,"sources":786,"tags":787},"http://www.securitytracker.com/id?1023214",[303,297],[315,316,309],{"url":789,"sources":790,"tags":791},"http://lists.opensuse.org/opensuse-security-announce/2009-11/msg00009.html",[303,297,304],[306,465,309,310],{"url":793,"sources":794,"tags":795},"http://secunia.com/advisories/38781",[303,297],[309,332],{"url":797,"sources":798,"tags":799},"http://marc.info/?l=bugtraq&m=133469267822771&w=2",[303,297,304],[306,438,309,310],{"url":801,"sources":802,"tags":803},"http://www.debian.org/security/2009/dsa-1934",[303,297,304],[306,538,309,310],{"url":805,"sources":806,"tags":807},"https://www.redhat.com/archives/fedora-package-announce/2009-December/msg00449.html",[303,297,304],[306,359,309,310],{"url":809,"sources":810,"tags":811},"https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A7478",[303,297],[315,697,698,309],{"url":813,"sources":814,"tags":815},"http://www.securitytracker.com/id?1023271",[303,297],[315,316,309],{"url":817,"sources":818,"tags":819},"http://lists.apple.com/archives/security-announce/2010/Jan/msg00000.html",[303,297,304],[306,307,308,309,310],{"url":821,"sources":822,"tags":823},"http://marc.info/?l=cryptography&m=125752275331877&w=2",[303,297,304],[308,372,309,310],{"url":825,"sources":826,"tags":827},"http://secunia.com/advisories/42467",[303,297],[309,332],{"url":829,"sources":830,"tags":831},"http://www.securityfocus.com/archive/1/508130/100/0/threaded",[303,297],[308,832,309,315],"X Refsource BUGTRAQ",{"url":834,"sources":835,"tags":836},"https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A7315",[303,297],[315,697,698,309],{"url":838,"sources":839,"tags":840},"http://www.securitytracker.com/id?1023224",[303,297],[315,316,309],{"url":842,"sources":843,"tags":844},"http://lists.opensuse.org/opensuse-security-announce/2010-06/msg00001.html",[303,297,304],[306,465,309,310],{"url":846,"sources":847,"tags":848},"http://www.ubuntu.com/usn/USN-927-4",[303,297,304],[306,507,309,310],{"url":850,"sources":851,"tags":852},"http://secunia.com/advisories/41490",[303,297],[309,332],{"url":854,"sources":855,"tags":856},"http://www.securityfocus.com/archive/1/508075/100/0/threaded",[303,297],[308,832,309,315],{"url":858,"sources":859,"tags":860},"http://www.securitytracker.com/id?1023243",[303,297],[315,316,309],{"url":862,"sources":863,"tags":864},"http://blog.g-sec.lu/2009/11/tls-sslv3-renegotiation-vulnerability.html",[303,297,304],[584,309,310],{"url":866,"sources":867,"tags":868},"http://secunia.com/advisories/37504",[303,297],[309,332],{"url":870,"sources":871,"tags":872},"http://www.securitytracker.com/id?1023219",[303,297],[315,316,309],{"url":874,"sources":875,"tags":876},"http://sysoev.ru/nginx/patch.cve-2009-3555.txt",[303,297,304],[321,327,310],{"url":172,"sources":878,"tags":879},[303,297],[584,638,309],{"url":881,"sources":882,"tags":883},"http://www.securitytracker.com/id?1023163",[303,297],[315,316,309],{"url":885,"sources":886,"tags":887},"http://marc.info/?l=bugtraq&m=132077688910227&w=2",[303,297,304],[306,438,309,310],{"url":889,"sources":890,"tags":891},"http://www.vupen.com/english/advisories/2009/3521",[303,297],[315,341,309],{"url":893,"sources":894,"tags":895},"https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A7973",[303,297],[315,697,698,309],{"url":897,"sources":898,"tags":899},"http://www.itrc.hp.com/service/cki/docDisplay.do?docId=emr_na-c02512995",[303,297,304],[306,438,309,310],{"url":901,"sources":902,"tags":903},"http://support.zeus.com/zws/news/2010/01/13/zws_4_3r5_released",[303,297,304],[321,327,310],{"url":905,"sources":906,"tags":907},"https://bugzilla.redhat.com/show_bug.cgi?id=533125",[303,297,304],[321,908,309,310],"Issue Tracking",{"url":910,"sources":911,"tags":912},"https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A10088",[303,297],[315,697,698,309],{"url":914,"sources":915,"tags":916},"http://secunia.com/advisories/44183",[303,297],[309,332],{"url":918,"sources":919,"tags":920},"http://support.zeus.com/zws/media/docs/4.3/RELEASE_NOTES",[303,297,304],[321,327,310],{"url":922,"sources":923,"tags":924},"http://secunia.com/advisories/42808",[303,297],[309,332],{"url":926,"sources":927,"tags":928},"http://secunia.com/advisories/39500",[303,297],[309,332],{"url":930,"sources":931,"tags":932},"https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A11578",[303,297],[315,697,698,309],{"url":934,"sources":935,"tags":936},"http://www.oracle.com/technetwork/topics/security/cpuoct2010-175626.html",[303,297,304],[321,309,310],{"url":938,"sources":939,"tags":940},"http://www.vupen.com/english/advisories/2009/3220",[303,297],[315,341,309],{"url":942,"sources":943,"tags":944},"http://itrc.hp.com/service/cki/docDisplay.do?docId=emr_na-c02273751",[303,297,304],[306,438,327,310],{"url":946,"sources":947,"tags":948},"http://marc.info/?l=bugtraq&m=127557596201693&w=2",[303,297,304],[306,438,309,310],{"url":950,"sources":951,"tags":952},"http://www.redhat.com/support/errata/RHSA-2010-0165.html",[303,297,304],[306,350,309,310],{"url":954,"sources":955,"tags":956},"http://www.securityfocus.com/archive/1/515055/100/0/threaded",[303,297],[308,832,309,315],{"url":958,"sources":959