Allocation of Resources Without Limits or Throttling vulnerability in Legion of the Bouncy Castle Inc. BC Java bcprov on All (API modules), Legion of the Bouncy Castle Inc. BC-FJA bc-fips on All allows Excessive Allocation. This vulnerability is associated with program files https://github.com/bcgit/bc-java/blob/main/core/src/main/java/org/bouncycastle/asn1/ASN1ObjectIdenti... https://github.com/bcgit/bc-java/blob/main/core/src/main/java/org/bouncycastle/asn1/ASN1ObjectIdentifier.Java . This issue affects BC Java: from 1.0 through 1.77; BC-FJA: from 1.0.0 through 1.0.2.5, from 2.0.0 through 2.0.1.
{
"binaries": [
{
"binary_version": "1.51-4ubuntu1",
"binary_name": "libbcmail-java"
},
{
"binary_version": "1.51-4ubuntu1",
"binary_name": "libbcpg-java"
},
{
"binary_version": "1.51-4ubuntu1",
"binary_name": "libbcpkix-java"
},
{
"binary_version": "1.51-4ubuntu1",
"binary_name": "libbcprov-java"
}
]
}
{
"binaries": [
{
"binary_version": "1.68-5",
"binary_name": "libbcmail-java"
},
{
"binary_version": "1.68-5",
"binary_name": "libbcpg-java"
},
{
"binary_version": "1.68-5",
"binary_name": "libbcpkix-java"
},
{
"binary_version": "1.68-5",
"binary_name": "libbcprov-java"
},
{
"binary_version": "1.68-5",
"binary_name": "libbctls-java"
}
]
}
{
"binaries": [
{
"binary_version": "1.77-1",
"binary_name": "libbcjmail-java"
},
{
"binary_version": "1.77-1",
"binary_name": "libbcmail-java"
},
{
"binary_version": "1.77-1",
"binary_name": "libbcpg-java"
},
{
"binary_version": "1.77-1",
"binary_name": "libbcpkix-java"
},
{
"binary_version": "1.77-1",
"binary_name": "libbcprov-java"
},
{
"binary_version": "1.77-1",
"binary_name": "libbctls-java"
},
{
"binary_version": "1.77-1",
"binary_name": "libbcutil-java"
}
]
}