Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1359 CNY

100%

Legion of the Bouncy Castle Inc. — Vulnerabilities & Security Advisories 84

Browse all 84 CVE security advisories affecting Legion of the Bouncy Castle Inc.. AI-powered Chinese analysis, POCs, and references for each vulnerability.

Legion of the Bouncy Castle Inc. develops the Bouncy Castle cryptographic library, widely used for Java and C# cryptographic operations. Historically, vulnerabilities in their software have commonly included remote code execution, cross-site scripting, and privilege escalation flaws. The library's extensive integration into enterprise systems has made it a target for attackers. While no major public security incidents have been documented, the 11 CVEs on record highlight ongoing security challenges in maintaining cryptographic implementations. Regular updates and careful implementation remain critical for organizations using their libraries to prevent potential exploitation of these vulnerabilities.

CVE ID Title CVSS Severity Published
CVE-2026-63568 Unbounded CMP/CRMF password-based MAC iteration count allows CPU exhaustion — bc-csharp CWE-770 8.7 High 2026-10-02
CVE-2026-63567 IesEngine block-cipher mode checks padding before MAC (CBC padding oracle) — bc-csharp CWE-203 8.2 High 2026-10-02
CVE-2026-63566 DTLS handshake reassembler allocates buffer from unchecked 24-bit length — bc-csharp CWE-789 8.7 High 2026-10-02
CVE-2026-16001 IesEngine stream-mode MAC forgery via length-dependent KDF split — bc-csharp CWE-354 8.2 High 2026-10-02
CVE-2026-16000 KCcmBlockCipher (DSTU 7624 CCM) tag not bound to nonce when no associated data is used — bc-csharp CWE-325 8.7 High 2026-10-02
CVE-2026-15999 AES-CCM decryption accepts zero or out-of-range tag length, bypassing authentication — bc-csharp CWE-354 8.2 High 2026-10-02
CVE-2026-13505 Zeroisation of sensitive key material on garbage collection relies on finalization — BC-FJA CWE-772 8.7 High 2026-08-08
CVE-2026-8798 Native entropy source retries the CPU entropy instructions without limit — BC-FJA CWE-835 8.7 High 2026-08-08
CVE-2026-13586 PKCS#12 MAC and bag-decryption KDF iteration-count bound (DoS) — BC-JAVA CWE-770 5.3 Medium 2026-08-03
CVE-2026-13506 Lazy ASN.1 sequence forcing resets nesting-depth guard — BC-JAVA CWE-674 8.7 High 2026-08-03
CVE-2026-12860 RSA PKCS#1 verification skips last two hash bytes in NULL-omitted path — BC-JAVA CWE-347 8.7 High 2026-08-03
CVE-2026-12852 MLS wire decoder allocates attacker-declared opaque length before bounds check — BC-JAVA CWE-789 8.7 High 2026-08-03
CVE-2026-12817 OpenPGP AEAD decryption skips final tag on chunk-aligned data — BC-JAVA CWE-354 8.7 High 2026-08-03
CVE-2026-12816 IESEngine stream-mode MAC forgery via length-dependent KDF split — BC-JAVA CWE-354 8.7 High 2026-08-03
CVE-2026-12803 KCCMBlockCipher MAC does not bind nonce when AAD is absent (cross-nonce AEAD forgery) — BC-JAVA CWE-354 8.7 High 2026-08-03
CVE-2026-12802 CMS AuthEnvelopedData fails to enforce tag-length on decryption — BC-JAVA CWE-354 8.7 High 2026-08-03
CVE-2026-14682 Possible OOM from unbounded up-front allocation on a definite-length read — BC-JAVA CWE-789 8.7 High 2026-08-03
CVE-2026-58059 Quadratic-time escaping when stringifying X.500 distinguished names — BC-JAVA CWE-407 8.7 High 2026-08-03
CVE-2026-58060 HSS public-key level count unbounded, enabling huge allocation on verify — BC-JAVA CWE-789 8.7 High 2026-08-03
CVE-2026-58061 CCM-family modes write plaintext to caller buffer before tag check — BC-JAVA CWE-354 8.7 High 2026-08-03
CVE-2026-58062 Stapled OCSP response accepted without binding to the checked certificate — BC-JAVA CWE-295 9.3 Critical 2026-08-03
CVE-2026-58063 BCFKS keystore load honours unbounded KDF cost from untrusted file — BC-JAVA CWE-770 5.3 Medium 2026-08-03
CVE-2026-59638 JSSE hostname verifier CN-fallback enabled by default despite documented opt-in — BC-JAVA CWE-297 9.3 Critical 2026-08-03
CVE-2026-59639 CMS verifySignatures returns true for SignedData with zero signers — BC-JAVA CWE-347 8.7 High 2026-08-03
CVE-2026-59640 OpenPGP CFB quick-check oracle active on symmetric/session-key paths — BC-JAVA CWE-203 8.7 High 2026-08-03
CVE-2026-59641 S/MIME validator trusts signer-asserted signingTime for path validation — BC-JAVA CWE-345 8.7 High 2026-08-03
CVE-2026-59642 CMS AuthenticatedData content not bound to MAC when authAttrs present — BC-JAVA CWE-354 8.7 High 2026-08-03
CVE-2026-59643 OpenPGP inline-signature policy failures silently ignored — BC-JAVA CWE-347 8.7 High 2026-08-03
CVE-2026-59644 MLS hash-ratchet honours arbitrary 32-bit generation counter from sender — BC-JAVA CWE-834 8.7 High 2026-08-03
CVE-2026-59645 OER parser recurses without depth limit on self-referential IEEE 1609.2 schema — BC-JAVA CWE-674 8.7 High 2026-08-03

This page lists every published CVE security advisory associated with Legion of the Bouncy Castle Inc.. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.