CVE-2026-58063
published 2026-08-03CVE-2026-58063: In Bouncy Castle for Java before 1.85, BCFKS keystore load honours unbounded KDF cost from untrusted file. This issue also affects Bouncy Castle for Java LTS…
PriorityP430medium5.3CVSS 3.1
AVNACLPRNUINSUCNINAL
EPSS
0.36%
29.3th percentile
In Bouncy Castle for Java before 1.85, BCFKS keystore load honours unbounded KDF cost from untrusted file. This issue also affects Bouncy Castle for Java LTS before 2.73.12, and Bouncy Castle for Java FIPS (BC-FJA) before bc-fips 1.0.2.7 (1.0.X series), 2.0.2 (2.0.X series) and 2.1.3 (2.1.X series).
Affected
13 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| bouncycastle | bc-java | < 1.85 | 1.85 |
| bouncycastle | bouncy_castle_for_java_lts | <= 2.73.11 | — |
| bouncycastle | fips_java_api | >= 1.0.0 < 1.0.2.7 | 1.0.2.7 |
| bouncycastle | fips_java_api | >= 2.0.0 < 2.0.2 | 2.0.2 |
| bouncycastle | fips_java_api | >= 2.1.0 < 2.1.3 | 2.1.3 |
| legion_of_the_bouncy_castle_inc | bc-fja | >= 1.0.0 < 1.0.2.7 | 1.0.2.7 |
| legion_of_the_bouncy_castle_inc | bc-fja | >= 2.0.0 < 2.0.2 | 2.0.2 |
| legion_of_the_bouncy_castle_inc | bc-fja | >= 2.1.0 < 2.1.3 | 2.1.3 |
| legion_of_the_bouncy_castle_inc | bc-java | < 1.85 | 1.85 |
| legion_of_the_bouncy_castle_inc | bc-lts-java | >= 2.73.0 < 2.73.12 | 2.73.12 |
| pki-core_10.6 | resteasy | — | — |
| pki-deps_10.6 | resteasy | — | — |
| redhat | resteasy | — | — |
CVSS provenance
nvdv3.15.3MEDIUMCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L
nvdv4.05.3MEDIUMCVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:P/VC:N/VI:N/VA:L/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:Amber
vendor_redhat5.3MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
VulDB
Legion of the Bouncy Castle BC-JAVA/BC-LTS-JAVA/BC-FJA up to 2.1.2 BCFKS Keystore load resource consumption (WID-SEC-2026-2622)
vuldb·2026-08-04·CVSS 5.3
CVE-2026-58063 [MEDIUM] Legion of the Bouncy Castle BC-JAVA/BC-LTS-JAVA/BC-FJA up to 2.1.2 BCFKS Keystore load resource consumption (WID-SEC-2026-2622)
A vulnerability was found in Legion of the Bouncy Castle BC-JAVA, BC-LTS-JAVA and BC-FJA up to 1.84/2.73.11/1.0.2.6/2.0.1/2.1.2 and classified as problematic. This issue affects the function Load of the component BCFKS Keystore. Such manipulation leads to resource consumption.
This vulnerability is documented as CVE-2026-58063. The attack can be executed remotely. There is not any exploit available.
It is suggested to upgrade the affected component.
GHSA
In Bouncy Castle for Java before 1.85, BCFKS keystore load honours unbounded KDF cost from untrusted file.
ghsa_unreviewed·2026-08-03
CVE-2026-58063 [MEDIUM] CWE-770 In Bouncy Castle for Java before 1.85, BCFKS keystore load honours unbounded KDF cost from untrusted file.
In Bouncy Castle for Java before 1.85, BCFKS keystore load honours unbounded KDF cost from untrusted file. This issue also affects Bouncy Castle for Java LTS before 2.73.12, and Bouncy Castle for Java FIPS (BC-FJA) before bc-fips 1.0.2.7 (1.0.X series), 2.0.2 (2.0.X series) and 2.1.3 (2.1.X series).
Red Hat
org.bouncycastle/bcprov-jdk15on: Bouncy Castle for Java: Denial of Service via unbounded KDF cost in BCFKS keystore load
vendor_redhat·2026-08-03·CVSS 5.3
CVE-2026-58063 [MEDIUM] CWE-770 org.bouncycastle/bcprov-jdk15on: Bouncy Castle for Java: Denial of Service via unbounded KDF cost in BCFKS keystore load
org.bouncycastle/bcprov-jdk15on: Bouncy Castle for Java: Denial of Service via unbounded KDF cost in BCFKS keystore load
In Bouncy Castle for Java before 1.85, BCFKS keystore load honours unbounded KDF cost from untrusted file. This issue also affects Bouncy Castle for Java LTS before 2.73.12, and Bouncy Castle for Java FIPS (BC-FJA) before bc-fips 1.0.2.7 (1.0.X series), 2.0.2 (2.0.X series) and 2.1.3 (2.1.X series).
