Skip to content

CVE-2026-5598: org.bouncycastle:bcprov-jdk18on:jar:1.78.1:compile #418

@github-actions

Description

@github-actions

Summary

Covert timing channel vulnerability in Legion of the Bouncy Castle Inc. BC-JAVA core on all (core modules).

This vulnerability is associated with program files FrodoEngine.Java.

This issue affects BC-JAVA: from 1.71 before 1.80.2, from 1.81 before 1.80.1, from 1.82 before 1.84.

CVE: CVE-2026-5598
CWE: CWE-385

References

Metadata

Metadata

Assignees

No one assigned

    Labels

    securitySecurity related change

    Type

    No type
    No fields configured for issues without a type.

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions