Bouncy Castle BC-FJA BC-FIPS GCM Vulnerability on Linux x86_64 AVX AVX-512f

Vulnerability

A vulnerability exists in the Legion of the Bouncy Castle BC-FJA BC-FIPS library on Linux systems running x86_64 with AVX and AVX-512f. The issue is related to the GCM (Galois/Counter Mode) implementations in the program files gcm128w and gcm512w. This vulnerability affects BC-FJA versions 2.1.0 through 2.1.2.

Impact

Exploitation of this vulnerability could lead to incorrect cryptographic operations in GCM, potentially allowing for unauthorized data manipulation or decryption.

Added: May 8, 2026, 7:21 AM
Updated: May 8, 2026, 7:21 AM

Vulnerability Rating

Custom Algorithm
spread
0.0
impact
1.9
exploitability
7.0
remediation
0.0
relevance
7.8
threat
0.0
urgency
5.7
incentive
4.2

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.