Bouncycastle

Bc-java

55 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.26%
  • Veröffentlicht 16.04.2018 14:29:01
  • Zuletzt bearbeitet 12.05.2025 17:37:16

The default BKS keystore use an HMAC that is only 16 bits long, which can allow an attacker to compromise the integrity of a BKS keystore. Bouncy Castle release 1.47 changes the BKS format to a format which uses a 160 bit HMAC instead. This applies t...

  • EPSS 24.28%
  • Veröffentlicht 13.12.2017 01:29:00
  • Zuletzt bearbeitet 13.05.2026 00:24:29

BouncyCastle TLS prior to version 1.0.3, when configured to use the JCE (Java Cryptography Extension) for cryptographic functions, provides a weak Bleichenbacher oracle when any TLS cipher suite using RSA key exchange is negotiated. An attacker can r...

  • EPSS 0.42%
  • Veröffentlicht 18.04.2016 00:59:33
  • Zuletzt bearbeitet 06.05.2026 22:30:45

The AES-GCM specification in RFC 5084, as used in Android 5.x and 6.x, recommends 12 octets for the aes-ICVlen parameter field, which might make it easier for attackers to defeat a cryptographic protection mechanism and discover an authentication key...

  • EPSS 2.97%
  • Veröffentlicht 08.02.2013 19:55:01
  • Zuletzt bearbeitet 29.04.2026 01:13:23

The TLS implementation in the Bouncy Castle Java library before 1.48 and C# library before 1.8 does not properly consider timing side-channel attacks on a noncompliant MAC check operation during the processing of malformed CBC padding, which allows r...

  • EPSS 2.41%
  • Veröffentlicht 30.03.2009 01:30:00
  • Zuletzt bearbeitet 16.06.2026 22:48:38

The Legion of the Bouncy Castle Java Cryptography API before release 1.38, as used in Crypto Provider Package before 1.36, has unknown impact and remote attack vectors related to "a Bleichenbacher vulnerability in simple RSA CMS signatures without si...