Go beyond OSS Index with Sonatype Guide and unlock enterprise-grade open source intelligence for developers and AI coding assistants -
Try it for free today.
[CVE-2024-30171] CWE-203: Information Exposure Through Discrepancy
Description
An issue was discovered in Bouncy Castle Java TLS API and JSSE Provider before 1.78. Timing-based leakage may occur in RSA based handshakes because of exception processing.