CVE-2026-12817
published 2026-08-03CVE-2026-12817: In Bouncy Castle for Java before 1.85, OpenPGP AEAD decryption skips final tag on chunk-aligned data. This issue also affects Bouncy Castle for Java LTS before…
PriorityP349high8.6CVSS 3.1
AVNACLPRNUINSUCLILAH
EPSS
0.14%
3.6th percentile
In Bouncy Castle for Java before 1.85, OpenPGP AEAD decryption skips final tag on chunk-aligned data. This issue also affects Bouncy Castle for Java LTS before 2.73.12, and Bouncy Castle for Java FIPS (BC-FJA) before bcpg-fips 1.0.13 (1.0.X series), 2.0.13 (2.0.X series) and 2.1.13 (2.1.X series).
Affected
13 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| bouncycastle | bc-java | < 1.85 | 1.85 |
| bouncycastle | bcpg-fips | >= 1.0.7 < 1.0.13 | 1.0.13 |
| bouncycastle | bcpg-fips | >= 2.0.8 < 2.0.13 | 2.0.13 |
| bouncycastle | bcpg-fips | >= 2.1.10 < 2.1.13 | 2.1.13 |
| bouncycastle | bouncy_castle_for_java_lts | <= 2.73.11 | — |
| jboss-eap-7 | eap74-els-openjdk11-openshift-rhel8 | — | — |
| jboss-eap-7 | eap74-els-openjdk17-openshift-rhel8 | — | — |
| jboss-eap-7 | eap74-els-openjdk8-openshift-rhel8 | — | — |
| legion_of_the_bouncy_castle_inc | bc-fja | >= 1.0.7 < 1.0.13 | 1.0.13 |
| legion_of_the_bouncy_castle_inc | bc-fja | >= 2.0.0 < 2.0.13 | 2.0.13 |
| legion_of_the_bouncy_castle_inc | bc-fja | >= 2.1.0 < 2.1.13 | 2.1.13 |
| legion_of_the_bouncy_castle_inc | bc-java | >= 1.74 < 1.85 | 1.85 |
| legion_of_the_bouncy_castle_inc | bc-lts-java | >= 2.73.0 < 2.73.12 | 2.73.12 |
CVSS provenance
nvdv3.18.6HIGHCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:H
nvdv4.08.7HIGHCVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:N/VI:H/VA:N/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:Amber
vendor_redhat8.7HIGH
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Red Hat
bouncycastle: Bouncy Castle for Java: Integrity bypass in OpenPGP AEAD decryption
vendor_redhat·2026-08-03·CVSS 8.7
CVE-2026-12817 [HIGH] CWE-347 bouncycastle: Bouncy Castle for Java: Integrity bypass in OpenPGP AEAD decryption
bouncycastle: Bouncy Castle for Java: Integrity bypass in OpenPGP AEAD decryption
In Bouncy Castle for Java before 1.85, OpenPGP AEAD decryption skips final tag on chunk-aligned data. This issue also affects Bouncy Castle for Java LTS before 2.73.12, and Bouncy Castle for Java FIPS (BC-FJA) before bcpg-fips 1.0.13 (1.0.X series), 2.0.13 (2.0.X series) and 2.1.13 (2.1.X series).
A flaw was found in Bouncy Castle for Java. This vulnerability affects the OpenPGP Authenticated Encryption with Associated Data (AEAD) decryption process. Specifically, the system fails to verify the final authentication tag when processing data that is aligned in chunks. This oversight could allow a remote attacker to modify encrypted information without being detected, leading to a compromise of data integrity.
