File _patchinfo of Package patchinfo.29519
<patchinfo incident="29519"> <issue tracker="bnc" id="1212508">VUL-0: CVE-2023-33201: bouncycastle: potential blind LDAP injection attack using a self-signed certificate</issue> <issue tracker="cve" id="2023-33201"/> <packager>fstrba</packager> <rating>important</rating> <category>security</category> <summary>Security update for bouncycastle</summary> <description>This update for bouncycastle fixes the following issues: - CVE-2023-33201: Fixed an issue with the X509LDAPCertStoreSpi where a specially crafted certificate subject could be used to try and extract extra information out of an LDAP server (bsc#1212508). </description> </patchinfo>