CVE-2016-1000338: Bouncycastle Legion-Of-The-Bouncy-Castle-Java-Crytography-API
High severity, CVSS 7.5. EPSS: 1.8% chance of exploitation in the next 30 days.
In Bouncy Castle JCE Provider version 1.55 and earlier the DSA does not fully validate ASN.1 encoding of signature on verification. It is possible to inject extra elements in the sequence making up the signature and still have it validate, which in some cases may allow the introduction of 'invisible' data into a signed structure.
Affected products
- Bouncycastle Legion-Of-The-Bouncy-Castle-Java-Crytography-API: from 1.38, before 1.56 (fixed in 1.56)
- Canonical Ubuntu Linux: version 14.04 only
- Netapp 7-Mode Transition Tool: affected versions not specified
- Red Hat Satellite: version 6.4 only
- Red Hat Satellite Capsule: version 6.4 only
Published 2018-06-01. Last modified 2026-06-17.