NA

CVE-2024-30172

Published: 14/05/2024 Updated: 14/05/2024

Vulnerability Summary

An issue exists in Bouncy Castle Java Cryptography APIs prior to 1.78. An Ed25519 verification code infinite loop can occur via a crafted signature and public key.

Vendor Advisories

Debian Bug report logs - #1070655 bouncycastle: CVE-2024-29857 CVE-2024-30171 CVE-2024-30172 CVE-2024-34447 Package: src:bouncycastle; Maintainer for src:bouncycastle is Debian Java Maintainers <pkg-java-maintainers@listsaliothdebianorg>; Reported by: Salvatore Bonaccorso <carnil@debianorg> Date: Mon, 6 May 2024 ...