Home

Description

Uncontrolled Resource Consumption vulnerability in Legion of the Bouncy Castle Inc. Bouncy Castle for Java - BC-FJA 2.1.0 bc-fips (API modules) allows Excessive Allocation. This vulnerability is associated with program files org.Bouncycastle.Crypto.Fips.NativeLoader. This issue affects Bouncy Castle for Java - BC-FJA 2.1.0: from BC-FJA 2.1.0 through 2.1.0.

PUBLISHED Reserved 2025-08-16 | Published 2025-08-16 | Updated 2025-08-18 | Assigner bcorg




LOW: 1.0CVSS:4.0/AV:L/AC:L/AT:P/PR:H/UI:A/VC:N/VI:N/VA:L/SC:N/SI:N/SA:N/R:U/RE:L/U:Green

Problem types

CWE-400 Uncontrolled Resource Consumption

Product status

Default status
unaffected

BC-FJA 2.1.0
affected

References

github.com/bcgit/bc-java/wiki/CVE‐2025‐9092

cve.org (CVE-2025-9092)

nvd.nist.gov (CVE-2025-9092)

Download JSON