CVE-2016-1000346
published 2018-06-04CVE-2016-1000346: In the Bouncy Castle JCE Provider version 1.55 and earlier the other party DH public key is not fully validated. This can cause issues as invalid keys can be…
PriorityP414low3.7CVSS 3.0
AVNACHPRNUINSUCLINAN
EPSS
2.30%
81.4th percentile
In the Bouncy Castle JCE Provider version 1.55 and earlier the other party DH public key is not fully validated. This can cause issues as invalid keys can be used to reveal details about the other party's private key where static Diffie-Hellman is in use. As of release 1.56 the key parameters are checked on agreement calculation.
Affected
3 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| bouncycastle | bc-java | <= 1.55 | — |
| debian | bouncycastle | < bouncycastle 1.56-1 (bookworm) | bouncycastle 1.56-1 (bookworm) |
| debian | debian_linux | — | — |
CVSS provenance
nvdv3.03.7LOWCVSS:3.0/AV:N/AC:H/PR:N/UI:N/S:U/C:L/I:N/A:N
nvdv2.04.3MEDIUMAV:N/AC:M/Au:N/C:P/I:N/A:N
osv3.7LOW
vendor_debian3.7LOW
vendor_redhat3.7LOW
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Ubuntu
Bouncy Castle vulnerabilities
vendor_ubuntu·2018-08-01
CVE-2015-6644 Bouncy Castle vulnerabilities
Title: Bouncy Castle vulnerabilities
Summary: Several security issues were fixed in Bouncy Castle.
It was discovered that Bouncy Castle incorrectly handled certain crypto
algorithms. A remote attacker could possibly use these issues to obtain
sensitive information, including private keys.
Instructions: In general, a standard system update will make all the necessary changes.
Red Hat
bouncycastle: Other party DH public keys are not fully validated
vendor_redhat·2016-10-29·CVSS 3.7
CVE-2016-1000346 [LOW] CWE-325 bouncycastle: Other party DH public keys are not fully validated
bouncycastle: Other party DH public keys are not fully validated
In the Bouncy Castle JCE Provider version 1.55 and earlier the other party DH public key is not fully validated. This can cause issues as invalid keys can be used to reveal details about the other party's private key where static Diffie-Hellman is in use. As of release 1.56 the key parameters are checked on agreement calculation.
Statement: This issue affects the versions of bouncycastle as shipped with Red Hat Subscription Asset Manager 1.x. Red Hat Product Security has rated this issue as having a security impact of Moderate. No update is planned for this product at this time. For additional information, refer to the Issue Severity Classification: https://access.redhat.com/security/updates/classification/.
Package: bounc
Debian
CVE-2016-1000346: bouncycastle - In the Bouncy Castle JCE Provider version 1.55 and earlier the other party DH pu...
vendor_debian·2016·CVSS 3.7
CVE-2016-1000346 [LOW] CVE-2016-1000346: bouncycastle - In the Bouncy Castle JCE Provider version 1.55 and earlier the other party DH pu...
In the Bouncy Castle JCE Provider version 1.55 and earlier the other party DH public key is not fully validated. This can cause issues as invalid keys can be used to reveal details about the other party's private key where static Diffie-Hellman is in use. As of release 1.56 the key parameters are checked on agreement calculation.
Scope: local
bookworm: resolved (fixed in 1.56-1)
bullseye: resolved (fixed in 1.56-1)
forky: resolved (fixed in 1.56-1)
sid: resolved (fixed in 1.56-1)
trixie: resolved (fixed in 1.56-1)
GHSA
In Bouncy Castle JCE Provider the other party DH public key is not fully validated
ghsa·2018-10-17
CVE-2016-1000346 [LOW] In Bouncy Castle JCE Provider the other party DH public key is not fully validated
In Bouncy Castle JCE Provider the other party DH public key is not fully validated
In the Bouncy Castle JCE Provider version 1.55 and earlier the other party DH public key is not fully validated. This can cause issues as invalid keys can be used to reveal details about the other party's private key where static Diffie-Hellman is in use. As of release 1.56 the key parameters are checked on agreement calculation.
