{"id":"CGA-xjvg-85jr-wvm5","modified":"2026-07-31T08:14:23.308984638Z","published":"2025-10-30T20:57:56Z","withdrawn":"2026-07-31T08:14:23.308984405Z","upstream":["CVE-2020-15522","GHSA-6xx3-rg99-gc3p"],"references":[{"type":"ADVISORY","url":"https://github.com/bcgit/bc-java/wiki/CVE-2020-15522"},{"type":"ADVISORY","url":"https://security.netapp.com/advisory/ntap-20210622-0007/"},{"type":"ADVISORY","url":"https://www.bouncycastle.org/releasenotes.html"},{"type":"ADVISORY","url":"https://github.com/bcgit/bc-csharp/wiki/CVE-2020-15522"}],"affected":[{"package":{"name":"elasticsearch-8-bitnami","ecosystem":"Chainguard","purl":"pkg:apk/chainguard/elasticsearch-8-bitnami?arch=aarch64"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"8.12.1-r0"}]}],"ecosystem_specific":{"components":[{"component_name":"bc-fips","component_version":"1.0.2","component_type":"java-archive","component_location":"/usr/share/elasticsearch/lib/tools/plugin-cli/bc-fips-1.0.2.jar","component_purl":"pkg:maven/bc-fips@1.0.2","latest_event_status":"fixed","latest_event_timestamp":"2024-02-06T18:55:52Z","architecture":"aarch64"}]},"database_specific":{"source":"https://advisories.cgr.dev/chainguard/v3/osv/CGA-xjvg-85jr-wvm5.json"}}],"schema_version":"1.7.5","severity":[{"type":"CVSS_V3","score":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:N/A:N"}]}