CVE Vulnerabilities

CVE-2008-4368

Published: Oct 01, 2008 | Modified: Apr 09, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
5 MEDIUM
AV:N/AC:L/Au:N/C:P/I:N/A:N
RedHat/V2
RedHat/V3
Ubuntu
root.io logo minimus.io logo echo.ai logo

The default configuration of Java 1.5 on Apple Mac OS X 10.5.4 and 10.5.5 contains a jurisdiction policy that limits Java Cryptography Extension (JCE) key sizes to 128 bits, which makes it easier for attackers to decrypt ciphertext produced by JCE.

Affected Software

NameVendorStart VersionEnd Version
Mac_os_xApple10.5.4 (including)10.5.4 (including)
Mac_os_xApple10.5.5 (including)10.5.5 (including)

References