Логотип exploitDog
bind:CVE-2022-45146
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2022-45146

Количество 5

Количество 5

ubuntu логотип

CVE-2022-45146

около 3 лет назад

An issue was discovered in the FIPS Java API of Bouncy Castle BC-FJA before 1.0.2.4. Changes to the JVM garbage collector in Java 13 and later trigger an issue in the BC-FJA FIPS modules where it is possible for temporary keys used by the module to be zeroed out while still in use by the module, resulting in errors or potential information loss. NOTE: FIPS compliant users are unaffected because the FIPS certification is only for Java 7, 8, and 11.

CVSS3: 5.5
EPSS: Низкий
redhat логотип

CVE-2022-45146

около 3 лет назад

An issue was discovered in the FIPS Java API of Bouncy Castle BC-FJA before 1.0.2.4. Changes to the JVM garbage collector in Java 13 and later trigger an issue in the BC-FJA FIPS modules where it is possible for temporary keys used by the module to be zeroed out while still in use by the module, resulting in errors or potential information loss. NOTE: FIPS compliant users are unaffected because the FIPS certification is only for Java 7, 8, and 11.

CVSS3: 5.5
EPSS: Низкий
nvd логотип

CVE-2022-45146

около 3 лет назад

An issue was discovered in the FIPS Java API of Bouncy Castle BC-FJA before 1.0.2.4. Changes to the JVM garbage collector in Java 13 and later trigger an issue in the BC-FJA FIPS modules where it is possible for temporary keys used by the module to be zeroed out while still in use by the module, resulting in errors or potential information loss. NOTE: FIPS compliant users are unaffected because the FIPS certification is only for Java 7, 8, and 11.

CVSS3: 5.5
EPSS: Низкий
github логотип

GHSA-68m8-v89j-7j2p

около 3 лет назад

Garbage collection issue in BC-FJA in Java 13 and later

CVSS3: 5.5
EPSS: Низкий
fstec логотип

BDU:2023-05435

около 3 лет назад

Уязвимость компонента JVM средства криптографической защиты Bouncy Castle, позволяющая нарушителю раскрыть защищаемую информацию

CVSS3: 5.5
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2022-45146

An issue was discovered in the FIPS Java API of Bouncy Castle BC-FJA before 1.0.2.4. Changes to the JVM garbage collector in Java 13 and later trigger an issue in the BC-FJA FIPS modules where it is possible for temporary keys used by the module to be zeroed out while still in use by the module, resulting in errors or potential information loss. NOTE: FIPS compliant users are unaffected because the FIPS certification is only for Java 7, 8, and 11.

CVSS3: 5.5
0%
Низкий
около 3 лет назад
redhat логотип
CVE-2022-45146

An issue was discovered in the FIPS Java API of Bouncy Castle BC-FJA before 1.0.2.4. Changes to the JVM garbage collector in Java 13 and later trigger an issue in the BC-FJA FIPS modules where it is possible for temporary keys used by the module to be zeroed out while still in use by the module, resulting in errors or potential information loss. NOTE: FIPS compliant users are unaffected because the FIPS certification is only for Java 7, 8, and 11.

CVSS3: 5.5
0%
Низкий
около 3 лет назад
nvd логотип
CVE-2022-45146

An issue was discovered in the FIPS Java API of Bouncy Castle BC-FJA before 1.0.2.4. Changes to the JVM garbage collector in Java 13 and later trigger an issue in the BC-FJA FIPS modules where it is possible for temporary keys used by the module to be zeroed out while still in use by the module, resulting in errors or potential information loss. NOTE: FIPS compliant users are unaffected because the FIPS certification is only for Java 7, 8, and 11.

CVSS3: 5.5
0%
Низкий
около 3 лет назад
github логотип
GHSA-68m8-v89j-7j2p

Garbage collection issue in BC-FJA in Java 13 and later

CVSS3: 5.5
0%
Низкий
около 3 лет назад
fstec логотип
BDU:2023-05435

Уязвимость компонента JVM средства криптографической защиты Bouncy Castle, позволяющая нарушителю раскрыть защищаемую информацию

CVSS3: 5.5
0%
Низкий
около 3 лет назад

Уязвимостей на страницу