<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Sat, 03 Oct 2026 09:02:50 +0000</lastBuildDate>
    <item>
      <title>bdu:2023-07367</title>
      <link>https://cve.radiocsirt.org/vuln/bdu:2023-07367</link>
      <description>bdu:2023-07367</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/bdu:2023-07367</guid>
    </item>
    <item>
      <title>certfr-2021-avi-951 — De multiples vulnérabilités ont été découvertes dans le noyau Linux de
RedHat. Certaines d'entre elles permettent à un…</title>
      <link>https://cve.radiocsirt.org/vuln/certfr-2021-avi-951</link>
      <description>certfr-2021-avi-951</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/certfr-2021-avi-951</guid>
    </item>
    <item>
      <title>EUVD-2026-42979</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-42979</link>
      <description>EUVD-2026-42979</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-42979</guid>
    </item>
    <item>
      <title>fkie_cve-2020-15522</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2020-15522</link>
      <description>&lt;p&gt;Bouncy Castle BC Java before 1.66, BC C# .NET before 1.8.7, BC-FJA before 1.0.1.2, 1.0.2.1, and BC-FNA before 1.0.1.1 have a timing issue within the EC math library that can expose information about the private key when an attacker is able to observe timing information for the generation of multiple deterministic ECDSA signatures.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Bouncy Castle BC Java before 1.66, BC C# .NET before 1.8.7, BC-FJA before 1.0.1.2, 1.0.2.1, and BC-FNA before 1.0.1.1 have a timing issue within the EC math library that can expose information about the private key when an attacker is able to observe timing information for the generation of multiple deterministic ECDSA signatures.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2020-15522</guid>
    </item>
    <item>
      <title>GHSA-6xx3-rg99-gc3p — Timing based private key exposure in Bouncy Castle</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-6xx3-rg99-gc3p</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Maven: org.bouncycastle:bc-fips, Maven: org.bouncycastle:bcprov-ext-jdk15on, Maven: org.bouncycastle:bcprov-ext-jdk16, Maven: org.bouncycastle:bcprov-jdk14, Maven: org.bouncycastle:bcprov-jdk15, Maven: org.bouncycastle:bcprov-jdk15on, Maven: org.bouncycastle:bcprov-jdk15to18, Maven: org.bouncycastle:bcprov-jdk16, NuGet: BouncyCastle&lt;/p&gt;
&lt;p&gt;Bouncy Castle BC Java before 1.66, BC C# .NET before 1.8.7, BC-FJA before 1.0.2.1, BC before 1.66, BC-FNA before 1.0.1.1 have a timing issue within the EC math library that can expose information about the private key when an attacker is able to observe timing information for the generation of multiple deterministic ECDSA signatures.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Maven: org.bouncycastle:bc-fips, Maven: org.bouncycastle:bcprov-ext-jdk15on, Maven: org.bouncycastle:bcprov-ext-jdk16, Maven: org.bouncycastle:bcprov-jdk14, Maven: org.bouncycastle:bcprov-jdk15, Maven: org.bouncycastle:bcprov-jdk15on, Maven: org.bouncycastle:bcprov-jdk15to18, Maven: org.bouncycastle:bcprov-jdk16, NuGet: BouncyCastle&lt;/p&gt;
&lt;p&gt;Bouncy Castle BC Java before 1.66, BC C# .NET before 1.8.7, BC-FJA before 1.0.2.1, BC before 1.66, BC-FNA before 1.0.1.1 have a timing issue within the EC math library that can expose information about the private key when an attacker is able to observe timing information for the generation of multiple deterministic ECDSA signatures.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-6xx3-rg99-gc3p</guid>
    </item>
    <item>
      <title>gsd-2020-15522</title>
      <link>https://cve.radiocsirt.org/vuln/gsd-2020-15522</link>
      <description>gsd-2020-15522</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/gsd-2020-15522</guid>
    </item>
    <item>
      <title>OESA-2021-1301 — bouncycastle security update</title>
      <link>https://cve.radiocsirt.org/vuln/oesa-2021-1301</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; openEuler:20.03-LTS-SP1: bouncycastle, openEuler:20.03-LTS-SP2: bouncycastle&lt;/p&gt;