,"tags":960},"http://www.redhat.com/support/errata/RHSA-2010-0987.html",[303,297,304],[306,350,309,310],{"url":962,"sources":963,"tags":964},"https://bugzilla.mozilla.org/show_bug.cgi?id=545755",[303,297,304],[321,908,309,310],{"url":966,"sources":967,"tags":968},"http://www-01.ibm.com/support/docview.wss?uid=swg21426108",[303,297,304],[321,309,310],{"url":970,"sources":971,"tags":972},"http://blogs.iss.net/archive/sslmitmiscsrf.html",[303,297,304],[584,327,310],{"url":974,"sources":975,"tags":976},"http://www.securitytracker.com/id?1023411",[303,297],[315,316,309],{"url":978,"sources":979,"tags":980},"http://www.redhat.com/support/errata/RHSA-2010-0339.html",[303,297,304],[306,350,309,310],{"url":982,"sources":983,"tags":984},"http://www.redhat.com/support/errata/RHSA-2010-0986.html",[303,297,304],[306,350,309,310],{"url":986,"sources":987,"tags":988},"http://www.vupen.com/english/advisories/2009/3164",[303,297],[315,341,309],{"url":990,"sources":991,"tags":992},"http://secunia.com/advisories/37383",[303,297],[309,332],{"url":994,"sources":995,"tags":996},"https://www.redhat.com/archives/fedora-package-announce/2009-December/msg01029.html",[303,297,304],[306,359,309,310],{"url":998,"sources":999,"tags":1000},"http://secunia.com/advisories/44954",[303,297],[309,332],{"url":1002,"sources":1003,"tags":1004},"http://www.ietf.org/mail-archive/web/tls/current/msg03928.html",[303,297,304],[308,372,309,310],{"url":1006,"sources":1007,"tags":1008},"http://support.avaya.com/css/P8/documents/100070150",[303,297,304],[321,309,310],{"url":1010,"sources":1011,"tags":1012},"http://secunia.com/advisories/40747",[303,297],[309,332],{"url":1014,"sources":1015,"tags":1016},"http://marc.info/?l=bugtraq&m=126150535619567&w=2",[303,297,304],[306,438,309,310],{"url":1018,"sources":1019,"tags":1020},"http://secunia.com/advisories/39292",[303,297],[309,332],{"url":1022,"sources":1023,"tags":1024},"http://secunia.com/advisories/42816",[303,297],[309,332],{"url":1026,"sources":1027,"tags":1028},"http://www-01.ibm.com/support/docview.wss?uid=swg1IC68054",[303,297,304],[306,512,309,310],{"url":1030,"sources":1031,"tags":1032},"http://sunsolve.sun.com/search/document.do?assetkey=1-66-273029-1",[303,297,304],[306,559,327,310],{"url":1034,"sources":1035,"tags":1036},"https://www.redhat.com/archives/fedora-package-announce/2009-December/msg00645.html",[303,297,304],[306,359,309,310],{"url":1038,"sources":1039,"tags":1040},"http://www-01.ibm.com/support/docview.wss?uid=swg21432298",[303,297,304],[321,309,310],{"url":1042,"sources":1043,"tags":1044},"http://extendedsubset.com/Renegotiating_TLS.pdf",[303,297,304],[584,327,310],{"url":1046,"sources":1047,"tags":1048},"http://www-01.ibm.com/support/docview.wss?uid=swg24025312",[303,297,304],[321,309,310],{"url":1050,"sources":1051,"tags":1052},"http://www-01.ibm.com/support/docview.wss?uid=swg24006386",[303,297,304],[321,309,310],{"url":1054,"sources":1055,"tags":1056},"http://support.apple.com/kb/HT4170",[303,297,304],[321,309,310],{"url":1058,"sources":1059,"tags":1060},"http://www.securityfocus.com/archive/1/507952/100/0/threaded",[303,297],[308,832,309,315],{"url":1062,"sources":1063,"tags":1064},"http://www.securitytracker.com/id?1023209",[303,297],[315,316,309],{"url":1066,"sources":1067,"tags":1068},"http://www-1.ibm.com/support/search.wss?rs=0&q=PM00675&apar=only",[303,297,304],[306,512,309,310],{"url":1070,"sources":1071,"tags":1072},"http://www.vmware.com/support/vsphere4/doc/vsp_vc41_u1_rel_notes.html",[303,297,304],[321,309,310],{"url":1074,"sources":1075,"tags":1076},"http://secunia.com/advisories/48577",[303,297],[309,332],{"url":1078,"sources":1079,"tags":1080},"http://slackware.com/security/viewer.php?l=slackware-security&y=2009&m=slackware-security.597446",[303,297,304],[306,1081,309,310],"X Refsource SLACKWARE",{"url":1083,"sources":1084,"tags":1085},"http://www.links.org/?p=789",[303,297,304],[584,309,310],{"url":1087,"sources":1088,"tags":1089},"http://www.opera.com/docs/changelogs/unix/1060/",[303,297],[321,309],{"url":1091,"sources":1092,"tags":1093},"http://www.securegoose.org/2009/11/tls-renegotiation-vulnerability-cve.html",[303,297,304],[584,309,310],{"url":1095,"sources":1096,"tags":1097},"http://www.redhat.com/support/errata/RHSA-2011-0880.html",[303,297,304],[306,350,309,310],{"url":1099,"sources":1100,"tags":1101},"http://lists.opensuse.org/opensuse-security-announce/2010-04/msg00001.html",[303,297,304],[306,465,309,310],{"url":1103,"sources":1104,"tags":1105},"http://www.oracle.com/technetwork/topics/security/javacpuoct2010-176258.html",[303,297,304],[321,309,310],{"url":1107,"sources":1108,"tags":1109},"http://www.openwall.com/lists/oss-security/2009/11/06/3",[303,297,304],[308,372,309,310],{"url":1111,"sources":1112,"tags":1113},"https://www.redhat.com/archives/fedora-package-announce/2009-December/msg01020.html",[303,297,304],[306,359,309,310],{"url":1115,"sources":1116,"tags":1117},"http://wiki.rpath.com/Advisories:rPSA-2009-0155",[303,297,304],[321,309,310],{"url":1119,"sources":1120,"tags":1121},"http://lists.opensuse.org/opensuse-security-announce/2010-05/msg00002.html",[303,297,304],[306,465,309,310],{"url":1123