An open API service providing security vulnerability metadata for many open source software ecosystems.

maven

org.bouncycastle:bcprov-jdk15to18

maven

The Bouncy Castle Crypto package is a Java implementation of cryptographic algorithms. This jar contains the JCA/JCE provider and low-level API for the BC Java version 1.82 for Java 1.5 to Java 1.8.

View on github.com · View on repo1.maven.org

Security Advisories for org.bouncycastle:bcprov-jdk15to18 in maven

Moderate
3 months ago

Bouncy Castle for Java on All (API modules) allows Excessive Allocation GSA_kwCzR0hTQS02N21mLTNjcjUtOHcyM84ABK8P

maven org.bouncycastle:bctls-jdk18on, org.bouncycastle:bctls-jdk15to18, org.bouncycastle:bctls-jdk14, org.bouncycastle:bcprov-jdk18on, org.bouncycastle:bcprov-jdk15to18, org.bouncycastle:bcprov-jdk14
Moderate
over 1 year ago

Bouncy Castle certificate parsing issues cause high CPU usage during parameter evaluation. GSA_kwCzR0hTQS04eGZjLWdtNmctdmdwds4AA75b

nuget, maven BouncyCastle.Cryptography, BouncyCastle, org.bouncycastle:bc-fips, org.bouncycastle:bctls-jdk15to18, org.bouncycastle:bctls-jdk14, org.bouncycastle:bctls-jdk18on, org.bouncycastle:bcprov-jdk14, org.bouncycastle:bcprov-jdk15to18, org.bouncycastle:bcprov-jdk15on, org.bouncycastle:bcprov-jdk18on
Moderate
over 1 year ago

Bouncy Castle affected by timing side-channel for RSA key exchange ("The Marvin Attack") GSA_kwCzR0hTQS12NDM1LXhjOHgtd3ZyOc4AA76H

nuget, maven BouncyCastle.Cryptography, BouncyCastle, org.bouncycastle:bctls-jdk15to18, org.bouncycastle:bctls-jdk14, org.bouncycastle:bctls-jdk18on, org.bouncycastle:bcprov-jdk14, org.bouncycastle:bcprov-jdk15to18, org.bouncycastle:bcprov-jdk15on, org.bouncycastle:bcprov-jdk18on, org.bouncycastle:bctls-fips
Moderate
over 1 year ago

Bouncy Castle Java Cryptography API vulnerable to DNS poisoning GSA_kwCzR0hTQS00aDhmLTJ3dngtZ2c1d84AA7vg

maven org.bouncycastle:bcprov-jdk12, org.bouncycastle:bcprov-jdk14, org.bouncycastle:bcprov-jdk15to18, org.bouncycastle:bcprov-jdk18on
Moderate
over 2 years ago

Bouncy Castle For Java LDAP injection vulnerability GSA_kwCzR0hTQS1ocjhnLTZ2OTQteDRtOc4AA0NP

maven org.bouncycastle:bcprov-debug-jdk15on, org.bouncycastle:bcprov-ext-jdk15on, org.bouncycastle:bcprov-jdk15on, org.bouncycastle:bcprov-debug-jdk14, org.bouncycastle:bcprov-ext-jdk14, org.bouncycastle:bcprov-jdk14, org.bouncycastle:bcprov-debug-jdk18on, org.bouncycastle:bcprov-debug-jdk15to18, org.bouncycastle:bcprov-ext-jdk18on, org.bouncycastle:bcprov-ext-jdk15to18, org.bouncycastle:bcprov-jdk15to18, org.bouncycastle:bcprov-jdk18on
Moderate
about 4 years ago

Timing based private key exposure in Bouncy Castle MDE2OlNlY3VyaXR5QWR2aXNvcnlHSFNBLTZ4eDMtcmc5OS1nYzNw

maven org.bouncycastle:bcprov-jdk16, org.bouncycastle:bcprov-jdk15to18, org.bouncycastle:bcprov-jdk15on, org.bouncycastle:bcprov-jdk15, org.bouncycastle:bcprov-jdk14, org.bouncycastle:bcprov-ext-jdk16, org.bouncycastle:bcprov-ext-jdk15on, org.bouncycastle:bc-fips
High
over 4 years ago

Logic error in Legion of the Bouncy Castle BC Java MDE2OlNlY3VyaXR5QWR2aXNvcnlHSFNBLTczeHYtdzVncC1mcnho

maven org.bouncycastle:bcprov-ext-jdk16, org.bouncycastle:bcprov-jdk16, org.bouncycastle:bcprov-jdk14, org.bouncycastle:bcprov-ext-jdk15on, org.bouncycastle:bcprov-jdk15on, org.bouncycastle:bcprov-jdk15, org.bouncycastle:bcprov-jdk15to18
Moderate
over 4 years ago

Observable Differences in Behavior to Error Inputs in Bouncy Castle MDE2OlNlY3VyaXR5QWR2aXNvcnlHSFNBLTcybTUtZnZ2di01NW02

maven org.bouncycastle:bcprov-jdk15to18, org.bouncycastle:bcprov-jdk15on, org.bouncycastle:bcprov-ext-jdk16, org.bouncycastle:bcprov-ext-jdk15on, org.bouncycastle:bc-fips, org.bouncycastle:bcprov-jdk16, org.bouncycastle:bcprov-jdk15, org.bouncycastle:bcprov-jdk14

Filter by Severity