Use of a Broken or Risky Cryptographic Algorithm...
Critical severity
Unreviewed
Published
Apr 17, 2026
to the GitHub Advisory Database
•
Updated Apr 17, 2026
Description
Published by the National Vulnerability Database
Apr 15, 2026
Published to the GitHub Advisory Database
Apr 17, 2026
Last updated
Apr 17, 2026
Use of a Broken or Risky Cryptographic Algorithm vulnerability in Legion of the Bouncy Castle Inc. BC-JAVA bcprov on all (core modules). This vulnerability is associated with program files G3413CTRBlockCipher.
GOSTCTR implementation unable to process more than 255 blocks correctly.
This issue affects BC-JAVA: from 1.59 before 1.84.
References