VDB
CVE-2025-14813
CVE-2025-14813
PUBLISHED
CVSS 9.300000190734863 CRITICAL
Use of a Broken or Risky Cryptographic Algorithm vulnerability in Legion of the Bouncy Castle Inc. BC-JAVA bcprov on all (core modules). This vulnerability is associated with program files G3413CTRBlockCipher. GOSTCTR implementation unable to process more than 255 blocks correctly. This issue affects BC-JAVA: from 1.59 before 1.84.
EPSS 0.00% · 0.2th percentile
Risk Scores
CVSS 4.0
9.300000190734863
CVSS:4.0/AV:L/AC:L/AT:N/PR:N/UI:N/VC:H/VI:H/VA:N/SC:H/SI:H/SA:N/RE:M/U:Red
EPSS Score
0.00%
0.2th percentile
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Legion of the Bouncy Castle Inc. | BC-JAVA | 1.59 |
Exploit Intelligence
- CIRCL seen: CVE-2025-14813 (circl-sighting)
- https://github.com/bcgit/bc-java/wiki/CVE%E2%80%902025%E2%80%9014813 (circl)
- https://github.com/bcgit/bc-java/commit/b42574345414e4b7c8051b16fa1fafe01c29871f (circl)
- https://github.com/bcgit/bc-java/commit/701686cb0184cd9ae103c801b3581fdf95c6d4f3 (circl)
- dependency-check-suppress.xml (github-poc)
- dependency-check-suppress.xml (github-poc)
- dependency-check-suppress.xml (github-poc)
- dependency-check-suppress.xml (github-poc)
- dependency-check-suppress.xml (github-poc)
- dependency-check-suppress.xml (github-poc)
…and 6 more exploits
Timeline
- Apr 15, 2026 CVE Published
- Apr 15, 2026 PoC Published
- May 6, 2026 Distribution Patch
- May 6, 2026 Security Advisory
- May 6, 2026 Distribution Patch
- May 6, 2026 Security Advisory
- May 6, 2026 Distribution Patch
- May 6, 2026 Security Advisory
- May 6, 2026 Distribution Patch
- May 6, 2026 Security Advisory
- May 6, 2026 Distribution Patch
- May 6, 2026 Security Advisory
References
- https://github.com/bcgit/bc-java/wiki/CVE%E2%80%902025%E2%80%9014813 vendor-advisory
- https://github.com/bcgit/bc-java/commit/b42574345414e4b7c8051b16fa1fafe01c29871f patch
- https://github.com/bcgit/bc-java/commit/701686cb0184cd9ae103c801b3581fdf95c6d4f3 patch
- https://www.ibm.com/support/pages/node/7274185 advisory
- https://www.ibm.com/support/pages/node/7274154 advisory
- https://www.ibm.com/support/pages/node/7274180 advisory
- https://www.ibm.com/support/pages/node/7274183 advisory
- https://www.ibm.com/support/pages/node/7273957 advisory
- https://www.ibm.com/support/pages/node/7274184 advisory
- https://www.ibm.com/support/pages/node/7274314 advisory
- https://www.ibm.com/support/pages/node/7274182 advisory
- https://www.ibm.com/support/pages/node/7274181 advisory
- https://www.ibm.com/support/pages/node/7273803 advisory
- https://www.ibm.com/support/pages/node/7272901 advisory