CVE-2026-59642
published 2026-08-03CVE-2026-59642: In Bouncy Castle for Java before 1.85, CMS AuthenticatedData content not bound to MAC when authAttrs present. This issue also affects Bouncy Castle for Java…
PriorityP342high7.5CVSS 3.1
AVNACLPRNUINSUCNIHAN
EPSS
0.15%
4.2th percentile
In Bouncy Castle for Java before 1.85, CMS AuthenticatedData content not bound to MAC when authAttrs present. This issue also affects Bouncy Castle for Java LTS before 2.73.12, and Bouncy Castle for Java FIPS (BC-FJA) before bcpkix-fips 1.0.12 (1.0.X series), 2.0.12 (2.0.X series) and 2.1.12 (2.1.X series).
Affected
14 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| bouncycastle | bc-java | < 1.85 | 1.85 |
| bouncycastle | bcpkix-fips | < 1.0.12 | 1.0.12 |
| bouncycastle | bcpkix-fips | >= 2.0.7 < 2.0.12 | 2.0.12 |
| bouncycastle | bcpkix-fips | >= 2.1.8 < 2.1.12 | 2.1.12 |
| bouncycastle | bouncy_castle_for_java_lts | <= 2.73.11 | — |
| debian | ceph | — | — |
| legion_of_the_bouncy_castle_inc | bc-fja | >= 1.0.0 < 1.0.12 | 1.0.12 |
| legion_of_the_bouncy_castle_inc | bc-fja | >= 2.0.0 < 2.0.12 | 2.0.12 |
| legion_of_the_bouncy_castle_inc | bc-fja | >= 2.1.0 < 2.1.12 | 2.1.12 |
| legion_of_the_bouncy_castle_inc | bc-java | < 1.85 | 1.85 |
| legion_of_the_bouncy_castle_inc | bc-lts-java | >= 2.73.0 < 2.73.12 | 2.73.12 |
| pki-core_10.6 | resteasy | — | — |
| pki-deps_10.6 | resteasy | — | — |
| redhat | resteasy | — | — |
CVSS provenance
nvdv3.17.5HIGHCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N
nvdv4.08.7HIGHCVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:N/VI:H/VA:N/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:Amber
vendor_redhat8.7HIGH
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Red Hat
org.bouncycastle/bcpkix-jdk15on: org.bouncycastle/bcpkix-fips: Bouncy Castle for Java: Data integrity bypass due to improper cryptographic binding in CMS AuthenticatedData
vendor_redhat·2026-08-03·CVSS 8.7
CVE-2026-59642 [HIGH] CWE-354 org.bouncycastle/bcpkix-jdk15on: org.bouncycastle/bcpkix-fips: Bouncy Castle for Java: Data integrity bypass due to improper cryptographic binding in CMS AuthenticatedData
org.bouncycastle/bcpkix-jdk15on: org.bouncycastle/bcpkix-fips: Bouncy Castle for Java: Data integrity bypass due to improper cryptographic binding in CMS AuthenticatedData
In Bouncy Castle for Java before 1.85, CMS AuthenticatedData content not bound to MAC when authAttrs present. This issue also affects Bouncy Castle for Java LTS before 2.73.12, and Bouncy Castle for Java FIPS (BC-FJA) before bcpkix-fips 1.0.12 (1.0.X series), 2.0.12 (2.0.X series) and 2.1.12 (2.1.X series).
A flaw was found in Bouncy Castle for Java. This vulnerability allows a remote attacker to bypass cryptographic integrity checks in the Cryptographic Message Syntax (CMS) AuthenticatedData content without requiring user interaction or elevated privileges. Specifically, when authentication attributes (authAttrs) are
GHSA
In Bouncy Castle for Java before 1.85, CMS AuthenticatedData content not bound to MAC when authAttrs present.
ghsa_unreviewed·2026-08-03
CVE-2026-59642 [HIGH] CWE-354 In Bouncy Castle for Java before 1.85, CMS AuthenticatedData content not bound to MAC when authAttrs present.
In Bouncy Castle for Java before 1.85, CMS AuthenticatedData content not bound to MAC when authAttrs present. This issue also affects Bouncy Castle for Java LTS before 2.73.12, and Bouncy Castle for Java FIPS (BC-FJA) before bcpkix-fips 1.0.12 (1.0.X series), 2.0.12 (2.0.X series) and 2.1.12 (2.1.X series).
VulDB
Legion of the Bouncy Castle Bouncy Castle for Java up to 2.1.11 data authenticity
vuldb·2026-08-03·CVSS 8.7
CVE-2026-59642 [HIGH] Legion of the Bouncy Castle Bouncy Castle for Java up to 2.1.11 data authenticity
A vulnerability, which was classified as problematic, has been found in Legion of the Bouncy Castle Bouncy Castle for Java, Bouncy Castle for Java LTS and Bouncy Castle for Java FIPS up to 1.84/2.73.11/1.0.11/2.0.11/2.1.11. The affected element is an unknown function. This manipulation causes insufficient verification of data authenticity.
This vulnerability is registered as CVE-2026-59642. Remote exploitation of the attack is possible. No exploit is available.
No detection rules found.
No public exploits indexed.
Bugzilla
CVE-2026-59642 resteasy: Bouncy Castle for Java: Data integrity bypass due to improper cryptographic binding in CMS AuthenticatedData [fedora-all]
bugzilla·2026-08-25·CVSS 8.7
CVE-2026-59642 [HIGH] CVE-2026-59642 resteasy: Bouncy Castle for Java: Data integrity bypass due to improper cryptographic binding in CMS AuthenticatedData [fedora-all]
CVE-2026-59642 resteasy: Bouncy Castle for Java: Data integrity bypass due to improper cryptographic binding in CMS AuthenticatedData [fedora-all]
Disclaimer: Community trackers are created by Red Hat Product Security team on a best effort basis. Package maintainers are required to ascertain if the flaw indeed affects their package, before starting the update process.
In Bouncy Castle for Java before 1.85, CMS AuthenticatedData content not bound to MAC when authAttrs present. This issue also affects Bouncy Castle for Java LTS before 2.73.12, and Bouncy Castle for Java FIPS (BC-FJA) before bcpkix-fips 1.0.12 (1.0.X series), 2.0.12 (2.0.X series) and 2.1.12 (2.1.X series).
Bugzilla
CVE-2026-59642 byte-buddy: Bouncy Castle for Java: Data integrity bypass due to improper cryptographic binding in CMS AuthenticatedData [fedora-all]
bugzilla·2026-08-25·CVSS 8.7
CVE-2026-59642 [HIGH] CVE-2026-59642 byte-buddy: Bouncy Castle for Java: Data integrity bypass due to improper cryptographic binding in CMS AuthenticatedData [fedora-all]
CVE-2026-59642 byte-buddy: Bouncy Castle for Java: Data integrity bypass due to improper cryptographic binding in CMS AuthenticatedData [fedora-all]
Disclaimer: Community trackers are created by Red Hat Product Security team on a best effort basis. Package maintainers are required to ascertain if the flaw indeed affects their package, before starting the update process.
In Bouncy Castle for Java before 1.85, CMS AuthenticatedData content not bound to MAC when authAttrs present. This issue also affects Bouncy Castle for Java LTS before 2.73.12, and Bouncy Castle for Java FIPS (BC-FJA) before bcpkix-fips 1.0.12 (1.0.X series), 2.0.12 (2.0.X series) and 2.1.12 (2.1.X series).
Bugzilla
CVE-2026-59642 ceph: Bouncy Castle for Java: Data integrity bypass due to improper cryptographic binding in CMS AuthenticatedData [fedora-all]
bugzilla·2026-08-25·CVSS 8.7
CVE-2026-59642 [HIGH] CVE-2026-59642 ceph: Bouncy Castle for Java: Data integrity bypass due to improper cryptographic binding in CMS AuthenticatedData [fedora-all]
CVE-2026-59642 ceph: Bouncy Castle for Java: Data integrity bypass due to improper cryptographic binding in CMS AuthenticatedData [fedora-all]
Disclaimer: Community trackers are created by Red Hat Product Security team on a best effort basis. Package maintainers are required to ascertain if the flaw indeed affects their package, before starting the update process.
In Bouncy Castle for Java before 1.85, CMS AuthenticatedData content not bound to MAC when authAttrs present. This issue also affects Bouncy Castle for Java LTS before 2.73.12, and Bouncy Castle for Java FIPS (BC-FJA) before bcpkix-fips 1.0.12 (1.0.X series), 2.0.12 (2.0.X series) and 2.1.12 (2.1.X series).
Bugzilla
CVE-2026-59642 org.bouncycastle/bcpkix-jdk15on: org.bouncycastle/bcpkix-fips: Bouncy Castle for Java: Data integrity bypass due to improper cryptographic binding in CMS AuthenticatedData
bugzilla·2026-08-03·CVSS 8.7
CVE-2026-59642 [HIGH] CVE-2026-59642 org.bouncycastle/bcpkix-jdk15on: org.bouncycastle/bcpkix-fips: Bouncy Castle for Java: Data integrity bypass due to improper cryptographic binding in CMS AuthenticatedData
CVE-2026-59642 org.bouncycastle/bcpkix-jdk15on: org.bouncycastle/bcpkix-fips: Bouncy Castle for Java: Data integrity bypass due to improper cryptographic binding in CMS AuthenticatedData
In Bouncy Castle for Java before 1.85, CMS AuthenticatedData content not bound to MAC when authAttrs present. This issue also affects Bouncy Castle for Java LTS before 2.73.12, and Bouncy Castle for Java FIPS (BC-FJA) before bcpkix-fips 1.0.12 (1.0.X series), 2.0.12 (2.0.X series) and 2.1.12 (2.1.X series).
2026-08-03
Published