rpm-builder icon indicating copy to clipboard operation
rpm-builder copied to clipboard

Security Vulnerabilities in dependency org.bouncycastle:bcprov-jdk18on:1.77

Open netsandbox opened this issue 5 months ago • 2 comments

https://nvd.nist.gov/vuln/detail/cve-2024-29857

Please update org.bouncycastle:bcprov-jdk18on to version 1.81.

netsandbox avatar Jul 08 '25 15:07 netsandbox

Could you come up with a PR?

ctron avatar Jul 10 '25 05:07 ctron

Actually I'm not a java developer and don't know the implication of a dependency version bump. So I could just bump the dependency version, and if then something breaks, I'm lost.

netsandbox avatar Jul 10 '25 05:07 netsandbox