CVE-2025-9341

Uncontrolled Resource Consumption vulnerability in Legion of the Bouncy Castle Inc. Bouncy Castle for Java FIPS bc-fips on All (API modules), Legion of the Bouncy Castle Inc. Bouncy Castle for Java LTS bcprov-lts8on on All (API modules) allows Excessive Allocation. This vulnerability is associated with program files org/bouncycastle/crypto/fips/AESNativeCBC.Java, org/bouncycastle/crypto/engines/AESNativeCBC.Java. This issue affects Bouncy Castle for Java FIPS: from BC-FJA 2.1.0 through 2.1.0; Bouncy Castle for Java LTS: from BC-LTS 2.73.0 through 2.73.7.
CVSS

No CVSS.

Configurations

No configuration.

History

30 Aug 2025, 06:15

Type Values Removed Values Added
Summary (en) Uncontrolled Resource Consumption vulnerability in Legion of the Bouncy Castle Inc. Bouncy Castle for Java FIPS bc-fips on All (API modules) allows Excessive Allocation. This vulnerability is associated with program files org/bouncycastle/crypto/fips/AESNativeCBC.Java. This issue affects Bouncy Castle for Java FIPS: from BC-FJA 2.1.0 through 2.1.0. (en) Uncontrolled Resource Consumption vulnerability in Legion of the Bouncy Castle Inc. Bouncy Castle for Java FIPS bc-fips on All (API modules), Legion of the Bouncy Castle Inc. Bouncy Castle for Java LTS bcprov-lts8on on All (API modules) allows Excessive Allocation. This vulnerability is associated with program files org/bouncycastle/crypto/fips/AESNativeCBC.Java, org/bouncycastle/crypto/engines/AESNativeCBC.Java. This issue affects Bouncy Castle for Java FIPS: from BC-FJA 2.1.0 through 2.1.0; Bouncy Castle for Java LTS: from BC-LTS 2.73.0 through 2.73.7.

22 Aug 2025, 18:08

Type Values Removed Values Added
Summary
  • (es) Vulnerabilidad de consumo incontrolado de recursos en Legion of the Bouncy Castle Inc. Bouncy Castle para Java FIPS bc-fips en todos los módulos API permite una asignación excesiva. Esta vulnerabilidad está asociada a los archivos de programa org/bouncycastle/crypto/fips/AESNativeCBC.Java. Este problema afecta a Bouncy Castle para Java FIPS: desde BC-FJA 2.1.0 hasta 2.1.0.

22 Aug 2025, 09:15

Type Values Removed Values Added
New CVE

Information

Published : 2025-08-22 09:15

Updated : 2025-08-30 06:15


NVD link : CVE-2025-9341

Mitre link : CVE-2025-9341

CVE.ORG link : CVE-2025-9341


JSON object : View

Products Affected

No product.

CWE
CWE-400

Uncontrolled Resource Consumption