,"sources":1124,"tags":1125},"http://support.citrix.com/article/CTX123359",[303,297,304],[321,309,310],{"url":1127,"sources":1128,"tags":1129},"http://secunia.com/advisories/37501",[303,297],[309,332],{"url":1131,"sources":1132,"tags":1133},"http://www.mandriva.com/security/advisories?name=MDVSA-2010:076",[303,297,304],[306,521,327,310],{"url":1135,"sources":1136,"tags":1137},"http://marc.info/?l=bugtraq&m=127128920008563&w=2",[303,297,304],[306,438,309,310],{"url":1139,"sources":1140,"tags":1141},"http://www.vupen.com/english/advisories/2009/3587",[303,297],[315,341,309],{"url":1143,"sources":1144,"tags":1145},"http://secunia.com/advisories/39632",[303,297],[309,332],{"url":1147,"sources":1148,"tags":1149},"http://secunia.com/advisories/38687",[303,297],[309,332],{"url":1151,"sources":1152,"tags":1153},"https://bugzilla.mozilla.org/show_bug.cgi?id=526689",[303,297,304],[584,908,309,310],{"url":1155,"sources":1156,"tags":1157},"https://docs.microsoft.com/en-us/security-updates/securitybulletins/2010/ms10-049",[303,297,304],[306,1158,639,310],"X Refsource MS",{"url":1160,"sources":1161,"tags":1162},"http://www.vupen.com/english/advisories/2010/0982",[303,297],[315,341,309],{"url":1164,"sources":1165,"tags":1166},"http://secunia.com/advisories/37399",[303,297],[309,332],{"url":1168,"sources":1169,"tags":1170},"http://www.ubuntu.com/usn/USN-927-1",[303,297,304],[306,507,309,310],{"url":1172,"sources":1173,"tags":1174},"http://www.securitytracker.com/id?1023272",[303,297],[315,316,309],{"url":1176,"sources":1177,"tags":1178},"https://www.redhat.com/archives/fedora-package-announce/2009-December/msg00944.html",[303,297,304],[306,359,309,310],{"url":1180,"sources":1181,"tags":1182},"http://www.vupen.com/english/advisories/2010/3126",[303,297],[315,341,309],{"url":1184,"sources":1185,"tags":1186},"http://secunia.com/advisories/37320",[303,297],[309,332],{"url":1188,"sources":1189,"tags":1190},"http://www.vupen.com/english/advisories/2009/3165",[303,297],[315,341,309],{"url":1192,"sources":1193,"tags":1194},"http://www.vupen.com/english/advisories/2010/1639",[303,297],[315,341,309],{"url":1196,"sources":1197,"tags":1198},"http://secunia.com/advisories/38020",[303,297],[309,332],{"url":1200,"sources":1201,"tags":1202},"http://ubuntu.com/usn/usn-923-1",[303,297,304],[306,507,309,310],{"url":1204,"sources":1205,"tags":1206},"http://secunia.com/advisories/39243",[303,297],[309,332],{"url":1208,"sources":1209,"tags":1210},"https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A8366",[303,297],[315,697,698,309],{"url":1212,"sources":1213,"tags":1214},"http://secunia.com/advisories/37453",[303,297],[309,332],{"url":1216,"sources":1217,"tags":1218},"http://www.hitachi.co.jp/Prod/comp/soft1/security/info/vuls/HS10-030/index.html",[303,297,304],[321,309,310],{"url":1220,"sources":1221,"tags":1222},"http://www.vupen.com/english/advisories/2010/0933",[303,297],[315,341,309],{"url":1224,"sources":1225,"tags":1226},"http://www.vmware.com/security/advisories/VMSA-2011-0003.html",[303,297,304],[321,309,310],{"url":1228,"sources":1229,"tags":1230},"http://secunia.com/advisories/41972",[303,297],[309,332],{"url":1232,"sources":1233,"tags":1234},"http://www.vupen.com/english/advisories/2010/3086",[303,297],[315,341,309],{"url":1236,"sources":1237,"tags":1238},"http://www.debian.org/security/2011/dsa-2141",[303,297,304],[306,538,309,310],{"url":1240,"sources":1241,"tags":1242},"http://www.securitytracker.com/id?1024789",[303,297],[315,316,309],{"url":1244,"sources":1245,"tags":1246},"http://www.redhat.com/support/errata/RHSA-2010-0155.html",[303,297,304],[306,350,309,310],{"url":1248,"sources":1249,"tags":1250},"http://www.educatedguesswork.org/2009/11/understanding_the_tls_renegoti.html",[303,297,304],[584,309,310],{"url":1252,"sources":1253,"tags":1254},"http://www.vupen.com/english/advisories/2011/0033",[303,297],[315,341,309],{"url":1256,"sources":1257,"tags":1258},"http://www.redhat.com/support/errata/RHSA-2010-0337.html",[303,297,304],[306,350,309,310],{"url":1260,"sources":1261,"tags":1262},"http://www.securitytracker.com/id?1023216",[303,297],[315,316,309],{"url":1264,"sources":1265,"tags":1266},"http://secunia.com/advisories/41480",[303,297],[309,332],{"url":1268,"sources":1269,"tags":1270},"http://www.vupen.com/english/advisories/2011/0086",[303,297],[315,341,309],{"url":1272,"sources":1273,"tags":1274},"http://secunia.com/advisories/41818",[303,297],[309,332],{"url":1276,"sources":1277,"tags":1278},"http://secunia.com/advisories/37604",[303,297],[309,332],{"url":1280,"sources":1281,"tags":1282},"http://www.opera.com/support/search/view/944/",[303,297],[321,309],{"url":1284,"sources":1285,"tags":1286},"http://marc.info/?l=apache-httpd-announce&m=125755783724966&w=2",[303,297,304],[308,372,309,310],{"url":1288,"sources":1289,"tags":1290},"http://lists.opensuse.org/opensuse-security-announce/2010-12/msg00006.html",[303,297,304],[306,465,309,310],{"url":1292,"sources":1293,"tags":1294},"http://www.us-cert.gov/cas/techalerts/TA10-287A.html",[303,297,304],[309,443,444,310],{"url":1296,"sources":1297,"tags":1298},"http://www.links.org/?p=780",[303,297,304],[584,309,310],{"url":1300,"