CVE-2026-59651
published 2026-08-03CVE-2026-59651: In Bouncy Castle for Java before 1.85, BKS keystore accepts legacy version with 16-bit integrity MAC key. This issue also affects Bouncy Castle for Java LTS…
PriorityP343high7.5CVSS 3.1
AVNACLPRNUINSUCNIHAN
EPSS
0.16%
5.8th percentile
In Bouncy Castle for Java before 1.85, BKS keystore accepts legacy version with 16-bit integrity MAC key. This issue also affects Bouncy Castle for Java LTS before 2.73.12.
Affected
7 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| bouncycastle | bc-java | < 1.85 | 1.85 |
| bouncycastle | bouncy_castle_for_java_lts | <= 2.73.11 | — |
| legion_of_the_bouncy_castle_inc | bc-java | < 1.85 | 1.85 |
| legion_of_the_bouncy_castle_inc | bc-lts-java | >= 2.73.0 < 2.73.12 | 2.73.12 |
| pki-core_10.6 | resteasy | — | — |
| pki-deps_10.6 | resteasy | — | — |
| redhat | resteasy | — | — |
CVSS provenance
nvdv3.17.5HIGHCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N
nvdv4.07.1HIGHCVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:P/VC:N/VI:H/VA:N/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:Amber
vendor_redhat7.1HIGH
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Red Hat
org.bouncycastle/bcprov-jdk15on: Bouncy Castle for Java: Weak integrity protection in BKS keystore
vendor_redhat·2026-08-03·CVSS 7.1
CVE-2026-59651 [HIGH] CWE-1240 org.bouncycastle/bcprov-jdk15on: Bouncy Castle for Java: Weak integrity protection in BKS keystore
org.bouncycastle/bcprov-jdk15on: Bouncy Castle for Java: Weak integrity protection in BKS keystore
In Bouncy Castle for Java before 1.85, BKS keystore accepts legacy version with 16-bit integrity MAC key. This issue also affects Bouncy Castle for Java LTS before 2.73.12.
A flaw was found in Bouncy Castle for Java. The BKS keystore, which is used for storing cryptographic keys, accepts legacy versions that utilize a 16-bit integrity Message Authentication Code (MAC) key. This weak integrity protection could allow an attacker to tamper with the keystore's contents without being detected, leading to a high integrity impact.
Statement: Bouncy Castle for Java is bundled as a cryptographic provider across numerous Red Hat products. The BKS keystore accepts legacy-format keystores protected by
GHSA
In Bouncy Castle for Java before 1.85, BKS keystore accepts legacy version with 16-bit integrity MAC key.
ghsa_unreviewed·2026-08-03
CVE-2026-59651 [HIGH] CWE-326 In Bouncy Castle for Java before 1.85, BKS keystore accepts legacy version with 16-bit integrity MAC key.
In Bouncy Castle for Java before 1.85, BKS keystore accepts legacy version with 16-bit integrity MAC key. This issue also affects Bouncy Castle for Java LTS before 2.73.12.
VulDB
Legion of the Bouncy Castle BC-JAVA/BC-LTS-JAVA risky encryption
vuldb·2026-08-03·CVSS 7.1
CVE-2026-59651 [HIGH] Legion of the Bouncy Castle BC-JAVA/BC-LTS-JAVA risky encryption
A vulnerability was found in Legion of the Bouncy Castle BC-JAVA and BC-LTS-JAVA. It has been classified as problematic. Affected is an unknown function. The manipulation leads to risky cryptographic algorithm.
This vulnerability is traded as CVE-2026-59651. It is possible to initiate the attack remotely. There is no exploit available.
No detection rules found.
No public exploits indexed.
Bugzilla
CVE-2026-59651 resteasy: Bouncy Castle for Java: Weak integrity protection in BKS keystore [fedora-all]
bugzilla·2026-08-25·CVSS 7.1
CVE-2026-59651 [HIGH] CVE-2026-59651 resteasy: Bouncy Castle for Java: Weak integrity protection in BKS keystore [fedora-all]
CVE-2026-59651 resteasy: Bouncy Castle for Java: Weak integrity protection in BKS keystore [fedora-all]
Disclaimer: Community trackers are created by Red Hat Product Security team on a best effort basis. Package maintainers are required to ascertain if the flaw indeed affects their package, before starting the update process.
In Bouncy Castle for Java before 1.85, BKS keystore accepts legacy version with 16-bit integrity MAC key. This issue also affects Bouncy Castle for Java LTS before 2.73.12.
Bugzilla
CVE-2026-59651 jglobus: Bouncy Castle for Java: Weak integrity protection in BKS keystore [fedora-all]
bugzilla·2026-08-25·CVSS 7.1
CVE-2026-59651 [HIGH] CVE-2026-59651 jglobus: Bouncy Castle for Java: Weak integrity protection in BKS keystore [fedora-all]
CVE-2026-59651 jglobus: Bouncy Castle for Java: Weak integrity protection in BKS keystore [fedora-all]
Disclaimer: Community trackers are created by Red Hat Product Security team on a best effort basis. Package maintainers are required to ascertain if the flaw indeed affects their package, before starting the update process.
In Bouncy Castle for Java before 1.85, BKS keystore accepts legacy version with 16-bit integrity MAC key. This issue also affects Bouncy Castle for Java LTS before 2.73.12.
Bugzilla
CVE-2026-59651 byte-buddy: Bouncy Castle for Java: Weak integrity protection in BKS keystore [fedora-all]
bugzilla·2026-08-25·CVSS 7.1
CVE-2026-59651 [HIGH] CVE-2026-59651 byte-buddy: Bouncy Castle for Java: Weak integrity protection in BKS keystore [fedora-all]
CVE-2026-59651 byte-buddy: Bouncy Castle for Java: Weak integrity protection in BKS keystore [fedora-all]
Disclaimer: Community trackers are created by Red Hat Product Security team on a best effort basis. Package maintainers are required to ascertain if the flaw indeed affects their package, before starting the update process.
In Bouncy Castle for Java before 1.85, BKS keystore accepts legacy version with 16-bit integrity MAC key. This issue also affects Bouncy Castle for Java LTS before 2.73.12.
Bugzilla
CVE-2026-59651 org.bouncycastle/bcprov-jdk15on: Bouncy Castle for Java: Weak integrity protection in BKS keystore
bugzilla·2026-08-03·CVSS 7.1
CVE-2026-59651 [HIGH] CVE-2026-59651 org.bouncycastle/bcprov-jdk15on: Bouncy Castle for Java: Weak integrity protection in BKS keystore
CVE-2026-59651 org.bouncycastle/bcprov-jdk15on: Bouncy Castle for Java: Weak integrity protection in BKS keystore
In Bouncy Castle for Java before 1.85, BKS keystore accepts legacy version with 16-bit integrity MAC key. This issue also affects Bouncy Castle for Java LTS before 2.73.12.
2026-08-03
Published