Vulnerability Bulletins

DSA-4072 bouncycastle - security update

   
Affected software Debian
 
Hanno Boeck, Juraj Somorovsky and Craig Young discovered that theTLS implementation in Bouncy Castle is vulnerable to an adaptive chosenciphertext attack against RSA keys.

More info:

https://www.debian.org/security/2017/dsa-4072