MODERATEMaven →
Bouncy Castle Vulnerable to Uncontrolled Resource Consumption
Bouncy Castle Vulnerable to Uncontrolled Resource Consumption
Affected packages
- org.bouncycastle:bc-fips— 2.1.0 → 2.1.2
- org.bouncycastle:bcprov-debug-lts8on— 2.73.0 → 2.73.8
Exploit signal
- Known exploited (CISA KEV)
- No
- EPSS score
- —
- EPSS percentile
- —
EPSS is the probability a CVE is exploited in the wild; percentile is its rank among all CVEs.
Sources
- https://nvd.nist.gov/vuln/detail/CVE-2025-12194
- https://github.com/bcgit/bc-lts-java/commit/2c9be6c64152ce48c6afc784c042a514be71ec71
- https://github.com/bcgit/bc-lts-java/commit/f2776feac0c30230f7a5ac34eb24f5019caf0324
- https://github.com/bcgit/bc-java/wiki/CVE%E2%80%902025%E2%80%9012194
- https://github.com/bcgit/bc-lts-java
Structured record: https://osv.dev/vulnerability/GHSA-jv6h-4262-q663
Recommended response stack
Some links are affiliate links — HackTribune may earn a commission at no extra cost to you.
Get incidents like this as alerts for your stack.
Join the beta