<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Sat, 10 Oct 2026 16:24:34 +0000</lastBuildDate>
    <item>
      <title>CVE-2016-1000346</title>
      <link>https://cve.radiocsirt.org/vuln/cve-2016-1000346</link>
      <description>&lt;p&gt;In the Bouncy Castle JCE Provider version 1.55 and earlier the other party DH public key is not fully validated. This can cause issues as invalid keys can be used to reveal details about the other party&amp;#39;s private key where static Diffie-Hellman is in use. As of release 1.56 the key parameters are checked on agreement calculation.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;In the Bouncy Castle JCE Provider version 1.55 and earlier the other party DH public key is not fully validated. This can cause issues as invalid keys can be used to reveal details about the other party&amp;#39;s private key where static Diffie-Hellman is in use. As of release 1.56 the key parameters are checked on agreement calculation.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/cve-2016-1000346</guid>
    </item>
    <item>
      <title>USN-3727-1 — bouncycastle vulnerabilities</title>
      <link>https://cve.radiocsirt.org/vuln/usn-3727-1</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:14.04:LTS: bouncycastle&lt;/p&gt;
&lt;p&gt;It was discovered that Bouncy Castle incorrectly handled certain crypto
algorithms. A remote attacker could possibly use these issues to obtain
sensitive information, including private keys.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:14.04:LTS: bouncycastle&lt;/p&gt;
&lt;p&gt;It was discovered that Bouncy Castle incorrectly handled certain crypto
algorithms. A remote attacker could possibly use these issues to obtain
sensitive information, including private keys.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/usn-3727-1</guid>
    </item>
  </channel>
</rss>
