在 Bouncy Castle for Java 1.86 版本之前的产品中,PKIXCertPathReviewer 的两个副本(即 和传统的 )均未对终Entity 证书(end-entity certificate,即叶证书)应用 X.509 名称约束(Name Constraints)。 具体问题在于: 方法在遍历证书链时,使用了循环索引大于零的上界。这一设置符合仅由证书颁发机构(CA)证书执行步骤的要求,但在标准的证书路径(CertPath)顺序中,索引为零对应的是目标证书(即叶证书)。因此,RFC 52
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| Legion of the Bouncy Castle Inc. | BC-FJA | 1.0.4< 1.0.13 |
affected |
2.0.0< 2.0.13 |
affected | ||
2.1.0< 2.1.13 |
affected | ||
| Legion of the Bouncy Castle Inc. | BC-JAVA | < 1.86 |
affected |
< 1.86 |
affected | ||
| Legion of the Bouncy Castle Inc. | BC-LTS-JAVA | 2.73.0< 2.73.13 |
affected |
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| Legion of the Bouncy Castle Inc. | BC-JAVA | 0 ~ 1.86 | - |
|
| Legion of the Bouncy Castle Inc. | BC-JAVA | 0 ~ 1.86 | - |
|
| Legion of the Bouncy Castle Inc. | BC-LTS-JAVA | 2.73.0 ~ 2.73.13 | - |
|
| Legion of the Bouncy Castle Inc. | BC-FJA | 1.0.4 ~ 1.0.13 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-71885 | 9.2 CRITICAL | MLS X.509 credential not bound to the LeafNode signature key |
| CVE-2026-71888 | 8.7 HIGH | CMS AuthenticatedData exposes attacker-inserted authAttrs when digestAlgorithm is absent |
| CVE-2026-71890 | 8.7 HIGH | MLS external commit can remove an arbitrary group member |
| CVE-2026-85515 | 8.2 HIGH | OpenPGP message truncation not reported, bypassing the SEIPDv1 integrity check |
| CVE-2026-71887 | 8.2 HIGH | OpenPGP data signature accepted from a signing subkey without cross-certification |
| CVE-2026-71883 | 8.2 HIGH | Native AES packet cipher returns the raw AES key on an alias |
| CVE-2026-71886 | 8.2 HIGH | OpenPGP certification accepted from a subkey without certification authority |
| CVE-2026-71891 | 7.1 HIGH | BLS12-381 key validation accepts a public key built on a foreign curve |
| CVE-2026-71892 | 6.9 MEDIUM | CMS key-transport recipient key-size validation never runs for RFC 9709 HKDF-derived keys |
| CVE-2026-18040 | 5.9 MEDIUM | HQC leaks private key information through secret-indexed GF(2^8) tables and a secret-depen |
| CVE-2026-97873 | 5.3 MEDIUM | Legacy PBES1 and PKCS#12 PBE iteration count honoured unbounded in the raw JCA provider |
No comments yet