Source |
Bleeping Computer |
Identifiant |
2108945 |
Date de publication |
2020-12-17 15:26:26 (vue: 2020-12-18 01:05:47) |
Titre |
Bouncy Castle crypto authentication bypass vulnerability revealed (Recyclage) |
Texte |
A severe authentication bypass vulnerability has been reported in Bouncy Castle, a popular open-source cryptography library. When exploited, the vulnerability (CVE-2020-28052) can allow an attacker to gain access to user and administrator accounts due to a cryptographic weakness in the manner passwords are checked. [...] |
Notes |
|
Envoyé |
Oui |
Condensat |
2020 28052 access accounts administrator allow are attacker authentication a popular been bouncy bypass can castle checked crypto cryptographic cryptography cve due exploited gain has in bouncy library manner open passwords reported revealed severe source user vulnerability weakness when |
Tags |
Vulnerability
|
Stories |
|
Move |
|
Source |
Bleeping Computer |
Identifiant |
2108741 |
Date de publication |
2020-12-17 15:26:26 (vue: 2020-12-17 22:06:02) |
Titre |
Bouncy Castle fixes crypto API authentication bypass flaw (Recyclage) |
Texte |
A severe authentication bypass vulnerability has been reported in Bouncy Castle, a popular open-source cryptography library. When exploited, the vulnerability (CVE-2020-28052) can allow an attacker to gain access to user and administrator accounts due to a cryptographic weakness in the manner passwords are checked. [...] |
Notes |
|
Envoyé |
Oui |
Condensat |
2020 28052 access accounts administrator allow api are attacker authentication a popular been bouncy bypass can castle checked crypto cryptographic cryptography cve due exploited fixes flaw gain has in bouncy library manner open passwords reported severe source user vulnerability weakness when |
Tags |
Vulnerability
|
Stories |
|
Move |
|