Bouncy Castle affected by timing side-channel for RSA key exchange ("The Marvin Attack")
Details
An issue was discovered in Bouncy Castle Java TLS API and JSSE Provider before 1.78. Timing-based leakage may occur in RSA based handshakes because of exception processing.