org.bouncycastle:bctls-jdk15on@1.66 vulnerabilities

  • latest version

    1.70

  • latest non vulnerable version

  • first published

    7 years ago

  • latest version published

    2 years ago

  • licenses detected

  • package manager

Direct Vulnerabilities

Known vulnerabilities in the org.bouncycastle:bctls-jdk15on package. This does not include vulnerabilities belonging to this package’s dependencies.

Automatically find and fix vulnerabilities affecting your projects. Snyk scans for vulnerabilities and provides fixes for free.
Fix for free
Vulnerability Vulnerable Version
  • M
Use of Incorrectly-Resolved Name or Reference

Affected versions of this package are vulnerable to Use of Incorrectly-Resolved Name or Reference when resolving domain names over an SSL socket that was created without an explicit hostname, as in the HttpsURLConnection() function. If endpoint identification is enabled an attacker can trigger hostname verification against a DNS-resolved address.

How to fix Use of Incorrectly-Resolved Name or Reference?

There is no fixed version for org.bouncycastle:bctls-jdk15on.

[1.61,)