CNNVD-202508-2829 Information

CNNVD ID

CNNVD-202508-2829

CVE-2025-9340

  • CNNVD Published: 2025-08-22

Description (Chinese)

Bouncy Castle是Bouncy Castle组织的密码学中使用的API集合。它包括适用于Java和C#编程语言的API 。 Bouncy Castle for Java BC-FJA 2.1.0版本存在安全漏洞,该漏洞源于越界写入,可能导致执行任意代码。

Description (English)

Bouncy Castle is a collection of APIs used in the ciphers organized by Bouncy Castle. It includes API for Java and C# programming languages. There is a security loophole in the version Bouncy Castle for Java BC-FJA 2.1.0 which originates from cross-border writing and may lead to the enforcement of arbitrary codes.

Hazard Level

High

Vulnerability Type

其他

Affected Vendor

Bouncy Castle

Published

2025-08-22

Last Modified

2026-02-24

References

https://github.com/bcgit/bc-java/wiki/CVE%E2%80%902025%E2%80%909340 https://nvd.nist.gov/vuln/detail/CVE-2025-9340 https://access.redhat.com/security/cve/cve-2025-9340

Share on: