CVE-2025-9341 Garbage collection can delay for AES CBC Native support, resulting in heap exhaustion
Discription

image
Uncontrolled Resource Consumption vulnerability in Legion of the Bouncy Castle Inc. Bouncy Castle for Java FIPS bc-fips on All (API modules) allows Excessive Allocation. This vulnerability is associated with program files org/bouncycastle/crypto/fips/AESNativeCBC.Java. This issue affects Bouncy Castle for Java FIPS: from BC-FJA 2.1.0 through…Read More

Back to Main

Subscribe for the latest news: