Описание
An issue was discovered in Bouncy Castle Java TLS API and JSSE Provider before 1.78. Timing-based leakage may occur in RSA based handshakes because of exception processing.
| Релиз | Статус | Примечание |
|---|---|---|
| devel | not-affected | 1.80-3 |
| esm-apps-legacy/xenial | ignored | changes too intrusive |
| esm-apps/bionic | released | 1.59-1ubuntu0.1~esm1 |
| esm-apps/focal | released | 1.61-1ubuntu0.1~esm1 |
| esm-apps/jammy | released | 1.68-5ubuntu0.1~esm1 |
| esm-apps/noble | released | 1.77-1ubuntu0.1~esm1 |
| esm-apps/resolute | not-affected | 1.80-3 |
| esm-apps/xenial | ignored | end of ESM support, was ignored [changes too intrusive] |
| focal | ignored | end of standard support, was needs-triage |
| jammy | needed |
Показывать по
10
5.9 Medium
CVSS3
Связанные уязвимости
CVSS3: 5.9
redhat
больше 2 лет назад
An issue was discovered in Bouncy Castle Java TLS API and JSSE Provider before 1.78. Timing-based leakage may occur in RSA based handshakes because of exception processing.
CVSS3: 5.9
nvd
больше 2 лет назад
An issue was discovered in Bouncy Castle Java TLS API and JSSE Provider before 1.78. Timing-based leakage may occur in RSA based handshakes because of exception processing.
CVSS3: 5.9
debian
больше 2 лет назад
An issue was discovered in Bouncy Castle Java TLS API and JSSE Provide ...
5.9 Medium
CVSS3