&lt;p&gt;The package is organised so that it contains a light-weight API suitable for use in any environment (including the newly released J2ME) with the additional infrastructure to conform the algorithms to the JCE framework.&#13;
&#13;
Security Fix(es):&#13;
&#13;
Bouncy Castle BC Java before 1.66, BC C# .NET before 1.8.7, BC-FJA before 1.0.1.2, 1.0.2.1, and BC-FNA before 1.0.1.1 have a timing issue within the EC math library that can expose information about the private key when an attacker is able to observe timing information for the generation of multiple deterministic ECDSA signatures.(CVE-2020-15522)&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; openEuler:20.03-LTS-SP1: bouncycastle, openEuler:20.03-LTS-SP2: bouncycastle&lt;/p&gt;
&lt;p&gt;The package is organised so that it contains a light-weight API suitable for use in any environment (including the newly released J2ME) with the additional infrastructure to conform the algorithms to the JCE framework.&#13;
&#13;
Security Fix(es):&#13;
&#13;
Bouncy Castle BC Java before 1.66, BC C# .NET before 1.8.7, BC-FJA before 1.0.1.2, 1.0.2.1, and BC-FNA before 1.0.1.1 have a timing issue within the EC math library that can expose information about the private key when an attacker is able to observe timing information for the generation of multiple deterministic ECDSA signatures.(CVE-2020-15522)&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/oesa-2021-1301</guid>
    </item>
    <item>
      <title>openSUSE-SU-2021:0940-1 — Security update for bouncycastle</title>
      <link>https://cve.radiocsirt.org/vuln/opensuse-su-2021:0940-1</link>
      <description>&lt;p&gt;Security update for bouncycastle&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Security update for bouncycastle&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/opensuse-su-2021:0940-1</guid>
    </item>
    <item>
      <title>RHSA-2021:1401 — Red Hat Security Advisory: Red Hat Fuse 7.8.1 patch release and security update</title>
      <link>https://cve.radiocsirt.org/vuln/rhsa-2021:1401</link>
      <description>&lt;p&gt;bouncycastle: Timing issue within the EC math library bouncycastle: password bypass in OpenBSDBCrypt.checkPassword utility possible&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;bouncycastle: Timing issue within the EC math library bouncycastle: password bypass in OpenBSDBCrypt.checkPassword utility possible&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/rhsa-2021:1401</guid>
    </item>
    <item>
      <title>SUSE-SU-2021:2163-1 — Security update for bouncycastle</title>
      <link>https://cve.radiocsirt.org/vuln/suse-su-2021:2163-1</link>
      <description>&lt;p&gt;Security update for bouncycastle&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Security update for bouncycastle&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/suse-su-2021:2163-1</guid>
    </item>
    <item>
      <title>UBUNTU-CVE-2020-15522</title>
      <link>https://cve.radiocsirt.org/vuln/ubuntu-cve-2020-15522</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:Pro:16.04:LTS: bouncycastle, Ubuntu:Pro:18.04:LTS: bouncycastle, Ubuntu:Pro:20.04:LTS: bouncycastle&lt;/p&gt;
&lt;p&gt;Bouncy Castle BC Java before 1.66, BC C# .NET before 1.8.7, BC-FJA before 1.0.1.2, 1.0.2.1, and BC-FNA before 1.0.1.1 have a timing issue within the EC math library that can expose information about the private key when an attacker is able to observe timing information for the generation of multiple deterministic ECDSA signatures.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:Pro:16.04:LTS: bouncycastle, Ubuntu:Pro:18.04:LTS: bouncycastle, Ubuntu:Pro:20.04:LTS: bouncycastle&lt;/p&gt;
&lt;p&gt;Bouncy Castle BC Java before 1.66, BC C# .NET before 1.8.7, BC-FJA before 1.0.1.2, 1.0.2.1, and BC-FNA before 1.0.1.1 have a timing issue within the EC math library that can expose information about the private key when an attacker is able to observe timing information for the generation of multiple deterministic ECDSA signatures.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ubuntu-cve-2020-15522</guid>
    </item>
  </channel>
</rss>