A flaw was found in Bouncy Castle for Java. A remote attacker can exploit this vulnerability by providing a specially crafted BCFKS keystore file that specifies an unbounded Key Derivation Function (KDF) cost. This can lead to a Denial of Service (DoS) as the system attempts to process the file, consuming excessive resources and becoming unresponsive.
Statement: Bouncy Cas
No detection rules found.
No public exploits indexed.
Bugzilla
CVE-2026-58063 byte-buddy: Bouncy Castle for Java: Denial of Service via unbounded KDF cost in BCFKS keystore load [fedora-all]
bugzilla·2026-08-25·CVSS 5.3
CVE-2026-58063 [MEDIUM] CVE-2026-58063 byte-buddy: Bouncy Castle for Java: Denial of Service via unbounded KDF cost in BCFKS keystore load [fedora-all]
CVE-2026-58063 byte-buddy: Bouncy Castle for Java: Denial of Service via unbounded KDF cost in BCFKS keystore load [fedora-all]
Disclaimer: Community trackers are created by Red Hat Product Security team on a best effort basis. Package maintainers are required to ascertain if the flaw indeed affects their package, before starting the update process.
In Bouncy Castle for Java before 1.85, BCFKS keystore load honours unbounded KDF cost from untrusted file. This issue also affects Bouncy Castle for Java LTS before 2.73.12, and Bouncy Castle for Java FIPS (BC-FJA) before bc-fips 1.0.2.7 (1.0.X series), 2.0.2 (2.0.X series) and 2.1.3 (2.1.X series).
Bugzilla
CVE-2026-58063 jglobus: Bouncy Castle for Java: Denial of Service via unbounded KDF cost in BCFKS keystore load [fedora-all]
bugzilla·2026-08-25·CVSS 5.3
CVE-2026-58063 [MEDIUM] CVE-2026-58063 jglobus: Bouncy Castle for Java: Denial of Service via unbounded KDF cost in BCFKS keystore load [fedora-all]
CVE-2026-58063 jglobus: Bouncy Castle for Java: Denial of Service via unbounded KDF cost in BCFKS keystore load [fedora-all]
Disclaimer: Community trackers are created by Red Hat Product Security team on a best effort basis. Package maintainers are required to ascertain if the flaw indeed affects their package, before starting the update process.
In Bouncy Castle for Java before 1.85, BCFKS keystore load honours unbounded KDF cost from untrusted file. This issue also affects Bouncy Castle for Java LTS before 2.73.12, and Bouncy Castle for Java FIPS (BC-FJA) before bc-fips 1.0.2.7 (1.0.X series), 2.0.2 (2.0.X series) and 2.1.3 (2.1.X series).
Bugzilla
CVE-2026-58063 resteasy: Bouncy Castle for Java: Denial of Service via unbounded KDF cost in BCFKS keystore load [fedora-all]
bugzilla·2026-08-25·CVSS 5.3
CVE-2026-58063 [MEDIUM] CVE-2026-58063 resteasy: Bouncy Castle for Java: Denial of Service via unbounded KDF cost in BCFKS keystore load [fedora-all]
CVE-2026-58063 resteasy: Bouncy Castle for Java: Denial of Service via unbounded KDF cost in BCFKS keystore load [fedora-all]
Disclaimer: Community trackers are created by Red Hat Product Security team on a best effort basis. Package maintainers are required to ascertain if the flaw indeed affects their package, before starting the update process.
In Bouncy Castle for Java before 1.85, BCFKS keystore load honours unbounded KDF cost from untrusted file. This issue also affects Bouncy Castle for Java LTS before 2.73.12, and Bouncy Castle for Java FIPS (BC-FJA) before bc-fips 1.0.2.7 (1.0.X series), 2.0.2 (2.0.X series) and 2.1.3 (2.1.X series).
Bugzilla
CVE-2026-58063 org.bouncycastle/bcprov-jdk15on: Bouncy Castle for Java: Denial of Service via unbounded KDF cost in BCFKS keystore load
bugzilla·2026-08-03·CVSS 5.3
CVE-2026-58063 [MEDIUM] CVE-2026-58063 org.bouncycastle/bcprov-jdk15on: Bouncy Castle for Java: Denial of Service via unbounded KDF cost in BCFKS keystore load
CVE-2026-58063 org.bouncycastle/bcprov-jdk15on: Bouncy Castle for Java: Denial of Service via unbounded KDF cost in BCFKS keystore load
In Bouncy Castle for Java before 1.85, BCFKS keystore load honours unbounded KDF cost from untrusted file. This issue also affects Bouncy Castle for Java LTS before 2.73.12, and Bouncy Castle for Java FIPS (BC-FJA) before bc-fips 1.0.2.7 (1.0.X series), 2.0.2 (2.0.X series) and 2.1.3 (2.1.X series).
2026-08-03
Published