CVE-2026-5588
Unknown
CVE-2026-5588
SUSE
Released: April 17, 2026
Updated: April 18, 2026
Restart Required
Description
CVE-2026-5588
: Use of a Broken or Risky Cryptographic Algorithm vulnerability in Legion of the Bouncy Castle Inc. BC-JAVA bcpkix on all (pkix modules).
PKIX draft CompositeVerifier accepts empty signature sequence as valid.
This issue affects BC-JAVA: from 1.49 before 1.84.
The CVRF data is provided by SUSE under the Creative Commons License 4.0 with Attribution (CC-BY-4.0).
Fixed Vulnerabilities 1
Apr 15, 2026
: Use of a Broken or Risky Cryptographic Algorithm vulnerability in Legion of the Bouncy Castle Inc. BC-JAVA bcpkix on all (pkix modules). PKIX draft…
Quick Info
Patch ID:
CVE-2026-5588
Vendor:
SUSE
Severity:
Unknown
CVEs Fixed:
1
Restart:
Required
Vendor
SUSEAdditional Info
advisory id:
CVE-2026-5588
advisory type:
Security Update
cvrf filename:
cvrf-CVE-2026-5588.xml
