Legion of the Bouncy Castle Inc. BC-LTS
- >= 2.73.0, < 2.73.12.1
A vulnerability allowing out-of-bounds write operations has been identified in Legion of the Bouncy Castle Inc. BC-LTS bcprov-lts8on, specifically on ARM architectures. This vulnerability, which affects versions 2.73.0 prior to 2.73.12.1, allows for buffer overflow conditions. The issue arises in the SHA3 and SHAKE implementations, when these memoable states are accepted from potentially untrusted sources.
Exploitation of this vulnerability can lead to buffer overflow conditions, which may be exploited to execute arbitrary code or cause a denial-of-service.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.