<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
  <id>https://cve.radiocsirt.org/rss/recent/all/10</id>
  <title>Most recent entries from all</title>
  <updated>2026-10-02T17:15:52.229629+00:00</updated>
  <author>
    <name>Vulnerability-Lookup</name>
    <email>csirt@opendfir.org</email>
  </author>
  <link href="https://cve.radiocsirt.org" rel="alternate"/>
  <generator uri="https://lkiesow.github.io/python-feedgen" version="1.0.0">python-feedgen</generator>
  <subtitle>Contains only the most 10 recent entries.</subtitle>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/certfr-2021-avi-004</id>
    <title>certfr-2021-avi-004 — De multiples vulnérabilités ont été découvertes dans la bibliothèque
cryptographique Bouncy Castle. Elle permet à un at…</title>
    <updated>2026-10-02T17:15:52.364078+00:00</updated>
    <content>certfr-2021-avi-004</content>
    <link href="https://cve.radiocsirt.org/vuln/certfr-2021-avi-004"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/euvd-2026-46897</id>
    <title>EUVD-2026-46897</title>
    <updated>2026-10-02T17:15:52.364138+00:00</updated>
    <content>EUVD-2026-46897</content>
    <link href="https://cve.radiocsirt.org/vuln/euvd-2026-46897"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/fkie_cve-2020-28052</id>
    <title>fkie_cve-2020-28052</title>
    <updated>2026-10-02T17:15:52.364157+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>An issue was discovered in Legion of the Bouncy Castle BC Java 1.65 and 1.66. The OpenBSDBCrypt.checkPassword utility method compared incorrect data when checking the password, allowing incorrect passwords to indicate they were matching with previously hashed ones that were different.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/fkie_cve-2020-28052"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ghsa-73xv-w5gp-frxh</id>
    <title>GHSA-73xv-w5gp-frxh — Logic error in Legion of the Bouncy Castle BC Java</title>
    <updated>2026-10-02T17:15:52.364187+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> Maven: org.bouncycastle:bcprov-jdk15to18, Maven: org.bouncycastle:bcprov-jdk15, Maven: org.bouncycastle:bcprov-jdk15on, Maven: org.bouncycastle:bcprov-ext-jdk15on, Maven: org.bouncycastle:bcprov-jdk14, Maven: org.bouncycastle:bcprov-jdk16, Maven: org.bouncycastle:bcprov-ext-jdk16</p>
<p>An issue was discovered in Legion of the Bouncy Castle BC Java 1.65 and 1.66. The OpenBSDBCrypt.checkPassword utility method compared incorrect data when checking the password, allowing incorrect passwords to indicate they were matching with previously hashed ones that were different.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ghsa-73xv-w5gp-frxh"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/gsd-2020-28052</id>
    <title>gsd-2020-28052</title>
    <updated>2026-10-02T17:15:52.364223+00:00</updated>
    <content>gsd-2020-28052</content>
    <link href="https://cve.radiocsirt.org/vuln/gsd-2020-28052"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/opensuse-su-2024:10661-1</id>
    <title>openSUSE-SU-2024:10661-1 — bouncycastle-1.68-3.2 on GA media</title>
    <updated>2026-10-02T17:15:52.364236+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>bouncycastle-1.68-3.2 on GA media</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/opensuse-su-2024:10661-1"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/rhsa-2021:0872</id>
    <title>RHSA-2021:0872 — Red Hat Security Advisory: Red Hat JBoss Enterprise Application Platform 7.3.6 security update</title>
    <updated>2026-10-02T17:15:52.364260+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>guava: local information disclosure via temporary directory created with unsafe permissions Undertow: Incomplete fix for CVE-2017-2666 due to permitting invalid characters in HTTP requests bouncycastle: password bypass in OpenBSDBCrypt.checkPassword utility possible jboss-remoting: Threads hold up forever in the EJB server by suppressing the ack from an EJB client undertow: Possible regression in fix for CVE-2020-10687 wildfly: Information disclosure due to publicly accessible privileged actions in JBoss EJB Client</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/rhsa-2021:0872"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ubuntu-cve-2020-28052</id>
    <title>Withdrawn: UBUNTU-CVE-2020-28052</title>
    <updated>2026-10-02T17:15:52.364286+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Withdrawn by the publisher.</strong></p>
<p><strong>Affected:</strong> Ubuntu:16.04:LTS: bouncycastle, Ubuntu:18.04:LTS: bouncycastle, Ubuntu:20.04:LTS: bouncycastle, Ubuntu:22.04:LTS: bouncycastle, Ubuntu:24.04:LTS: bouncycastle, Ubuntu:25.10: bouncycastle</p>
<p>An issue was discovered in Legion of the Bouncy Castle BC Java 1.65 and 1.66. The OpenBSDBCrypt.checkPassword utility method compared incorrect data when checking the password, allowing incorrect passwords to indicate they were matching with previously hashed ones that were different.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ubuntu-cve-2020-28052"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/wid-sec-w-2023-1272</id>
    <title>WID-SEC-W-2023-1272 — Red Hat JBoss Enterprise Application Platform: Mehrere Schwachstellen</title>
    <updated>2026-10-02T17:15:52.364315+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Ein entfernter, anonymer oder lokaler Angreifer kann mehrere Schwachstellen in Red Hat JBoss Enterprise Application Platform ausnutzen, um einen Denial-of-Service-Zustand auslösen, Informationen offenzulegen, Daten zu manipulieren, Sicherheitsmaßnahmen zu umgehen oder einen Cross-Site-Scripting-Angriff durchführen.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/wid-sec-w-2023-1272"/>
  </entry>
</feed>
