Advisory Database
  • Advisories
  • Dependency Scanning
  1. maven
  2. ›
  3. org.bouncycastle/bcpkix-lts8on
  4. ›
  5. CVE-2026-59642

CVE-2026-59642: CMS AuthenticatedData content not bound to MAC when authAttrs present

August 3, 2026 (updated September 16, 2026)

Affects Bouncy Castle for Java LTS before 2.73.12. RecipientInformation.getContentStream() digests the content separately while the MAC covers only the DER-encoded authenticated attributes, and the library never compares the computed digest against the messageDigest attribute that RFC 5652 requires. The documented usage pattern compares only the two MAC values, so callers following it never bind content to the MAC. An attacker can replace the encapsulated content while leaving the attributes and MAC intact, and verification still succeeds.

References

  • github.com/bcgit/bc-java/commit/2117f316a5a47308f3e569695a6592b16aac0dd7
  • github.com/bcgit/bc-java/wiki/CVE-2026-59642
  • nvd.nist.gov/vuln/detail/CVE-2026-59642

Code Behaviors & Features

Detect and mitigate CVE-2026-59642 with GitLab Dependency Scanning

Secure your software supply chain by verifying that all open source dependencies used in your projects contain no disclosed vulnerabilities. Learn more about Dependency Scanning →

Affected versions

All versions starting from 2.73.0 before 2.73.12

Fixed versions

  • 2.73.12

Solution

Upgrade to version 2.73.12 or above.

Impact 7.5 HIGH

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N

Learn more about CVSS

Weakness

  • CWE-354: Improper Validation of Integrity Check Value

Source file

maven/org.bouncycastle/bcpkix-lts8on/CVE-2026-59642.yml

Spotted a mistake? Edit the file on GitLab.

  • Site Repo
  • About GitLab
  • Terms
  • Privacy Statement
  • Contact

Page generated Tue, 22 Sep 2026 12:20:33 +0000.