sources":1301,"tags":1302},"http://www.redhat.com/support/errata/RHSA-2010-0119.html",[303,297,304],[306,350,309,310],{"url":1304,"sources":1305,"tags":1306},"http://secunia.com/advisories/38056",[303,297],[309,332],{"url":1308,"sources":1309,"tags":1310},"http://www.vupen.com/english/advisories/2010/0748",[303,297],[315,341,309],{"url":1312,"sources":1313,"tags":1314},"http://secunia.com/advisories/37675",[303,297],[309,332],{"url":1316,"sources":1317,"tags":1318},"https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A8535",[303,297],[315,697,698,309],{"url":1320,"sources":1321,"tags":1322},"http://www.vmware.com/security/advisories/VMSA-2010-0019.html",[303,297,304],[321,309,310],{"url":1324,"sources":1325,"tags":1326},"http://www.redhat.com/support/errata/RHSA-2010-0786.html",[303,297,304],[306,350,309,310],{"url":1328,"sources":1329,"tags":1330},"https://svn.resiprocate.org/rep/ietf-drafts/ekr/draft-rescorla-tls-renegotiate.txt",[303,297,304],[584,309,310],{"url":1332,"sources":1333,"tags":1334},"http://secunia.com/advisories/38003",[303,297],[309,332],{"url":1336,"sources":1337,"tags":1338},"http://support.apple.com/kb/HT4171",[303,297,304],[321,309,310],{"url":1340,"sources":1341,"tags":1342},"http://www.securitytracker.com/id?1023428",[303,297],[315,316,309],{"url":1344,"sources":1345,"tags":1346},"http://www.openwall.com/lists/oss-security/2009/11/20/1",[303,297,304],[308,372,309,310],{"url":1348,"sources":1349,"tags":1350},"http://www.vupen.com/english/advisories/2009/3354",[303,297],[315,341,309],{"url":1352,"sources":1353,"tags":1354},"http://www.securitytracker.com/id?1023274",[303,297],[315,316,309],{"url":1356,"sources":1357,"tags":1358},"https://www.redhat.com/archives/fedora-package-announce/2009-December/msg00634.html",[303,297,304],[306,359,309,310],{"url":1360,"sources":1361,"tags":1362},"http://secunia.com/advisories/39242",[303,297],[309,332],{"url":1364,"sources":1365,"tags":1366},"https://kb.bluecoat.com/index?page=content&id=SA50",[303,297,304],[321,309,310],{"url":1368,"sources":1369,"tags":1370},"http://secunia.com/advisories/38241",[303,297],[309,332],{"url":1372,"sources":1373,"tags":1374},"http://secunia.com/advisories/42377",[303,297],[309,332],{"url":1376,"sources":1377,"tags":1378},"http://security.gentoo.org/glsa/glsa-201203-22.xml",[303,297,304],[306,421,309,310],{"url":1380,"sources":1381,"tags":1382},"http://www.openwall.com/lists/oss-security/2009/11/05/3",[303,297,304],[308,372,309,310],{"url":1384,"sources":1385,"tags":1386},"http://lists.opensuse.org/opensuse-security-announce/2010-10/msg00006.html",[303,297,304],[306,465,309,310],{"url":1388,"sources":1389,"tags":1390},"http://osvdb.org/60972",[303,297],[315,326,327],{"url":1392,"sources":1393,"tags":1394},"http://www.securitytracker.com/id?1023426",[303,297],[315,316,309],{"url":1396,"sources":1397,"tags":1398},"http://secunia.com/advisories/38484",[303,297],[309,332],{"url":1400,"sources":1401,"tags":1402},"http://www.mandriva.com/security/advisories?name=MDVSA-2010:084",[303,297,304],[306,521,327,310],{"url":1404,"sources":1405,"tags":1406},"http://www.betanews.com/article/1257452450",[303,297,304],[584,309,310],{"url":1408,"sources":1409,"tags":1410},"http://sunsolve.sun.com/search/document.do?assetkey=1-77-1021653.1-1",[303,297,304],[306,559,327,310],{"url":1412,"sources":1413,"tags":1414},"http://www.mozilla.org/security/announce/2010/mfsa2010-22.html",[303,297,304],[321,309,310],{"url":1416,"sources":1417,"tags":1418},"http://www.securityfocus.com/archive/1/516397/100/0/threaded",[303,297],[308,832,309,315],{"url":1420,"sources":1421,"tags":1422},"http://openbsd.org/errata46.html#004_openssl",[303,297,304],[306,482,309,310],{"url":1424,"sources":1425,"tags":1426},"http://secunia.com/advisories/41967",[303,297],[309,332],{"url":1428,"sources":1429,"tags":1430},"http://www.redhat.com/support/errata/RHSA-2010-0807.html",[303,297,304],[306,350,309,310],{"url":1432,"sources":1433,"tags":1434},"http://www.vupen.com/english/advisories/2010/1191",[303,297],[315,341,309],{"url":1436,"sources":1437,"tags":1438},"http://seclists.org/fulldisclosure/2009/Nov/139",[303,297,304],[308,1439,309,310],"X Refsource FULLDISC",{"url":1441,"sources":1442,"tags":1443},"https://support.f5.com/kb/en-us/solutions/public/10000/700/sol10737.html",[303,297,304],[584,309,310],{"url":1445,"sources":1446,"tags":1447},"http://www.openwall.com/lists/oss-security/2009/11/05/5",[303,297,304],[308,372,309,310],{"url":1449,"sources":1450,"tags":1451},"http://secunia.com/advisories/39713",[303,297],[309,332],{"url":1453,"sources":1454,"tags":1455},"http://secunia.com/advisories/42733",[303,297],[309,332],{"url":1457,"sources":1458,"tags":1459},"http://secunia.com/advisories/37291",[303,297],[309,332],{"url":1461,"sources":1462,"tags":1463},"http://lists.fedoraproject.org/pipermail/package-announce/2010-October/049455.html",[303,297,304],[306,359,309,310],{"url":1465,"sources":1466,"tags":1467},"http://lists.fedoraproject.org/pipermail/package-announce/2010-April/039957.html",[303,297,304],[306,359,309,310],{"url":1469,"sources":1470,"tags":1471},"http://www.vupen.com/english/advisories/2010/2745",[303,