Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:3287
HistoryJan 13, 2017 - 9:57 a.m.

Padding Oracle Attack

2017-01-1309:57:10
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
10

0.004 Low

EPSS

Percentile

73.2%

bouncycastle is vulnerable to padding oracle attacks. In an environment where timings can be easily observed, it is possible to identify when the decryption is failing due to padding.