Описание
Security update for bouncycastle
This update for bouncycastle fixes the following security issue:
- CVE-2018-1000180: Fixed flaw in the Low-level interface to RSA key pair generator. RSA Key Pairs generated in low-level API with added certainty may had less M-R tests than expected (bsc#1096291).
Список пакетов
openSUSE Leap 42.3
bouncycastle-1.60-23.10.1
bouncycastle-javadoc-1.60-23.10.1
Ссылки
- E-Mail link for openSUSE-SU-2018:2820-1
- SUSE Security Ratings
Описание
Bouncy Castle BC 1.54 - 1.59, BC-FJA 1.0.0, BC-FJA 1.0.1 and earlier have a flaw in the Low-level interface to RSA key pair generator, specifically RSA Key Pairs generated in low-level API with added certainty may have less M-R tests than expected. This appears to be fixed in versions BC 1.60 beta 4 and later, BC-FJA 1.0.2 and later.
Затронутые продукты
openSUSE Leap 42.3:bouncycastle-1.60-23.10.1
openSUSE Leap 42.3:bouncycastle-javadoc-1.60-23.10.1
Ссылки
- CVE-2018-1000180
- SUSE Bug 1096291
- SUSE Bug 1153385