297],[315,341,309],{"url":1473,"sources":1474,"tags":1475},"http://sunsolve.sun.com/search/document.do?assetkey=1-26-273350-1",[303,297,304],[306,559,327,310],{"url":1477,"sources":1478,"tags":1479},"http://www.vupen.com/english/advisories/2010/0994",[303,297],[315,341,309],{"url":1481,"sources":1482,"tags":1483},"http://www.vupen.com/english/advisories/2010/0173",[303,297],[315,341,309],{"url":1485,"sources":1486,"tags":1487},"http://www.vupen.com/english/advisories/2010/1054",[303,297],[315,341,309],{"url":1489,"sources":1490,"tags":1491},"http://osvdb.org/65202",[303,297],[315,326,327],{"url":1493,"sources":1494,"tags":1495},"http://h20000.www2.hp.com/bizsupport/TechSupport/Document.jsp?objectID=c02436041",[303,297,304],[306,438,327,310],{"url":1497,"sources":1498,"tags":1499},"http://lists.fedoraproject.org/pipermail/package-announce/2010-October/049528.html",[303,297,304],[306,359,309,310],{"url":1501,"sources":1502,"tags":1503},"http://lists.gnu.org/archive/html/gnutls-devel/2009-11/msg00029.html",[303,297,304],[308,372,309,310],{"url":1505,"sources":1506,"tags":1507},"http://archives.neohapsis.com/archives/bugtraq/2013-11/0120.html",[303,297,304],[308,832,327,310],{"url":177,"sources":1509,"tags":1510},[303,297,304],[584,638,309,310],{"url":1512,"sources":1513,"tags":1514},"http://secunia.com/advisories/42811",[303,297],[309,332],{"url":1516,"sources":1517,"tags":1518},"https://lists.apache.org/thread.html/ba661b0edd913b39ff129a32d855620dd861883ade05fd88a8ce517d%40%3Cdev.tomcat.apache.org%3E",[303,297],[308,372],{"url":1520,"sources":1521,"tags":1522},"https://lists.apache.org/thread.html/f8e0814e11c7f21f42224b6de111cb3f5e5ab5c15b78924c516d4ec2%40%3Cdev.tomcat.apache.org%3E",[303,297],[308,372],{"url":1524,"sources":1525,"tags":1526},"https://lists.apache.org/thread.html/rf8e8c091182b45daa50d3557cad9b10bb4198e3f08cf8f1c66a1b08d%40%3Cdev.tomcat.apache.org%3E",[303,297],[308,372],{"url":1528,"sources":1529,"tags":1530},"https://lists.apache.org/thread.html/re3b72cbb13e1dfe85c4a06959a3b6ca6d939b407ecca80db12b54220%40%3Cdev.tomcat.apache.org%3E",[303,297],[308,372],{"url":1532,"sources":1533,"tags":1534},"https://nvd.nist.gov/vuln/detail/CVE-2009-3555",[304],[1535],"Advisory",{"url":1537,"sources":1538,"tags":1539},"https://github.com/apache/tomcat/commit/14e4efd925da58b9fa63f20969fb7349b8a9c30d",[304],[310],{"url":1541,"sources":1542,"tags":1543},"https://github.com/apache/tomcat/commit/2d4ca03acc27cc883c404d1745d92f983b6fada3",[304],[310],{"url":1545,"sources":1546,"tags":1547},"https://github.com/apache/tomcat/commit/30af3f5630542a2340781f66553e734a6fd69701",[304],[310],{"url":1549,"sources":1550,"tags":1551},"https://github.com/apache/tomcat/commit/328a523cbb2a2d4cd55283180614d4e03e2f8f02",[304],[310],{"url":1553,"sources":1554,"tags":1555},"https://github.com/apache/tomcat/commit/3d315ac9dfaa2c03b4df82938d78bf5b755766b3",[304],[310],{"url":1557,"sources":1558,"tags":1559},"https://github.com/apache/tomcat/commit/56f67141e82e16f68a860c3af9b7342da35cbe7d",[304],[310],{"url":1561,"sources":1562,"tags":1563},"https://github.com/apache/tomcat/commit/b4e9488629bf03b4b65abf335e536e85386d1366",[304],[310],{"url":1565,"sources":1566,"tags":1567},"https://github.com/apache/tomcat/commit/df9633116b5fec8f47f1f008fb89a6e9d5895cd0",[304],[310],{"url":1569,"sources":1570,"tags":1571},"https://oval.cisecurity.org/repository/search/definition/oval:org.mitre.oval:def:11617",[304],[310],{"url":1573,"sources":1574,"tags":1575},"https://oval.cisecurity.org/repository/search/definition/oval:org.mitre.oval:def:11578",[304],[310],{"url":1577,"sources":1578,"tags":1579},"https://oval.cisecurity.org/repository/search/definition/oval:org.mitre.oval:def:10088",[304],[310],{"url":1581,"sources":1582,"tags":1583},"https://lists.apache.org/thread.html/rf8e8c091182b45daa50d3557cad9b10bb4198e3f08cf8f1c66a1b08d@\u003Cdev.tomcat.apache.org>",[304],[310],{"url":1585,"sources":1586,"tags":1587},"https://lists.apache.org/thread.html/re3b72cbb13e1dfe85c4a06959a3b6ca6d939b407ecca80db12b54220@\u003Cdev.tomcat.apache.org>",[304],[310],{"url":1589,"sources":1590,"tags":1591},"https://lists.apache.org/thread.html/f8e0814e11c7f21f42224b6de111cb3f5e5ab5c15b78924c516d4ec2@\u003Cdev.tomcat.apache.org>",[304],[310],{"url":1593,"sources":1594,"tags":1595},"https://lists.apache.org/thread.html/ba661b0edd913b39ff129a32d855620dd861883ade05fd88a8ce517d@\u003Cdev.tomcat.apache.org>",[304],[310],{"url":1597,"sources":1598,"tags":1599},"https://tomcat.apache.org/security-7.html",[304],[310],{"url":1601,"sources":1602,"tags":1603},"https://tomcat.apache.org/security-6.html",[304],[310],{"url":1605,"sources":1606,"tags":1607},"https://tomcat.apache.org/security-5.html",[304],[310],{"url":1609,"sources":1610,"tags":1611},"https://oval.cisecurity.org/repository/search/definition/oval:org.mitre.oval:def:8535",[304],[310],{"url":1613,"sources":1614,"tags":1615},"https://oval.cisecurity.org/repository/search/definition/oval:org.mitre.oval:def:8366",[304],[310],{"url":1617,"sources":1618,"tags":1619},"https://oval.cisecurity.org/repository/search/definition/oval:org.mitre.oval:def:7973",[304],[310],{"url":1621,"sources":