VulDB
Legion of the Bouncy Castle Bouncy Castle for Java prior 1.85/2.73.12/1.0.13/2.0.13/2.1.13 OpenPGP AEAD Decryption integrity check (Nessus ID 331803 / WID-SEC-2026-2622)
vuldb·2026-09-01·CVSS 8.6
CVE-2026-12817 [HIGH] Legion of the Bouncy Castle Bouncy Castle for Java prior 1.85/2.73.12/1.0.13/2.0.13/2.1.13 OpenPGP AEAD Decryption integrity check (Nessus ID 331803 / WID-SEC-2026-2622)
A vulnerability was found in Legion of the Bouncy Castle Bouncy Castle for Java, Bouncy Castle for Java LTS and Bouncy Castle for Java FIPS. It has been declared as critical. This impacts an unknown function of the component OpenPGP AEAD Decryption. The manipulation results in missing support for integrity check.
This vulnerability is reported as CVE-2026-12817. The attack can be launched remotely. No exploit exists.
It is recommended to upgrade the affected component.
GHSA
In Bouncy Castle for Java before 1.85, OpenPGP AEAD decryption skips final tag on chunk-aligned data.
ghsa_unreviewed·2026-08-03
CVE-2026-12817 [HIGH] CWE-354 In Bouncy Castle for Java before 1.85, OpenPGP AEAD decryption skips final tag on chunk-aligned data.
In Bouncy Castle for Java before 1.85, OpenPGP AEAD decryption skips final tag on chunk-aligned data. This issue also affects Bouncy Castle for Java LTS before 2.73.12, and Bouncy Castle for Java FIPS (BC-FJA) before bcpg-fips 1.0.13 (1.0.X series), 2.0.13 (2.0.X series) and 2.1.13 (2.1.X series).
No detection rules found.
No public exploits indexed.
Bugzilla
CVE-2026-12817 bouncycastle: Bouncy Castle for Java: Integrity bypass in OpenPGP AEAD decryption [epel-all]
bugzilla·2026-08-27·CVSS 8.7
CVE-2026-12817 [HIGH] CVE-2026-12817 bouncycastle: Bouncy Castle for Java: Integrity bypass in OpenPGP AEAD decryption [epel-all]
CVE-2026-12817 bouncycastle: Bouncy Castle for Java: Integrity bypass in OpenPGP AEAD decryption [epel-all]
Disclaimer: Community trackers are created by Red Hat Product Security team on a best effort basis. Package maintainers are required to ascertain if the flaw indeed affects their package, before starting the update process.
In Bouncy Castle for Java before 1.85, OpenPGP AEAD decryption skips final tag on chunk-aligned data. This issue also affects Bouncy Castle for Java LTS before 2.73.12, and Bouncy Castle for Java FIPS (BC-FJA) before bcpg-fips 1.0.13 (1.0.X series), 2.0.13 (2.0.X series) and 2.1.13 (2.1.X series).
Bugzilla
CVE-2026-12817 bouncycastle: Bouncy Castle for Java: Integrity bypass in OpenPGP AEAD decryption [fedora-all]
bugzilla·2026-08-27·CVSS 8.7
CVE-2026-12817 [HIGH] CVE-2026-12817 bouncycastle: Bouncy Castle for Java: Integrity bypass in OpenPGP AEAD decryption [fedora-all]
CVE-2026-12817 bouncycastle: Bouncy Castle for Java: Integrity bypass in OpenPGP AEAD decryption [fedora-all]
Disclaimer: Community trackers are created by Red Hat Product Security team on a best effort basis. Package maintainers are required to ascertain if the flaw indeed affects their package, before starting the update process.
In Bouncy Castle for Java before 1.85, OpenPGP AEAD decryption skips final tag on chunk-aligned data. This issue also affects Bouncy Castle for Java LTS before 2.73.12, and Bouncy Castle for Java FIPS (BC-FJA) before bcpg-fips 1.0.13 (1.0.X series), 2.0.13 (2.0.X series) and 2.1.13 (2.1.X series).
