Back

HIGH

BouncyCastle JCE TLS Bleichenbacher/ROBOT

Published Dec 13, 2017

Description

BouncyCastle TLS prior to version 1.0.3, when configured to use the JCE (Java Cryptography Extension) for cryptographic functions, provides a weak Bleichenbacher oracle when any TLS cipher suite using RSA key exchange is negotiated. An attacker can recover the private key from a vulnerable application. This vulnerability is referred to as "ROBOT."

Affected products

Remediation

Red Hat statement

This issue affects the versions of bouncycastle as shipped with Red Hat Subscription Asset Manager version 1 and Satellite version 6. Red Hat Product Security has rated this issue as having Moderate security impact. A future update may address this issue. For additional information, refer to the Issue Severity Classification: https://access.redhat.com/security/updates/classification/. Red Hat Satellite 6 was fixed indirectly after a rebase. Shipping a version of Bouncy Castle 1.60 or higher is sufficient to avoid this vulnerability.

Metrics

Weaknesses (2)

References (13)

Change history (0)

No recorded changes yet.

Sources
CVE.org / MITRE
Status PUBLISHED
Assigner certcc
Published Dec 13, 2017
Updated Sep 16, 2024
Reserved Aug 22, 2017
NVD
Status Modified
Modified Jun 17, 2026
Red Hat
Severity Moderate
Public date Dec 12, 2017
GHSA-WRWF-PMMJ-W989