CVE-2026-5598: Non-constant time comparisons risk private key leakage in FrodoKEM.
Covert timing channel vulnerability in Legion of the Bouncy Castle Inc. BC-JAVA core on all (core modules).
This vulnerability is associated with program files FrodoEngine.Java.
This issue affects BC-JAVA: from 1.71 before 1.80.2, from 1.81 before 1.80.1, from 1.82 before 1.84.
Other sources
Covert timing channel vulnerability in Legion of the Bouncy Castle Inc. BC-JAVA core on all (core modules). Non-constant time comparisons risk private key leakage in FrodoKEM.
This issue affects BC-JAVA: from 2.17.3 before 1.84.
— Red Hat
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2026-5598?
CVE-2026-5598 is classified as a critical vulnerability due to the risk of private key leakage.
How do I fix CVE-2026-5598?
To fix CVE-2026-5598, update Bouncy Castle BC-JAVA to version 1.84 or later.
What types of comparisons are affected by CVE-2026-5598?
CVE-2026-5598 specifically affects non-constant time comparisons.
Which versions of Bouncy Castle BC-JAVA are affected by CVE-2026-5598?
CVE-2026-5598 impacts Bouncy Castle BC-JAVA versions prior to 1.84.
What is the risk associated with CVE-2026-5598?
The risk associated with CVE-2026-5598 includes potential exposure of private keys through timing attacks.