{"id":"CGA-56jm-9r78-p2jr","modified":"2026-09-15T10:30:55.836602447Z","published":"2026-01-26T20:02:40Z","upstream":["CVE-2023-33202","GHSA-wjxj-5m7g-mg7q"],"references":[{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2023-33202"},{"type":"WEB","url":"https://github.com/bcgit/bc-java/commit/0c576892862ed41894f49a8f639112e8d66d229c"},{"type":"WEB","url":"https://bouncycastle.org"},{"type":"PACKAGE","url":"https://github.com/bcgit/bc-java"},{"type":"WEB","url":"https://github.com/bcgit/bc-java/wiki/CVE-2023-33202"},{"type":"WEB","url":"https://security.netapp.com/advisory/ntap-20240125-0001"}],"affected":[{"package":{"name":"hadoop-fips-3.4.2","ecosystem":"Chainguard","purl":"pkg:apk/chainguard/hadoop-fips-3.4.2?arch=aarch64"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"}]}],"ecosystem_specific":{"components":[{"latest_event_status":"pending_upstream_fix","latest_event_timestamp":"2026-09-15T03:09:09Z","component_name":"bcprov-jdk15on","component_version":"1.62","component_type":"java-archive","component_location":"/usr/share/m2/repository/org/bouncycastle/bcprov-jdk15on/1.62/bcprov-jdk15on-1.62.jar","component_purl":"pkg:maven/bcprov-jdk15on@1.62"}]},"database_specific":{"source":"https://advisories.cgr.dev/chainguard/v3/osv/CGA-56jm-9r78-p2jr.json"}}],"schema_version":"1.9.0","severity":[{"type":"CVSS_V3","score":"CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H"}]}