Bugzilla
CVE-2026-12817 bouncycastle: Bouncy Castle for Java: Integrity bypass in OpenPGP AEAD decryption
bugzilla·2026-08-03·CVSS 8.7
CVE-2026-12817 [HIGH] CVE-2026-12817 bouncycastle: Bouncy Castle for Java: Integrity bypass in OpenPGP AEAD decryption
CVE-2026-12817 bouncycastle: Bouncy Castle for Java: Integrity bypass in OpenPGP AEAD decryption
In Bouncy Castle for Java before 1.85, OpenPGP AEAD decryption skips final tag on chunk-aligned data. This issue also affects Bouncy Castle for Java LTS before 2.73.12, and Bouncy Castle for Java FIPS (BC-FJA) before bcpg-fips 1.0.13 (1.0.X series), 2.0.13 (2.0.X series) and 2.1.13 (2.1.X series).
Bugzilla
CVE-2025-12817 postgresql16: CREATE STATISTICS does not check for schema CREATE privilege [fedora-42]
bugzilla·2025-11-17·CVSS 3.1
CVE-2025-12817 [LOW] CVE-2025-12817 postgresql16: CREATE STATISTICS does not check for schema CREATE privilege [fedora-42]
CVE-2025-12817 postgresql16: CREATE STATISTICS does not check for schema CREATE privilege [fedora-42]
Disclaimer: Community trackers are created by Red Hat Product Security team on a best effort basis. Package maintainers are required to ascertain if the flaw indeed affects their package, before starting the update process.
The following link provides references to all essential vulnerability management information. If something is wrong or missing, please contact a member of PSIRT.
https://spaces.redhat.com/display/PRODSEC/Vulnerability+Management+-+Essential+Documents+for+Engineering+Teams
Discussion:
This message is a reminder that Fedora Linux 42 is nearing its end of life.
Fedora will stop maintaining and issuing updates for Fedora Linux 42 on 2026-05-13.
It is Fedora's policy to
Bugzilla
CVE-2025-12817 mingw-postgresql: CREATE STATISTICS does not check for schema CREATE privilege [fedora-42]
bugzilla·2025-11-17·CVSS 3.1
CVE-2025-12817 [LOW] CVE-2025-12817 mingw-postgresql: CREATE STATISTICS does not check for schema CREATE privilege [fedora-42]
CVE-2025-12817 mingw-postgresql: CREATE STATISTICS does not check for schema CREATE privilege [fedora-42]
Disclaimer: Community trackers are created by Red Hat Product Security team on a best effort basis. Package maintainers are required to ascertain if the flaw indeed affects their package, before starting the update process.
The following link provides references to all essential vulnerability management information. If something is wrong or missing, please contact a member of PSIRT.
https://spaces.redhat.com/display/PRODSEC/Vulnerability+Management+-+Essential+Documents+for+Engineering+Teams
Discussion:
This message is a reminder that Fedora Linux 42 is nearing its end of life.
Fedora will stop maintaining and issuing updates for Fedora Linux 42 on 2026-05-13.
It is Fedora's policy
Bugzilla
CVE-2025-12817 postgresql17: CREATE STATISTICS does not check for schema CREATE privilege [fedora-42]
bugzilla·2025-11-17·CVSS 3.1
CVE-2025-12817 [LOW] CVE-2025-12817 postgresql17: CREATE STATISTICS does not check for schema CREATE privilege [fedora-42]
CVE-2025-12817 postgresql17: CREATE STATISTICS does not check for schema CREATE privilege [fedora-42]
Disclaimer: Community trackers are created by Red Hat Product Security team on a best effort basis. Package maintainers are required to ascertain if the flaw indeed affects their package, before starting the update process.
The following link provides references to all essential vulnerability management information. If something is wrong or missing, please contact a member of PSIRT.
https://spaces.redhat.com/display/PRODSEC/Vulnerability+Management+-+Essential+Documents+for+Engineering+Teams
Discussion:
This message is a reminder that Fedora Linux 42 is nearing its end of life.
Fedora will stop maintaining and issuing updates for Fedora Linux 42 on 2026-05-13.
It is Fedora's policy to
2026-08-03
Published