cbcvebase.

Legion Of The Bouncy Castle Inc Bc-Fja vulnerabilities

27 known vulnerabilities affecting legion_of_the_bouncy_castle_inc/bc-fja.

Total CVEs
27
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
CRITICAL2HIGH17MEDIUM8

Vulnerabilities

Page 1 of 2
CVE-2026-8763P3CRITICALCVSS 9.1≥ 1.0.0, < 1.0.2.7≥ 2.0.0, < 2.0.2+1 more2026-08-03
CVE-2026-8763 [CRITICAL] CWE-295 CVE-2026-8763: In Bouncy Castle for Java before 1.85, Name Constraints bypass via trailing dot in rfc822Name and UR In Bouncy Castle for Java before 1.85, Name Constraints bypass via trailing dot in rfc822Name and URI. This issue also affects Bouncy Castle for Java LTS before 2.73.12, and Bouncy Castle for Java FIPS (BC-FJA) before bc-fips 1.0.2.7 (1.0.X series), 2.0.2 (2.0.X series) and 2.1.3 (2.1.X series).
nvd
CVE-2026-58062P3CRITICALCVSS 9.1≥ 2.0.0, < 2.0.2≥ 2.1.0, < 2.1.32026-08-03
CVE-2026-58062 [CRITICAL] CWE-295 CVE-2026-58062: In Bouncy Castle for Java before 1.85, Stapled OCSP response accepted without binding to the checked In Bouncy Castle for Java before 1.85, Stapled OCSP response accepted without binding to the checked certificate. This issue also affects Bouncy Castle for Java LTS before 2.73.12, and Bouncy Castle for Java FIPS (BC-FJA) before bc-fips 2.0.2 (2.0.X series) and 2.1.3 (2.1.X series).
nvd
CVE-2026-13505P3HIGHCVSS 8.7≥ 1.0.0, < 1.0.2.7≥ 2.0.0, < 2.0.2+1 more2026-08-08
CVE-2026-13505 [HIGH] CWE-772 CVE-2026-13505: In Bouncy Castle for Java FIPS (BC-FJA) before bc-fips 1.0.2.7 (1.0.X series), 2.0.2 (2.0.X series) In Bouncy Castle for Java FIPS (BC-FJA) before bc-fips 1.0.2.7 (1.0.X series), 2.0.2 (2.0.X series) and 2.1.3 (2.1.X series), sensitive key material held by the AES and DESede engines, the SP 800-90A DRBGs, SymmetricSecretKey and the PBKD and scrypt parameter classes was zeroised on garbage collection by overriding Object.finalize. Finalization runs at
nvd
CVE-2026-8798P3HIGHCVSS 8.7≥ 2.1.0, < 2.1.32026-08-08
CVE-2026-8798 [HIGH] CWE-835 CVE-2026-8798: In Bouncy Castle for Java FIPS (BC-FJA) before bc-fips 2.1.3, the native entropy source used on Inte In Bouncy Castle for Java FIPS (BC-FJA) before bc-fips 2.1.3, the native entropy source used on Intel platforms retried the CPU entropy instructions without any bound. RDSEED and RDRAND report failure through their carry flag, and the JNI seeding routine spun re-issuing the instruction for as long as that flag stayed clear, so a persistent failure of th
nvd
CVE-2026-12817P3HIGHCVSS 8.6≥ 1.0.7, < 1.0.13≥ 2.0.0, < 2.0.13+1 more2026-08-03
CVE-2026-12817 [HIGH] CWE-354 CVE-2026-12817: In Bouncy Castle for Java before 1.85, OpenPGP AEAD decryption skips final tag on chunk-aligned data In Bouncy Castle for Java before 1.85, OpenPGP AEAD decryption skips final tag on chunk-aligned data. This issue also affects Bouncy Castle for Java LTS before 2.73.12, and Bouncy Castle for Java FIPS (BC-FJA) before bcpg-fips 1.0.13 (1.0.X series), 2.0.13 (2.0.X series) and 2.1.13 (2.1.X series).
nvd
CVE-2026-15055P3HIGHCVSS 8.2≥ 1.0.0, < 1.0.12≥ 2.0.0, < 2.0.12+1 more2026-08-03
CVE-2026-15055 [HIGH] CWE-770 CVE-2026-15055: In Bouncy Castle for Java before 1.85, PKCS#8 / PBES2 decryptors honour unbounded KDF cost from inpu In Bouncy Castle for Java before 1.85, PKCS#8 / PBES2 decryptors honour unbounded KDF cost from input. This issue also affects Bouncy Castle for Java LTS before 2.73.12, and Bouncy Castle for Java FIPS (BC-FJA) before bcpkix-fips 1.0.12 (1.0.X series), 2.0.12 (2.0.X series) and 2.1.12 (2.1.X series).
nvd
CVE-2026-58061P3HIGHCVSS 7.5≥ 1.0.0, < 1.0.2.7≥ 2.0.0, < 2.0.2+1 more2026-08-03
CVE-2026-58061 [HIGH] CWE-354 CVE-2026-58061: In Bouncy Castle for Java before 1.85, CCM-family modes write plaintext to caller buffer before tag In Bouncy Castle for Java before 1.85, CCM-family modes write plaintext to caller buffer before tag check. This issue also affects Bouncy Castle for Java LTS before 2.73.12, and Bouncy Castle for Java FIPS (BC-FJA) before bc-fips 1.0.2.7 (1.0.X series), 2.0.2 (2.0.X series) and 2.1.3 (2.1.X series).
nvd
CVE-2026-58060P3HIGHCVSS 7.5≥ 2.0.0, < 2.0.2≥ 2.1.0, < 2.1.32026-08-03
CVE-2026-58060 [HIGH] CWE-789 CVE-2026-58060: In Bouncy Castle for Java before 1.85, HSS public-key level count unbounded, enabling huge allocatio In Bouncy Castle for Java before 1.85, HSS public-key level count unbounded, enabling huge allocation on verify. This issue also affects Bouncy Castle for Java LTS before 2.73.12, and Bouncy Castle for Java FIPS (BC-FJA) before bc-fips 2.0.2 (2.0.X series) and 2.1.3 (2.1.X series).
nvd
CVE-2026-59649P3HIGHCVSS 7.5≥ 1.0.0, < 1.0.13≥ 2.0.0, < 2.0.13+1 more2026-08-03
CVE-2026-59649 [HIGH] CWE-789 CVE-2026-59649: In Bouncy Castle for Java before 1.85, OpenPGP user-attribute subpacket length bounded only by JVM m In Bouncy Castle for Java before 1.85, OpenPGP user-attribute subpacket length bounded only by JVM max memory. This issue also affects Bouncy Castle for Java LTS before 2.73.12, and Bouncy Castle for Java FIPS (BC-FJA) before bcpg-fips 1.0.13 (1.0.X series), 2.0.13 (2.0.X series) and 2.1.13 (2.1.X series).
nvd
CVE-2026-58059P3HIGHCVSS 7.5≥ 1.0.0, < 1.0.2.7≥ 2.0.0, < 2.0.2+1 more2026-08-03
CVE-2026-58059 [HIGH] CWE-407 CVE-2026-58059: In Bouncy Castle for Java before 1.85, Quadratic-time escaping when stringifying X.500 distinguished In Bouncy Castle for Java before 1.85, Quadratic-time escaping when stringifying X.500 distinguished names. This issue also affects Bouncy Castle for Java LTS before 2.73.12, and Bouncy Castle for Java FIPS (BC-FJA) before bc-fips 1.0.2.7 (1.0.X series), 2.0.2 (2.0.X series) and 2.1.3 (2.1.X series).
nvd
CVE-2026-13506P3HIGHCVSS 7.5≥ 1.0.0, < 1.0.2.7≥ 2.0.0, < 2.0.2+1 more2026-08-03
CVE-2026-13506 [HIGH] CWE-674 CVE-2026-13506: In Bouncy Castle for Java before 1.85, Lazy ASN.1 sequence forcing resets nesting-depth guard. This In Bouncy Castle for Java before 1.85, Lazy ASN.1 sequence forcing resets nesting-depth guard. This issue also affects Bouncy Castle for Java LTS before 2.73.12, and Bouncy Castle for Java FIPS (BC-FJA) before bc-fips 1.0.2.7 (1.0.X series), 2.0.2 (2.0.X series) and 2.1.3 (2.1.X series).
nvd
CVE-2026-14682P3HIGHCVSS 7.5≥ 1.0.0, < 1.0.2.7≥ 2.0.0, < 2.0.2+2 more2026-08-03
CVE-2026-14682 [HIGH] CWE-789 CVE-2026-14682: In Bouncy Castle for Java before 1.85, Possible OOM from unbounded up-front allocation on a definite In Bouncy Castle for Java before 1.85, Possible OOM from unbounded up-front allocation on a definite-length read. This issue also affects Bouncy Castle for Java LTS before 2.73.12, and Bouncy Castle for Java FIPS (BC-FJA) before bc-fips 1.0.2.7 (1.0.X series), 2.0.2 (2.0.X series) and 2.1.3 (2.1.X series), and before bctls-fips 1.0.24.
nvd
CVE-2026-59639P3HIGHCVSS 7.5≥ 1.0.0, < 1.0.12≥ 2.0.0, < 2.0.12+1 more2026-08-03
CVE-2026-59639 [HIGH] CWE-347 CVE-2026-59639: In Bouncy Castle for Java before 1.85, CMS verifySignatures returns true for SignedData with zero si In Bouncy Castle for Java before 1.85, CMS verifySignatures returns true for SignedData with zero signers. This issue also affects Bouncy Castle for Java LTS before 2.73.12, and Bouncy Castle for Java FIPS (BC-FJA) before bcpkix-fips 1.0.12 (1.0.X series), 2.0.12 (2.0.X series) and 2.1.12 (2.1.X series).
nvd
CVE-2026-59642P3HIGHCVSS 7.5≥ 1.0.0, < 1.0.12≥ 2.0.0, < 2.0.12+1 more2026-08-03
CVE-2026-59642 [HIGH] CWE-354 CVE-2026-59642: In Bouncy Castle for Java before 1.85, CMS AuthenticatedData content not bound to MAC when authAttrs In Bouncy Castle for Java before 1.85, CMS AuthenticatedData content not bound to MAC when authAttrs present. This issue also affects Bouncy Castle for Java LTS before 2.73.12, and Bouncy Castle for Java FIPS (BC-FJA) before bcpkix-fips 1.0.12 (1.0.X series), 2.0.12 (2.0.X series) and 2.1.12 (2.1.X series).
nvd
CVE-2026-12802P3HIGHCVSS 7.5≥ 1.0.0, < 1.0.12≥ 2.0.0, < 2.0.12+1 more2026-08-03
CVE-2026-12802 [HIGH] CWE-354 CVE-2026-12802: In Bouncy Castle for Java before 1.85, CMS AuthEnvelopedData fails to enforce tag-length on decrypti In Bouncy Castle for Java before 1.85, CMS AuthEnvelopedData fails to enforce tag-length on decryption. This issue also affects Bouncy Castle for Java LTS before 2.73.12, and Bouncy Castle for Java FIPS (BC-FJA) before bcpkix-fips 1.0.12 (1.0.X series), 2.0.12 (2.0.X series) and 2.1.12 (2.1.X series).
nvd
CVE-2026-13586P3HIGHCVSS 7.5≥ 1.0.0, < 1.0.2.7≥ 2.0.0, < 2.0.2+1 more2026-08-03
CVE-2026-13586 [HIGH] CWE-770 CVE-2026-13586: In Bouncy Castle for Java before 1.85, PKCS#12 MAC and bag-decryption KDF iteration-count bound (DoS In Bouncy Castle for Java before 1.85, PKCS#12 MAC and bag-decryption KDF iteration-count bound (DoS). This issue also affects Bouncy Castle for Java LTS before 2.73.12, and Bouncy Castle for Java FIPS (BC-FJA) before bc-fips 1.0.2.7 (1.0.X series), 2.0.2 (2.0.X series) and 2.1.3 (2.1.X series).
nvd
CVE-2026-59646P3HIGHCVSS 7.5≥ 1.0.0, < 1.0.24≥ 2.0.0, < 2.0.24+1 more2026-08-03
CVE-2026-59646 [HIGH] CWE-789 CVE-2026-59646: In Bouncy Castle for Java before 1.85, DTLS handshake reassembler allocates buffer from unchecked 24 In Bouncy Castle for Java before 1.85, DTLS handshake reassembler allocates buffer from unchecked 24-bit length. This issue also affects Bouncy Castle for Java LTS before 2.73.12, and Bouncy Castle for Java FIPS (BC-FJA) before bctls-fips 1.0.24 (1.0.X series), 2.0.24 (2.0.X series) and 2.1.24 (2.1.X series).
nvd
CVE-2026-59645P3HIGHCVSS 7.5≥ 2.0.0, < 2.0.7≥ 2.1.0, < 2.1.72026-08-03
CVE-2026-59645 [HIGH] CWE-674 CVE-2026-59645: In Bouncy Castle for Java before 1.85, OER parser recurses without depth limit on self-referential I In Bouncy Castle for Java before 1.85, OER parser recurses without depth limit on self-referential IEEE 1609.2 schema. This issue also affects Bouncy Castle for Java LTS before 2.73.12, and Bouncy Castle for Java FIPS (BC-FJA) before bcutil-fips 2.0.7 (2.0.X series) and 2.1.7 (2.1.X series).
nvd
CVE-2026-59643P3HIGHCVSS 7.5≥ 2.0.12, < 2.0.132026-08-03
CVE-2026-59643 [HIGH] CWE-347 CVE-2026-59643: In Bouncy Castle for Java before 1.85, OpenPGP inline-signature policy failures silently ignored. Th In Bouncy Castle for Java before 1.85, OpenPGP inline-signature policy failures silently ignored. This issue also affects Bouncy Castle for Java FIPS (BC-FJA) before bcpg-fips 2.0.13.
nvd
CVE-2025-8885P3MEDIUMCVSS 6.3≥ 1.0.0, ≤ 1.0.2.5≥ 2.0.0, ≤ 2.0.12025-08-12
CVE-2025-8885 [MEDIUM] CWE-770 CVE-2025-8885: Allocation of Resources Without Limits or Throttling vulnerability in Legion of the Bouncy Castle In Allocation of Resources Without Limits or Throttling vulnerability in Legion of the Bouncy Castle Inc. BC Java bcprov on All (API modules), Legion of the Bouncy Castle Inc. BC-FJA bc-fips on All allows Excessive Allocation. This vulnerability is associated with program files https://github.com/bcgit/bc-java/blob/main/core/src/main/java/org/bouncycastl
nvd
Legion Of The Bouncy Castle Inc Bc-Fja vulnerabilities | cvebase