Unrated severityOSV Advisory· Published Aug 4, 2026
Debian bouncycastle: In Bouncy Castle for Java before 1.85, OpenPGP inline-signature policy failures …
CVE-2026-59643
Description
In Bouncy Castle for Java before 1.85, OpenPGP inline-signature policy failures silently ignored. This issue also affects Bouncy Castle for Java FIPS (BC-FJA) before bcpg-fips 2.0.13.
Affected products
3- Range: r1rv84, r1rv81, r1rv83, …
- Range: <1.85
- Range: <2.0.13
Patches
Vulnerability mechanics
News mentions
0No linked articles in our index yet.