Skip to content

[FP]: CVE-2022-29523 #5577

Open
Open
@arunkumarthangavel

Description

Package URl

pkg:maven/org.bouncycastle/bcpg-jdk15on@1.70

CPE

cpe:2.3:a:open_cas_project:open_cas:1.70:::::::*

CVE

CVE-2022-29523

ODC Integration

None

ODC Version

8.1.2

Description

The CVE description says "Improper conditions check in the Open CAS software maintained by Intel(R) before version 22.3.1 may allow an authenticated user to potentially enable denial of service via local access." but bouncycastle is getting added to the report as vulnerable.

Metadata

Assignees

No one assigned

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions