Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2026-12185

Опубликовано: 03 авг. 2026
Источник: debian

Описание

In Bouncy Castle for Java before 1.85, BKS/UBER keystore allocates from untrusted lengths before integrity check. This issue also affects Bouncy Castle for Java LTS before 2.73.12.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
bouncycastleunfixedpackage

Примечания

  • https://github.com/bcgit/bc-java/wiki/CVE%E2%80%902026%E2%80%9012185

  • Fixed by: https://github.com/bcgit/bc-java/commit/7bbd7fe5f44132e5b6140a2914435c12430eeb3d (r1rv85)

Связанные уязвимости

ubuntu
24 дня назад

In Bouncy Castle for Java before 1.85, BKS/UBER keystore allocates from untrusted lengths before integrity check. This issue also affects Bouncy Castle for Java LTS before 2.73.12.

nvd
24 дня назад

In Bouncy Castle for Java before 1.85, BKS/UBER keystore allocates from untrusted lengths before integrity check. This issue also affects Bouncy Castle for Java LTS before 2.73.12.

github
24 дня назад

In Bouncy Castle for Java before 1.85, BKS/UBER keystore allocates from untrusted lengths before integrity check. This issue also affects Bouncy Castle for Java LTS before 2.73.12.

suse-cvrf
21 день назад

Security update for bouncycastle

suse-cvrf
17 дней назад

Security update for bouncycastle