1622,"tags":1623},"https://oval.cisecurity.org/repository/search/definition/oval:org.mitre.oval:def:7478",[304],[310],{"url":1625,"sources":1626,"tags":1627},"https://oval.cisecurity.org/repository/search/definition/oval:org.mitre.oval:def:7315",[304],[310],{"url":1629,"sources":1630,"tags":1631},"https://github.com/apache/tomcat",[304],[1632],"PACKAGE",{"url":1634,"sources":1635,"tags":1636},"https://access.redhat.com/errata/RHSA-2010:0408",[304],[310],{"url":1638,"sources":1639,"tags":1640},"https://access.redhat.com/errata/RHSA-2010:0339",[304],[310],{"url":1642,"sources":1643,"tags":1644},"https://access.redhat.com/errata/RHSA-2010:0338",[304],[310],{"url":1646,"sources":1647,"tags":1648},"https://access.redhat.com/errata/RHSA-2010:0337",[304],[310],{"url":1650,"sources":1651,"tags":1652},"https://access.redhat.com/errata/RHSA-2010:0167",[304],[310],{"url":1654,"sources":1655,"tags":1656},"https://access.redhat.com/errata/RHSA-2010:0166",[304],[310],{"url":1658,"sources":1659,"tags":1660},"https://access.redhat.com/errata/RHSA-2010:0165",[304],[310],{"url":1662,"sources":1663,"tags":1664},"https://access.redhat.com/errata/RHSA-2010:0164",[304],[310],{"url":1666,"sources":1667,"tags":1668},"https://access.redhat.com/errata/RHSA-2010:0163",[304],[310],{"url":1670,"sources":1671,"tags":1672},"https://access.redhat.com/errata/RHSA-2010:0162",[304],[310],{"url":1674,"sources":1675,"tags":1676},"https://access.redhat.com/errata/RHSA-2010:0155",[304],[310],{"url":1678,"sources":1679,"tags":1680},"https://access.redhat.com/errata/RHSA-2010:0130",[304],[310],{"url":1682,"sources":1683,"tags":1684},"https://access.redhat.com/errata/RHSA-2010:0119",[304],[310],{"url":1686,"sources":1687,"tags":1688},"https://access.redhat.com/errata/RHSA-2010:0011",[304],[310],{"url":1690,"sources":1691,"tags":1692},"https://access.redhat.com/errata/RHSA-2009:1694",[304],[310],{"url":1694,"sources":1695,"tags":1696},"https://access.redhat.com/errata/RHSA-2009:1580",[304],[310],{"url":1698,"sources":1699,"tags":1700},"https://access.redhat.com/errata/RHSA-2009:1579",[304],[310],{"url":1702,"sources":1703,"tags":1704},"https://bz.apache.org/bugzilla/show_bug.cgi?id=50325",[304],[310],{"url":1706,"sources":1707,"tags":1708},"https://access.redhat.com/security/cve/CVE-2009-3555",[304],[310],{"url":1710,"sources":1711,"tags":1712},"https://access.redhat.com/errata/RHSA-2015:1591",[304],[310],{"url":1714,"sources":1715,"tags":1716},"https://access.redhat.com/errata/RHSA-2011:0880",[304],[310],{"url":1718,"sources":1719,"tags":1720},"https://access.redhat.com/errata/RHSA-2010:0987",[304],[310],{"url":1722,"sources":1723,"tags":1724},"https://access.redhat.com/errata/RHSA-2010:0986",[304],[310],{"url":1726,"sources":1727,"tags":1728},"https://access.redhat.com/errata/RHSA-2010:0865",[304],[310],{"url":1730,"sources":1731,"tags":1732},"https://access.redhat.com/errata/RHSA-2010:0807",[304],[310],{"url":1734,"sources":1735,"tags":1736},"https://access.redhat.com/errata/RHSA-2010:0786",[304],[310],{"url":1738,"sources":1739,"tags":1740},"https://access.redhat.com/errata/RHSA-2010:0770",[304],[310],{"url":1742,"sources":1743,"tags":1744},"https://access.redhat.com/errata/RHSA-2010:0768",[304],[310],{"url":1746,"sources":1747,"tags":1748},"https://access.redhat.com/errata/RHSA-2010:0440",[304],[310],{"url":1750,"sources":1751,"tags":1752},"http://www.opera.com/docs/changelogs/unix/1060",[304],[310],{"url":1754,"sources":1755,"tags":1756},"http://www.opera.com/support/search/view/944",[304],[310],{"url":197,"sources":1758,"tags":1759},[303,297],[638],[],{"date":1762,"score":293,"percentile":1763},"2026-06-04",0.88216,[1765,1769,1772,1775,1778,1781,1784,1787,1789,1792,1795,1798,1801,1804,1807,1810,1813,1816,1819,1821,1824,1827,1831,1833,1836,1839,1842,1845,1849,1851,1854,1857,1860,1863,1866,1868,1871,1874,1877,1880,1883,1886,1889,1892,1894,1897,1900,1902,1904,1907,1910,1913,1916,1919,1923,1926,1929,1932,1935,1938,1941,1944,1947,1950,1952,1955,1958,1961,1964,1966,1968,1971,1973,1977,1980,1983,1986,1990,1993,1996,1999,2003,2006,2009,2011,2014,2018,2021,2024,2027],{"date":1766,"score":1767,"percentile":1768},"2025-11-04",0.03294,0.86703,{"date":1770,"score":1767,"percentile":1771},"2025-11-05",0.86706,{"date":1773,"score":1767,"percentile":1774},"2025-11-06",0.86702,{"date":1776,"score":1767,"percentile":1777},"2025-11-07",0.86712,{"date":1779,"score":1767,"percentile":1780},"2025-11-08",0.86716,{"date":1782,"score":1767,"percentile":1783},"2025-11-09",0.8671,{"date":1785,"score":1767,"percentile":1786},"2025-11-10",0.86709,{"date":1788,"score":1767,"percentile":1780},"2025-11-11",{"date":1790,"score":1767,"percentile":1791},"2025-11-12",0.86722,{"date":1793,"score":1767,"percentile":1794},"2025-11-13",0.86727,{"date":1796,"score":1767,"percentile":1797},"2025-11-14",0.8673,{"date":1799,"score":1767,"percentile":1800},"2025-11-15",0.86724,{"date":1802,"score":1767,"percentile":1803},"2025-11-16",0.86726,{"date":1805,"score":1767,"percentile":1806},"2025-11-17",0.86718,{"date":1808,"score":1767,"percentile":1809},"2025-11-18",0.85981,{"date":1811,"score":1767,"percentile":1812},"2025-11-19",0.85983,{"date":1814,"score":1767,"percentile":1815},"2025-11-20",0.85984,{"date":1817,"score":1767,"percentile":1818},"2025-11-21",0.86732,{"date":1820,"score":1767,"percentile":1803},"2025-11-22",{"date":1822,"score":1767,"percentile":1823},"2025-11-23",0.8672,{"date":1825,"score":1767,"percentile":1826},"2025-11-24",0.86719,{"date":1828,"score":1829,"percentile":1830},"2025-11-25",0.03076,0.86255,{"date":1832,"score":1829,"percentile":1830},"2025-11-26",{"date":1834,"score":1829,"percentile":1835},"2025-11-27",0.86256,{"date":1837,"score":1829,"percentile":1838},"2025-11-28",0.86237,{"date":1840,"score":1829,"percentile":1841},"2025-11-29",0.86309,{"date":1843,"score":1829,"percentile":1844},"2025-11-30",0.86308,{"date":1846,"score":1847,"percentile":1848},"2025-12-01",0.04064,0.88166,{"date":1850,"score":1847,"percentile":1848},"2025-12-02",{"date":1852,"score":1847,"percentile":1853},"2025-12-03",0.88164,{"date":1855,"score":1829,"percentile":1856},"2025-12-04",0.86299,{"date":1858,"score":1829,"percentile":1859},"2025-12-05",0.86301,{"date":1861,"score":1829,"percentile":1862},"2025-12-06",0.86297,{"date":1864,"score":1829,"percentile":1865},"2025-12-07",0.86284,{"date":1867,"score":1829,"percentile":1865},"2025-12-08",{"date":1869,"score":1829,"percentile":1870},"2025-12-09",0.86291,{"date":1872,"score":1829,"percentile":1873},"2025-12-10",0.86313,{"date":1875,"score":1829,"percentile":1876},"2025-12-11",0.86319,{"date":1878,"score":1829,"percentile":1879},"2025-12-12",0.86321,{"date":1881,"score":1829,"percentile":1882},"2025-12-13",0.86317,{"date":1884,"score":1829,"percentile":1885},"2025-12-14",0.86314,{"date":1887,"score":1829,"percentile":1888},"2025-12-15",0.8631,{"date":1890,"score":1829,"percentile":1891},"2025-12-16",0.86318,{"date":1893,"score":1829,"percentile":1879},"2025-12-17",{"date":1895,"score":1829,"percentile":1896},"2025-12-18",0.8633,{"date":1898,"score":1829,"percentile":1899},"2025-12-19",0.86332,{"date":1901,"score":1829,"percentile":1896},"2025-12-20",{"date":1903,"score":1829,"percentile":1899},"2025-12-21",{"date":1905,"score":1829,"percentile":1906},"2025-12-22",0.86323,{"date":1908,"score":1829,"percentile":1909},"2025-12-23",0.86327,{"date":1911,"score":1829,"percentile":1912},"2025-12-24",0.86331,{"date":1914,"score":1829,"percentile":1915},"2025-12-25",0.86343,{"date":1917,"score":1829,"percentile":1918},"2025-12-26",0.86347,{"date":1920,"score":1921,"percentile":1922},"2025-12-27",0.03012,0.8623,{"date":1924,"score":1829,"percentile":1925},"2025-12-28",0.8634,{"date":1927,"score":1829,"percentile":1928},"2025-12-29",0.86334,{"date":1930,"score":1829,"percentile":1931},"2025-12-30",0.86341,{"date":1933,"score":1829,"percentile":1934},"2025-12-31",0.8635,{"date":1936,"score":1847,"percentile":1937},"2026-01-01",0.8825,{"date":1939,"score":1847,"percentile":1940},"2026-01-02",0.88244,{"date":1942,"score":1847,"percentile":1943},"2026-01-03",0.88243,{"date":1945,"score":1829,"percentile":1946},"2026-01-04",0.86352,{"date":1948,"score":1829,"percentile":1949},"2026-01-05",0.86348,{"date":1951,"score":1829,"percentile":1934},"2026-01-06",{"date":1953,"score":1829,"percentile":1954},"2026-01-07",0.86351,{"date":1956,"score":1829,"percentile":1957},"2026-01-08",0.86361,{"date":1959,"score":1829,"percentile":1960},"2026-01-09",0.8636,{"date":1962,"score":1829,"percentile":1963},"2026-01-10",0.86358,{"date":1965,"score":1829,"percentile":1954},"2026-01-11",{"date":1967,"score":1829,"percentile":1949},"2026-01-12",{"date":1969,"score":1829,"percentile":1970},"2026-01-13",0.86345,{"date":1972,"score":1829,"percentile":1963},"2026-01-14",{"date":1974,"score":1975,"percentile":1976},"2026-01-15",0.0235,0.84475,{"date":1978,"score":1975,"percentile":1979},"2026-01-16",0.84484,{"date":1981,"score":1975,"percentile":1982},"2026-01-17",0.84488,{"date":1984,"score":1975,"percentile":1985},"2026-01-18",0.84486,{"date":1987,"score":1988,"percentile":1989},"2026-01-19",0.01971,0.83106,{"date":1991,"score":1988,"percentile":1992},"2026-01-20",0.83107,{"date":1994,"score":1988,"percentile":1995},"2026-01-21",0.83112,{"date":1997,"score":1988,"percentile":1998},"2026-01-22",0.83118,{"date":2000,"score":2001,"percentile":2002},"2026-01-23",0.02025,0.83363,{"date":2004,"score":2001,"percentile":2005},"2026-01-24",0.83371,{"date":2007,"score":2001,"percentile":2008},"2026-01-25",0.83364,{"date":2010,"score":2001,"percentile":2002},"2026-01-26",{"date":2012,"score":2001,"percentile":2013},"2026-01-27",0.83366,{"date":2015,"score":2016,"percentile":2017},"2026-01-28",0.02296,0.84353,{"date":2019,"score":2016,"percentile":2020},"2026-01-29",0.84354,{"date":2022,"score":2016,"percentile":2023},"2026-01-30",0.84358,{"date":2025,"score":2016,"percentile":2026},"2026-01-31",0.84359,{"date":2028,"score":2029,"percentile":2030},"2026-02-01",0.03526,0.874,[2032,2041],{"source":297,"cvss_v2_0":2033,"cvss_v3_0":9,"cvss_v3_1":2038,"cvss_v4_0":9},{"baseScore":2034,"baseSeverity":9,"vectorString":2035,"impactScore":2036,"exploitabilityScore":2037},5.8,"AV:N/AC:M/Au:N/C:N/I:P/A:P",4.9,8.6,{"baseScore":295,"baseSeverity":2039,"vectorString":298,"impactScore":295,"exploitabilityScore":2040},"CRITICAL",10,{"source":303,"cvss_v2_0":9,"cvss_v3_0":9,"cvss_v3_1":2042,"cvss_v4_0":9},{"baseScore":295,"baseSeverity":2039,"vectorString":298,"impactScore":295,"exploitabilityScore":2040},[2044,2052,2070,2085,2094,2106,2113,2134,2141],{"ecosystem":9,"name":2045,"vendor":9,"product":2045,"cpe_part":9,"purl_type":9,"purl_namespace":9,"purl_name":9,"source":9,"versions":2046},"HTTP