OCTOBER 7, 2026
Live Feed
Back to database
Case File

CVE-2026-103601

HIGH · CVSS 8.2 EPSS 0.29% Public Exploit

Source: NVD + CISA KEV + EPSS · Published 2026-10-02 · Last synced 2026-10-07

CyberRota Analysis

AI-Generated

The vulnerability allows remote attackers to exploit the CCM and DSTU 7624 AEAD modes in the Bouncy Castle C# library, enabling them to obtain plaintext from ciphertexts by sending specially crafted messages to applications that expose their output buffers. This occurs due to improper handling of authentication checks, where decrypted data is written to a user-supplied buffer before verifying its integrity. Organizations utilizing affected versions of the library, particularly those handling sensitive data, should prioritize patching to mitigate potential data exposure risks.

Public Exploit Signal

A public exploit, PoC, GitHub repository or Metasploit reference was detected for this CVE.

Note: these links are listed for security research and verification purposes only.

CVE
CVE-2026-103601
Severity
HIGH
CVSS
8.2
EPSS
0.29%

Original NVD Description

Release of unverified plaintext in the CCM (CcmBlockCipher) and DSTU 7624 CCM (KCcmBlockCipher) AEAD modes in Legion of the Bouncy Castle Inc. bc-csharp before 2.7.0 allows a remote attacker to obtain decryptions of ciphertexts of their choosing via forged messages sent to an application that lets the output buffer of a failed decryption be observed, for example through buffer reuse or logging, because decryption wrote the recovered plaintext into the caller-supplied output buffer before checking the authentication tag and left it there when the check failed. Only decryption into a caller-supplied buffer is affected; methods that return a newly allocated array are not.