← Back to CVE List

CVE-2016-1000343

Published: 2018-06-04T13:29Z
Last Modified: 2024-11-21T02:43Z
Source: MITRE CVE List
License: MITRE-CVE-TOS
In the Bouncy Castle JCE Provider version 1.55 and earlier the DSA key pair generator generates a weak private key if used with default values. If the JCA key pair generator is not explicitly initialised with DSA parameters, 1.55 and earlier generates a private value assuming a 1024 bit key size. In earlier releases this can be dealt with by explicitly passing parameters to the key pair generator. > MITRE Terms of Use apply – see LICENSE‑MITRE.txt