Improper Integrity Check in AES-CCM Implementation of Bouncy Castle's C# Library
CVE-2026-15999
Key Information:
- Status
- Vendor
- CVE Published:
- 2 October 2026
What is CVE-2026-15999?
The Bouncy Castle C# library contains a vulnerability that arises from improper validation of integrity check values in its AES-CCM implementation. This flaw allows an adversary to intercept and manipulate CCM-encrypted data without detection by exploiting the AlgorithmIdentifier, especially when the authentication tag length is either set to zero or is incorrectly defined outside the specified RFC 5084 parameters. The lack of strict validation within CcmParameters, combined with the vulnerability in CcmBlockCipher that validates tag length solely during encryption, permits the decryption process to erroneously accept short or zero-length tags during checks, affecting various components including ParameterUtilities.GetCipherParameters and CmsEnvelopedData.
Affected Version(s)
bc-csharp 0 < 2.7.0
References
CVSS V4
Timeline
Vulnerability published
Vulnerability Reserved
