A vulnerability was found in Legion of the Bouncy Castle Bouncy Castle for Java, Bouncy Castle for Java LTS and Bouncy Castle for Java FIPS up to 1.84/2.73.11/1.0.11/2.0.11/2.1.11. It has been rated as problematic. This impacts an unknown function of the component PKCS#8/PBES2 Decryptors. The manipulation leads to allocation of resources.
This vulnerability is uniquely identified as CVE-2026-15055. The attack is possible to be carried out remotely. No exploit exists.
Upgrading the affected component is advised.