CVE-2026-58060
published 2026-08-03CVE-2026-58060: In Bouncy Castle for Java before 1.85, HSS public-key level count unbounded, enabling huge allocation on verify. This issue also affects Bouncy Castle for Java…
PriorityP344high7.5CVSS 3.1
AVNACLPRNUINSUCNINAH
EPSS
0.65%
48.9th percentile
In Bouncy Castle for Java before 1.85, HSS public-key level count unbounded, enabling huge allocation on verify. This issue also affects Bouncy Castle for Java LTS before 2.73.12, and Bouncy Castle for Java FIPS (BC-FJA) before bc-fips 2.0.2 (2.0.X series) and 2.1.3 (2.1.X series).
Affected
11 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| bouncycastle | bc-java | >= 1.65 < 1.85 | 1.85 |
| bouncycastle | bouncy_castle_for_java_lts | <= 2.73.11 | — |
| bouncycastle | fips_java_api | < 2.0.2 | 2.0.2 |
| bouncycastle | fips_java_api | >= 2.1.0 < 2.1.3 | 2.1.3 |
| jboss-eap-7 | eap74-els-openjdk11-openshift-rhel8 | — | — |
| jboss-eap-7 | eap74-els-openjdk17-openshift-rhel8 | — | — |
| jboss-eap-7 | eap74-els-openjdk8-openshift-rhel8 | — | — |
| legion_of_the_bouncy_castle_inc | bc-fja | >= 2.0.0 < 2.0.2 | 2.0.2 |
| legion_of_the_bouncy_castle_inc | bc-fja | >= 2.1.0 < 2.1.3 | 2.1.3 |
| legion_of_the_bouncy_castle_inc | bc-java | >= 1.65 < 1.85 | 1.85 |
| legion_of_the_bouncy_castle_inc | bc-lts-java | >= 2.73.0 < 2.73.12 | 2.73.12 |
CVSS provenance
nvdv3.17.5HIGHCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
nvdv4.08.7HIGHCVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:Amber
vendor_redhat8.7HIGH
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
VulDB
Legion of the Bouncy Castle BC Java/BC Java FIPS/BC Java LTS HSS allocation of resources (WID-SEC-2026-2622)
vuldb·2026-08-04·CVSS 8.7
CVE-2026-58060 [HIGH] Legion of the Bouncy Castle BC Java/BC Java FIPS/BC Java LTS HSS allocation of resources (WID-SEC-2026-2622)
A vulnerability, which was classified as problematic, has been found in Legion of the Bouncy Castle BC Java, BC Java FIPS and BC Java LTS. Affected by this issue is some unknown functionality of the component HSS. The manipulation leads to allocation of resources.
This vulnerability is listed as CVE-2026-58060. The attack may be initiated remotely. There is no available exploit.
GHSA
In Bouncy Castle for Java before 1.85, HSS public-key level count unbounded, enabling huge allocation on verify.
ghsa_unreviewed·2026-08-03
CVE-2026-58060 [HIGH] CWE-789 In Bouncy Castle for Java before 1.85, HSS public-key level count unbounded, enabling huge allocation on verify.
In Bouncy Castle for Java before 1.85, HSS public-key level count unbounded, enabling huge allocation on verify. This issue also affects Bouncy Castle for Java LTS before 2.73.12, and Bouncy Castle for Java FIPS (BC-FJA) before bc-fips 2.0.2 (2.0.X series) and 2.1.3 (2.1.X series).
Red Hat
bouncycastle: Bouncy Castle for Java: Denial of Service via unbounded HSS public-key level count
vendor_redhat·2026-08-03·CVSS 8.7
CVE-2026-58060 [HIGH] CWE-770 bouncycastle: Bouncy Castle for Java: Denial of Service via unbounded HSS public-key level count
bouncycastle: Bouncy Castle for Java: Denial of Service via unbounded HSS public-key level count
In Bouncy Castle for Java before 1.85, HSS public-key level count unbounded, enabling huge allocation on verify. This issue also affects Bouncy Castle for Java LTS before 2.73.12, and Bouncy Castle for Java FIPS (BC-FJA) before bc-fips 2.0.2 (2.0.X series) and 2.1.3 (2.1.X series).
A flaw was found in Bouncy Castle for Java. A remote attacker could exploit a vulnerability where the HSS public-key level count is unbounded. This allows for a huge memory allocation during the verification process, leading to a denial of service (DoS) condition. This issue affects Bouncy Castle for Java, Bouncy Castle for Java LTS, and Bouncy Castle for Java FIPS (BC-FJA).
Statement: Important: Bouncy Castle for
No detection rules found.
No public exploits indexed.
Bugzilla
CVE-2026-58060 bouncycastle: Bouncy Castle for Java: Denial of Service via unbounded HSS public-key level count [epel-all]
bugzilla·2026-08-27·CVSS 8.7
CVE-2026-58060 [HIGH] CVE-2026-58060 bouncycastle: Bouncy Castle for Java: Denial of Service via unbounded HSS public-key level count [epel-all]
CVE-2026-58060 bouncycastle: Bouncy Castle for Java: Denial of Service via unbounded HSS public-key level count [epel-all]
Disclaimer: Community trackers are created by Red Hat Product Security team on a best effort basis. Package maintainers are required to ascertain if the flaw indeed affects their package, before starting the update process.
In Bouncy Castle for Java before 1.85, HSS public-key level count unbounded, enabling huge allocation on verify. This issue also affects Bouncy Castle for Java LTS before 2.73.12, and Bouncy Castle for Java FIPS (BC-FJA) before bc-fips 2.0.2 (2.0.X series) and 2.1.3 (2.1.X series).
Bugzilla
CVE-2026-58060 bouncycastle: Bouncy Castle for Java: Denial of Service via unbounded HSS public-key level count [fedora-all]
bugzilla·2026-08-27·CVSS 8.7
CVE-2026-58060 [HIGH] CVE-2026-58060 bouncycastle: Bouncy Castle for Java: Denial of Service via unbounded HSS public-key level count [fedora-all]
CVE-2026-58060 bouncycastle: Bouncy Castle for Java: Denial of Service via unbounded HSS public-key level count [fedora-all]
Disclaimer: Community trackers are created by Red Hat Product Security team on a best effort basis. Package maintainers are required to ascertain if the flaw indeed affects their package, before starting the update process.
In Bouncy Castle for Java before 1.85, HSS public-key level count unbounded, enabling huge allocation on verify. This issue also affects Bouncy Castle for Java LTS before 2.73.12, and Bouncy Castle for Java FIPS (BC-FJA) before bc-fips 2.0.2 (2.0.X series) and 2.1.3 (2.1.X series).
Bugzilla
CVE-2026-58060 bouncycastle: Bouncy Castle for Java: Denial of Service via unbounded HSS public-key level count
bugzilla·2026-08-03·CVSS 8.7
CVE-2026-58060 [HIGH] CVE-2026-58060 bouncycastle: Bouncy Castle for Java: Denial of Service via unbounded HSS public-key level count
CVE-2026-58060 bouncycastle: Bouncy Castle for Java: Denial of Service via unbounded HSS public-key level count
In Bouncy Castle for Java before 1.85, HSS public-key level count unbounded, enabling huge allocation on verify. This issue also affects Bouncy Castle for Java LTS before 2.73.12, and Bouncy Castle for Java FIPS (BC-FJA) before bc-fips 2.0.2 (2.0.X series) and 2.1.3 (2.1.X series).
2026-08-03
Published