{"id":"CVE-2018-5382","aliases":["GHSA-8477-3v39-ggpm"],"url":"https://o3.security/vulnerability/CVE-2018-5382","summary":"Improper Validation of Integrity Check Value in Bouncy Castle","details":"The default BKS keystore use an HMAC that is only 16 bits long, which can allow an attacker to compromise the integrity of a BKS keystore. Bouncy Castle release 1.47 changes the BKS format to a format which uses a 160 bit HMAC instead. This applies to any BKS keystore generated prior to BC 1.47. For situations where people need to create the files for legacy reasons a specific keystore type \"BKS-V1\" was introduced in 1.49. It should be noted that the use of \"BKS-V1\" is discouraged by the library authors and should only be used where it is otherwise safe to do so, as in where the use of a 16 bit checksum for the file integrity check is not going to cause a security issue in itself.","published":"2018-04-16T14:29:01.047Z","modified":"2026-08-07T11:31:35.234554083Z","cvss":{"score":4.4,"severity":"MEDIUM","vector":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:N"},"epss":null,"cisaKev":null,"exploitsKnown":0,"affectedPackages":[{"ecosystem":"Maven","name":"org.bouncycastle:bcprov-jdk15on","fixedVersion":"1.50"}],"fix":null,"references":[{"type":"ADVISORY","url":"http://www.securityfocus.com/bid/103453"},{"type":"ADVISORY","url":"https://access.redhat.com/errata/RHSA-2018:2927"},{"type":"ADVISORY","url":"https://www.bouncycastle.org/releasenotes.html"},{"type":"ADVISORY","url":"https://www.kb.cert.org/vuls/id/306792"},{"type":"ADVISORY","url":"https://www.oracle.com/security-alerts/cpuoct2020.html"}],"provenance":{"sources":["OSV.dev","FIRST.org (EPSS)"],"lastVerified":"2026-08-07T11:31:35.234554083Z"}}