bouncycastle15 -- bcrypt password checking vulnerability
The Bouncy Castle team reports:
The OpenBSDBCrypt.checkPassword utility method compared incorrect
data when checking the password, allowing incorrect passwords to
indicate they were matching with previously hashed ones that were
Copyright © 2003-2005 Jacques Vidrine and contributors.
Please see the source of this document for full copyright