OSV
In Bouncy Castle JCE Provider the other party DH public key is not fully validated
osv·2018-10-17
CVE-2016-1000346 [LOW] In Bouncy Castle JCE Provider the other party DH public key is not fully validated
In Bouncy Castle JCE Provider the other party DH public key is not fully validated
In the Bouncy Castle JCE Provider version 1.55 and earlier the other party DH public key is not fully validated. This can cause issues as invalid keys can be used to reveal details about the other party's private key where static Diffie-Hellman is in use. As of release 1.56 the key parameters are checked on agreement calculation.
OSV
CVE-2016-1000346: In the Bouncy Castle JCE Provider version 1
osv·2018-06-04·CVSS 3.7
CVE-2016-1000346 [LOW] CVE-2016-1000346: In the Bouncy Castle JCE Provider version 1
In the Bouncy Castle JCE Provider version 1.55 and earlier the other party DH public key is not fully validated. This can cause issues as invalid keys can be used to reveal details about the other party's private key where static Diffie-Hellman is in use. As of release 1.56 the key parameters are checked on agreement calculation.
No detection rules found.
No public exploits indexed.
Bugzilla
CVE-2016-1000346 bouncycastle: Other party DH public keys are not fully validated
bugzilla·2018-06-07·CVSS 3.7
CVE-2016-1000346 [LOW] CVE-2016-1000346 bouncycastle: Other party DH public keys are not fully validated
CVE-2016-1000346 bouncycastle: Other party DH public keys are not fully validated
In the Bouncy Castle JCE Provider version 1.55 and earlier the other party DH public key is not fully validated. This can cause issues as invalid keys can be used to reveal details about the other party's private key where static Diffie-Hellman is in use. As of release 1.56 the key parameters are checked on agreement calculation.
Upstream Commits:
https://github.com/bcgit/bc-java/commit/1127131c89021612c6eefa26dbe5714c194e7495#diff-d525a20b8acaed791ae2f0f770eb5937
Discussion:
Created bouncycastle tracking bugs for this issue:
Affects: epel-6 [bug 1588328]
---
Statement:
This issue affects the versions of bouncycastle as shipped with Red Hat Subscription Asset Manager 1.x. Red Hat Product Security ha
Bugzilla
CVE-2016-1000346 bouncycastle: Other party DH public keys are not fully validated [epel-6]
bugzilla·2018-06-07·CVSS 3.7
CVE-2016-1000346 [LOW] CVE-2016-1000346 bouncycastle: Other party DH public keys are not fully validated [epel-6]
CVE-2016-1000346 bouncycastle: Other party DH public keys are not fully validated [epel-6]
This is an automatically created tracking bug! It was created to ensure
that one or more security vulnerabilities are fixed in affected versions
of epel-6.
For comments that are specific to the vulnerability please use bugs filed
against the "Security Response" product referenced in the "Blocks" field.
For more information see:
http://fedoraproject.org/wiki/Security/TrackingBugs
When submitting as an update, use the fedpkg template provided in the next
comment(s). This will include the bug IDs of this tracking bug as well as
the relevant top-level CVE bugs.
Please also mention the CVE IDs being fixed in the RPM changelog and the
fedpkg commit message.
Discussion:
Use the following template to
https://access.redhat.com/errata/RHSA-2018:2669https://access.redhat.com/errata/RHSA-2018:2927https://github.com/bcgit/bc-java/commit/1127131c89021612c6eefa26dbe5714c194e7495#diff-d525a20b8acaed791ae2f0f770eb5937https://lists.debian.org/debian-lts-announce/2018/07/msg00009.htmlhttps://security.netapp.com/advisory/ntap-20181127-0004/https://usn.ubuntu.com/3727-1/https://www.oracle.com/security-alerts/cpuoct2020.htmlhttps://access.redhat.com/errata/RHSA-2018:2669https://access.redhat.com/errata/RHSA-2018:2927https://github.com/bcgit/bc-java/commit/1127131c89021612c6eefa26dbe5714c194e7495#diff-d525a20b8acaed791ae2f0f770eb5937https://lists.debian.org/debian-lts-announce/2018/07/msg00009.htmlhttps://security.netapp.com/advisory/ntap-20181127-0004/https://usn.ubuntu.com/3727-1/https://www.oracle.com/security-alerts/cpuoct2020.html
2018-06-04
Published