PT-2023-4874 · Unknown+5 · Bouncy Castle For Java+5
CVE-2023-33201
·
Publicado
2023-07-01
·
Atualizado
2026-07-14
CVSS v3.1
5.3
Média
| Vetor | AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N |
Name of the Vulnerable Software and Affected Versions
Bouncy Castle For Java versions prior to 1.74
Description
The issue is related to an LDAP injection vulnerability in Bouncy Castle For Java. It affects applications that use an LDAP CertStore to validate X.509 certificates. During certificate validation, Bouncy Castle inserts the certificate's Subject Name into an LDAP search filter without proper escaping, leading to the vulnerability. This can be exploited to disclose protected information, especially if an attacker generates a self-signed certificate with a subject name containing special characters. The exploitation depends on the target LDAP directory's structure and the type of errors exposed to the user.
Recommendations
For versions prior to 1.74, update to version 1.74 or later to resolve the issue. As a temporary workaround, consider disabling the use of LDAP CertStore from Bouncy Castle for validating X.509 certificates until a patch is applied. Restrict access to the
X509LDAPCertStoreSpi.java class to minimize the risk of exploitation. Avoid using certificate subject names that contain special characters in the affected API endpoints until the issue is resolved.Exploit
Correção
Improper Certificate Validation
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Enumeração de Fraquezas
Identificadores relacionados
Produtos afetados
Astra Linux
Bouncy Castle For Java
Debian
Linuxmint
Suse
Ubuntu