Known Vulnerabilities for Bctls-fips by Bouncycastle
Listed below are 3 of the newest known vulnerabilities associated with "Bctls-fips" by "Bouncycastle".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-59646 json | In Bouncy Castle for Java before 1.85, DTLS handshake reassembler allocates buffer from unchecked 24-bit length. This issue a... | Not Provided | 2026-08-03 | 2026-08-03 |
| CVE-2026-59638 json | In Bouncy Castle for Java before 1.85, JSSE hostname verifier CN-fallback enabled by default despite documented opt-in. This ... | Not Provided | 2026-08-03 | 2026-08-03 |
| CVE-2026-14682 json | In Bouncy Castle for Java before 1.85, Possible OOM from unbounded up-front allocation on a definite-length read. This issue ... | Not Provided | 2026-08-03 | 2026-08-04 |