Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1359 CNY

100%

Legion of the Bouncy Castle Inc. — Vulnerabilities & Security Advisories 84

Browse all 84 CVE security advisories affecting Legion of the Bouncy Castle Inc.. AI-powered Chinese analysis, POCs, and references for each vulnerability.

Legion of the Bouncy Castle Inc. develops the Bouncy Castle cryptographic library, widely used for Java and C# cryptographic operations. Historically, vulnerabilities in their software have commonly included remote code execution, cross-site scripting, and privilege escalation flaws. The library's extensive integration into enterprise systems has made it a target for attackers. While no major public security incidents have been documented, the 11 CVEs on record highlight ongoing security challenges in maintaining cryptographic implementations. Regular updates and careful implementation remain critical for organizations using their libraries to prevent potential exploitation of these vulnerabilities.

Found 52 results / 84 Clear Filters
CVE ID Title CVSS Severity Published
CVE-2026-71890 MLS external commit can remove an arbitrary group member — BC-JAVA CWE-863 8.7 High 2026-10-03
CVE-2026-71891 BLS12-381 key validation accepts a public key built on a foreign curve — BC-JAVA CWE-347 7.1 High 2026-10-03
CVE-2026-18040 HQC leaks private key information through secret-indexed GF(2^8) tables and a secret-dependent fixed-weight sampler — BC-JAVA CWE-208 5.9 Medium 2026-10-03
CVE-2026-71885 MLS X.509 credential not bound to the LeafNode signature key — BC-JAVA CWE-295 9.2 Critical 2026-10-03
CVE-2026-71886 OpenPGP certification accepted from a subkey without certification authority — BC-JAVA CWE-863 8.2 High 2026-10-03
CVE-2026-71887 OpenPGP data signature accepted from a signing subkey without cross-certification — BC-JAVA CWE-347 8.2 High 2026-10-03
CVE-2026-71888 CMS AuthenticatedData exposes attacker-inserted authAttrs when digestAlgorithm is absent — BC-JAVA CWE-354 8.7 High 2026-10-03
CVE-2026-71889 PKIXCertPathReviewer does not apply X.509 name constraints to the target certificate — BC-JAVA CWE-295 8.7 High 2026-10-03
CVE-2026-71892 CMS key-transport recipient key-size validation never runs for RFC 9709 HKDF-derived keys — BC-JAVA CWE-697 6.9 Medium 2026-10-03
CVE-2026-85515 OpenPGP message truncation not reported, bypassing the SEIPDv1 integrity check — BC-JAVA CWE-354 8.2 High 2026-10-03
CVE-2026-97873 Legacy PBES1 and PKCS#12 PBE iteration count honoured unbounded in the raw JCA provider — BC-JAVA CWE-770 5.3 Medium 2026-10-03
CVE-2026-18036 NTRU leaks private key information by reducing secret values with a non-constant-time integer division — BC-JAVA CWE-208 8.2 High 2026-10-02
CVE-2026-17508 Password-based KDF cost parameters honoured unbounded from untrusted input across the remaining PBE entry points — BC-JAVA CWE-770 5.3 Medium 2026-10-02
CVE-2026-17507 MLS membership checks compare a uint32 leaf_index as signed, admitting an out-of-range sender — BC-JAVA CWE-195 8.7 High 2026-10-02
CVE-2026-13586 PKCS#12 MAC and bag-decryption KDF iteration-count bound (DoS) — BC-JAVA CWE-770 5.3 Medium 2026-08-03
CVE-2026-13506 Lazy ASN.1 sequence forcing resets nesting-depth guard — BC-JAVA CWE-674 8.7 High 2026-08-03
CVE-2026-12860 RSA PKCS#1 verification skips last two hash bytes in NULL-omitted path — BC-JAVA CWE-347 8.7 High 2026-08-03
CVE-2026-12852 MLS wire decoder allocates attacker-declared opaque length before bounds check — BC-JAVA CWE-789 8.7 High 2026-08-03
CVE-2026-12817 OpenPGP AEAD decryption skips final tag on chunk-aligned data — BC-JAVA CWE-354 8.7 High 2026-08-03
CVE-2026-12816 IESEngine stream-mode MAC forgery via length-dependent KDF split — BC-JAVA CWE-354 8.7 High 2026-08-03
CVE-2026-12803 KCCMBlockCipher MAC does not bind nonce when AAD is absent (cross-nonce AEAD forgery) — BC-JAVA CWE-354 8.7 High 2026-08-03
CVE-2026-12802 CMS AuthEnvelopedData fails to enforce tag-length on decryption — BC-JAVA CWE-354 8.7 High 2026-08-03
CVE-2026-14682 Possible OOM from unbounded up-front allocation on a definite-length read — BC-JAVA CWE-789 8.7 High 2026-08-03
CVE-2026-58059 Quadratic-time escaping when stringifying X.500 distinguished names — BC-JAVA CWE-407 8.7 High 2026-08-03
CVE-2026-58060 HSS public-key level count unbounded, enabling huge allocation on verify — BC-JAVA CWE-789 8.7 High 2026-08-03
CVE-2026-58061 CCM-family modes write plaintext to caller buffer before tag check — BC-JAVA CWE-354 8.7 High 2026-08-03
CVE-2026-58062 Stapled OCSP response accepted without binding to the checked certificate — BC-JAVA CWE-295 9.3 Critical 2026-08-03
CVE-2026-58063 BCFKS keystore load honours unbounded KDF cost from untrusted file — BC-JAVA CWE-770 5.3 Medium 2026-08-03
CVE-2026-59638 JSSE hostname verifier CN-fallback enabled by default despite documented opt-in — BC-JAVA CWE-297 9.3 Critical 2026-08-03
CVE-2026-59639 CMS verifySignatures returns true for SignedData with zero signers — BC-JAVA CWE-347 8.7 High 2026-08-03

This page lists every published CVE security advisory associated with Legion of the Bouncy Castle Inc.. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.