Server",[2047],{"version":2048,"is_range":186,"range_type":2049,"version_start":9,"version_start_type":9,"version_end":2050,"version_end_type":2051,"fixed_in":9},"lte2.2.14","cpe","2.2.14","including",{"ecosystem":9,"name":2053,"vendor":2054,"product":2055,"cpe_part":2056,"purl_type":9,"purl_namespace":9,"purl_name":9,"source":9,"versions":2057},"ubuntu linux","canonical","ubuntu_linux","o",[2058,2060,2062,2064,2066,2068],{"version":2059,"is_range":167,"range_type":2049,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"8.04",{"version":2061,"is_range":167,"range_type":2049,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"8.10",{"version":2063,"is_range":167,"range_type":2049,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"9.04",{"version":2065,"is_range":167,"range_type":2049,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"9.10",{"version":2067,"is_range":167,"range_type":2049,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"10.04",{"version":2069,"is_range":167,"range_type":2049,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"10.10",{"ecosystem":9,"name":2071,"vendor":2072,"product":2073,"cpe_part":2056,"purl_type":9,"purl_namespace":9,"purl_name":9,"source":9,"versions":2074},"debian linux","debian","debian_linux",[2075,2077,2079,2081,2083],{"version":2076,"is_range":167,"range_type":2049,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"4.0",{"version":2078,"is_range":167,"range_type":2049,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"5.0",{"version":2080,"is_range":167,"range_type":2049,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"6.0",{"version":2082,"is_range":167,"range_type":2049,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"7.0",{"version":2084,"is_range":167,"range_type":2049,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"8.0",{"ecosystem":9,"name":2086,"vendor":2087,"product":2086,"cpe_part":2088,"purl_type":9,"purl_namespace":9,"purl_name":9,"source":9,"versions":2089},"nginx","f5","a",[2090],{"version":2091,"is_range":186,"range_type":2049,"version_start":2092,"version_start_type":2051,"version_end":2093,"version_end_type":2051,"fixed_in":9},"gte0.1.0_lte0.8.22","0.1.0","0.8.22",{"ecosystem":9,"name":2095,"vendor":2096,"product":2095,"cpe_part":2056,"purl_type":9,"purl_namespace":9,"purl_name":9,"source":9,"versions":2097},"fedora","fedoraproject",[2098,2100,2102,2104],{"version":2099,"is_range":167,"range_type":2049,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"11",{"version":2101,"is_range":167,"range_type":2049,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"12",{"version":2103,"is_range":167,"range_type":2049,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"13",{"version":2105,"is_range":167,"range_type":2049,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"14",{"ecosystem":9,"name":2107,"vendor":2108,"product":2107,"cpe_part":2088,"purl_type":9,"purl_namespace":9,"purl_name":9,"source":9,"versions":2109},"gnutls","gnu",[2110],{"version":2111,"is_range":186,"range_type":2049,"version_start":9,"version_start_type":9,"version_end":2112,"version_end_type":2051,"fixed_in":9},"lte2.8.5","2.8.5",{"ecosystem":2114,"name":2115,"vendor":2116,"product":2117,"cpe_part":9,"purl_type":2118,"purl_namespace":2116,"purl_name":2117,"source":9,"versions":2119},"Maven","org.apache.tomcat:tomcat","org.apache.tomcat","tomcat","maven",[2120,2126,2130],{"version":2121,"is_range":186,"range_type":2122,"version_start":2123,"version_start_type":2051,"version_end":2124,"version_end_type":2125,"fixed_in":9},"gte7_0_0_lt7_0_10","ecosystem","7.0.0","7.0.10","excluding",{"version":2127,"is_range":186,"range_type":2122,"version_start":2128,"version_start_type":2051,"version_end":2129,"version_end_type":2125,"fixed_in":9},"gte6_0_0_lt6_0_32","6.0.0","6.0.32",{"version":2131,"is_range":186,"range_type":2122,"version_start":2132,"version_start_type":2051,"version_end":2133,"version_end_type":2125,"fixed_in":9},"gte5_0_0_lt5_5_33","5.0.0","5.5.33",{"ecosystem":9,"name":2135,"vendor":2136,"product":2135,"cpe_part":2088,"purl_type":9,"purl_namespace":9,"purl_name":9,"source":9,"versions":2137},"nss","mozilla",[2138],{"version":2139,"is_range":186,"range_type":2049,"version_start":9,"version_start_type":9,"version_end":2140,"version_end_type":2051,"fixed_in":9},"lte3.12.4","3.12.4",{"ecosystem":9,"name":2142,"vendor":9,"product":2142,"cpe_part":9,"purl_type":9,"purl_namespace":9,"purl_name":9,"source":9,"versions":2143},"OpenSSL",[2144,2147],{"version":2145,"is_range":186,"range_type":2049,"version_start":9,"version_start_type":9,"version_end":2146,"version_end_type":2051,"fixed_in":9},"lte0.9.8k","0.9.8k",{"version":2148,"is_range":167,"range_type":2049,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"1.0"]