pkg:maven/org.bouncycastle/bcprov-jdk18on

Type maven
Namespace org.bouncycastle
Name bcprov-jdk18on

Known advisories, vulnerabilities and fixes for org.bouncycastle/bcprov-jdk18on package.

Repository
https://mvnrepository.com/artifact/org.bouncycastle/bcprov-jdk18on
Moderate 5
Low 1
Type Version Distribution # CVEs # Advisory ID Title Severity Published
Affected < 1.78 CVE-2024-34447
maven MAVEN:GHSA-4H8F-2WVX-GG5W Bouncy Castle Java Cryptography API vulnerable to DNS poisoning low 2024-05-03T18:30:37
(2 months ago)
Fixed = 1.78 CVE-2024-34447
maven MAVEN:GHSA-4H8F-2WVX-GG5W Bouncy Castle Java Cryptography API vulnerable to DNS poisoning low 2024-05-03T18:30:37
(2 months ago)
Affected < 1.78 CVE-2024-29857
maven MAVEN:GHSA-8XFC-GM6G-VGPV Bouncy Castle certificate parsing issues cause high CPU usage during parameter evaluation. moderate 2024-05-14T15:32:54
(2 months ago)
Fixed = 1.78 CVE-2024-29857
maven MAVEN:GHSA-8XFC-GM6G-VGPV Bouncy Castle certificate parsing issues cause high CPU usage during parameter evaluation. moderate 2024-05-14T15:32:54
(2 months ago)
Affected < 1.74 CVE-2023-33201
maven MAVEN:GHSA-HR8G-6V94-X4M9 Bouncy Castle For Java LDAP injection vulnerability moderate 2023-07-05T03:30:23
(12 months ago)
Fixed = 1.74 CVE-2023-33201
maven MAVEN:GHSA-HR8G-6V94-X4M9 Bouncy Castle For Java LDAP injection vulnerability moderate 2023-07-05T03:30:23
(12 months ago)
Affected < 1.78 CVE-2024-30172
maven MAVEN:GHSA-M44J-CFRM-G8QC Bouncy Castle crafted signature and public key can be used to trigger an infinite loop moderate 2024-05-14T15:32:54
(2 months ago)
Fixed = 1.78 CVE-2024-30172
maven MAVEN:GHSA-M44J-CFRM-G8QC Bouncy Castle crafted signature and public key can be used to trigger an infinite loop moderate 2024-05-14T15:32:54
(2 months ago)
Affected < 1.78 CVE-2024-30171
maven MAVEN:GHSA-V435-XC8X-WVR9 Bouncy Castle affected by timing side-channel for RSA key exchange ("The Marvin Attack") moderate 2024-05-14T15:32:54
(2 months ago)
Fixed = 1.78 CVE-2024-30171
maven MAVEN:GHSA-V435-XC8X-WVR9 Bouncy Castle affected by timing side-channel for RSA key exchange ("The Marvin Attack") moderate 2024-05-14T15:32:54
(2 months ago)
Affected < 1.73 CVE-2023-33202
maven MAVEN:GHSA-WJXJ-5M7G-MG7Q Bouncy Castle Denial of Service (DoS) moderate 2023-11-23T18:30:33
(8 months ago)
Fixed = 1.73 CVE-2023-33202
maven MAVEN:GHSA-WJXJ-5M7G-MG7Q Bouncy Castle Denial of Service (DoS) moderate 2023-11-23T18:30:33
(8 months ago)
Loading...