HIGH8.1CVE-2020-28052Logic error in Legion of the Bouncy Castle BC Java >= 1.65, < 1.67
HIGH7.5CVE-2016-1000343In Bouncy Castle JCE Provider the DSA key pair generator generates a weak private key if used with default values from 0, < 1.56
HIGH7.5CVE-2016-1000342In Bouncy Castle JCE Provider ECDSA does not fully validate ASN.1 encoding of signature on verification from 0, < 1.56
HIGH7.5The Bouncy Castle JCE Provider carry a propagation bug
>= 1.51, < 1.56
HIGH7.5bouncycastle - security update
>= 1.38, < 1.56
HIGH7.5bouncycastle - security update
from 0, < 1.60
HIGH7.4In Bouncy Castle JCE Provider the DHIES implementation allowed the use of ECB mode
from 0, < 1.56
HIGH7.4In Bouncy Castle JCE Provider the ECIES implementation allowed the use of ECB mode
from 0, < 1.56
MEDIUM5.9Moderate severity vulnerability that affects org.bouncycastle:bcprov-jdk14 and org.bouncycastle:bcprov-jdk15
from 0, < 1.56
MEDIUM5.9Moderate severity vulnerability that affects org.bouncycastle:bcprov-jdk14 and org.bouncycastle:bcprov-jdk15
from 0, < 1.56
MEDIUM5.5Bouncy Castle Denial of Service (DoS)
from 0, < 1.73
MEDIUM5.3bouncycastle - security update
from 0, < 1.61
MEDIUM5.3Moderate severity vulnerability that affects org.bouncycastle:bcprov-jdk14 and org.bouncycastle:bcprov-jdk15
from 0, < 1.56
MEDIUM5.1Timing based private key exposure in Bouncy Castle
from 0, < 1.66
LOW3.7In Bouncy Castle JCE Provider the other party DH public key is not fully validated
from 0, < 1.56
—bouncycastle - security update
from 0, < 1.51