Bouncy Castle BC-FJA GCM Weakness (gcm128w/gcm512w) 2.1.0-2.1.2
CVE-2026-8149 Published on May 8, 2026

GCM chunking can lead to bad tag exception on decryption
A vulnerability in Legion of the Bouncy Castle Inc. BC-LTS on Linux, X86_64, AVX, AVX-512f. This vulnerability is associated with program files gcm128w, gcm512w. This issue affects BC-LTS: from 2.73.0 before 2.73.11.

Vendor Advisory NVD

Weakness Type

Inconsistency Between Implementation and Documented Design

The implementation of the product is not consistent with the design as described within the relevant documentation.


Affected Versions

Legion of the Bouncy Castle Inc. BC-LTS: