CVE-2026-5588 Unknown

CVE-2026-5588

SUSE Released: April 17, 2026 Updated: April 18, 2026 Restart Required

Description

CVE-2026-5588 : Use of a Broken or Risky Cryptographic Algorithm vulnerability in Legion of the Bouncy Castle Inc. BC-JAVA bcpkix on all (pkix modules). PKIX draft CompositeVerifier accepts empty signature sequence as valid. This issue affects BC-JAVA: from 1.49 before 1.84. The CVRF data is provided by SUSE under the Creative Commons License 4.0 with Attribution (CC-BY-4.0).

Fixed Vulnerabilities 1

CVE-2026-5588 N/A 0.0 ⚠️ KEV fixed
Apr 15, 2026

: Use of a Broken or Risky Cryptographic Algorithm vulnerability in Legion of the Bouncy Castle Inc. BC-JAVA bcpkix on all (pkix modules). PKIX draft…

Quick Info

Patch ID: CVE-2026-5588
Vendor: SUSE
Severity: Unknown
CVEs Fixed: 1
Restart: Required

Vendor

SUSE

Additional Info

advisory id: CVE-2026-5588
advisory type: Security Update
cvrf filename: cvrf-CVE-2026-5588.xml

Share