David Hook
7 exploits
Active since Jun 2018
GOSTCTR implementation unable to process more than 255 blocks correctly
PKIX draft CompositeVerifier accepts empty signature sequence as valid.
GOSTCTR implementation unable to process more than 255 blocks correctly
LDAP Injection Vulnerability in LDAPStoreHelper.java
Unbounded PGP AEAD chunk size leads to pre-auth resource exhaustion.
Bouncy Castle <1.60-1.59 - Info Disclosure
CVSS 7.5
Bouncy Castle Java Cryptography APIs <1.60 - Unsafe Reflection in XMSS/XMSS^MT Private Key Deserialization
CVSS 9.8