CVE-2007-6721
CVE-2007-6721 is a critical-severity vulnerability in Bouncycastle Bc-java with a CVSS 2.0 base score of 10.0. It is not currently listed as actively exploited by CISA, and its EPSS exploit-prediction score is low.
Key facts
- Severity: Critical (CVSS 2.0 base score 10.0)
- EPSS exploit prediction: 2% (84th percentile)
- Actively exploited: Not listed in CISA KEV
- Affected product: Bouncycastle Bc-java
- Published:
- Last modified:
Description
The Legion of the Bouncy Castle Java Cryptography API before release 1.38, as used in Crypto Provider Package before 1.36, has unknown impact and remote attack vectors related to "a Bleichenbacher vulnerability in simple RSA CMS signatures without signed attributes."
Frequently asked questions
- What is CVE-2007-6721?
- The Legion of the Bouncy Castle Java Cryptography API before release 1.38, as used in Crypto Provider Package before 1.36, has unknown impact and remote attack vectors related to "a Bleichenbacher vulnerability in simple RSA CMS signatures without signed attributes."
- How severe is CVE-2007-6721?
- CVE-2007-6721 has a CVSS 2.0 base score of 10.0, rated critical severity.
- Is CVE-2007-6721 being actively exploited?
- It is not currently listed in CISA's KEV catalog. Its EPSS exploit-prediction score is 2% (84th percentile), an estimate of the probability of exploitation in the next 30 days.
- What products are affected by CVE-2007-6721?
- CVE-2007-6721 primarily affects Bouncycastle Bc-java. In total, 72 product configurations (CPEs) are listed as vulnerable; see the affected-products list for the exact versions.
- How do I fix CVE-2007-6721?
- Review the linked vendor and NVD advisories for patched versions and mitigations, then upgrade or apply the recommended workaround. Given its critical severity, prioritise patching exposed systems.
- When was CVE-2007-6721 published?
- CVE-2007-6721 was published on 2009-03-30 and last updated on 2026-06-16.
References
- http://freshmeat.net/projects/bouncycastlecryptoapi/releases/265580
- http://www.bouncycastle.org/csharp/
- http://www.bouncycastle.org/devmailarchive/msg08195.html
- http://www.bouncycastle.org/releasenotes.html
- http://www.osvdb.org/50358
- http://www.osvdb.org/50359
- http://www.osvdb.org/50360
Affected products (72)
- cpe:2.3:a:bouncycastle:bc-java:*:*:*:*:*:*:*:*
- cpe:2.3:a:bouncycastle:bc-java:1.01:*:*:*:*:*:*:*
- cpe:2.3:a:bouncycastle:bc-java:1.02:*:*:*:*:*:*:*
- cpe:2.3:a:bouncycastle:bc-java:1.03:*:*:*:*:*:*:*
- cpe:2.3:a:bouncycastle:bc-java:1.04:*:*:*:*:*:*:*
- cpe:2.3:a:bouncycastle:bc-java:1.05:*:*:*:*:*:*:*
- cpe:2.3:a:bouncycastle:bc-java:1.06:*:*:*:*:*:*:*
- cpe:2.3:a:bouncycastle:bc-java:1.07:*:*:*:*:*:*:*
- cpe:2.3:a:bouncycastle:bc-java:1.08:*:*:*:*:*:*:*
- cpe:2.3:a:bouncycastle:bc-java:1.09:*:*:*:*:*:*:*
- cpe:2.3:a:bouncycastle:bc-java:1.10:*:*:*:*:*:*:*
- cpe:2.3:a:bouncycastle:bc-java:1.11:*:*:*:*:*:*:*
- cpe:2.3:a:bouncycastle:bc-java:1.12:*:*:*:*:*:*:*
- cpe:2.3:a:bouncycastle:bc-java:1.13:*:*:*:*:*:*:*
- cpe:2.3:a:bouncycastle:bc-java:1.14:*:*:*:*:*:*:*
- cpe:2.3:a:bouncycastle:bc-java:1.15:*:*:*:*:*:*:*
- cpe:2.3:a:bouncycastle:bc-java:1.16:*:*:*:*:*:*:*
- cpe:2.3:a:bouncycastle:bc-java:1.17:*:*:*:*:*:*:*
- cpe:2.3:a:bouncycastle:bc-java:1.18:*:*:*:*:*:*:*
- cpe:2.3:a:bouncycastle:bc-java:1.19:*:*:*:*:*:*:*
- cpe:2.3:a:bouncycastle:bc-java:1.20:*:*:*:*:*:*:*
- cpe:2.3:a:bouncycastle:bc-java:1.21:*:*:*:*:*:*:*
- cpe:2.3:a:bouncycastle:bc-java:1.22:*:*:*:*:*:*:*
- cpe:2.3:a:bouncycastle:bc-java:1.23:*:*:*:*:*:*:*
- cpe:2.3:a:bouncycastle:bc-java:1.24:*:*:*:*:*:*:*
- cpe:2.3:a:bouncycastle:bc-java:1.25:*:*:*:*:*:*:*
- cpe:2.3:a:bouncycastle:bc-java:1.26:*:*:*:*:*:*:*
- cpe:2.3:a:bouncycastle:bc-java:1.27:*:*:*:*:*:*:*
- cpe:2.3:a:bouncycastle:bc-java:1.28:*:*:*:*:*:*:*
- cpe:2.3:a:bouncycastle:bc-java:1.29:*:*:*:*:*:*:*
- cpe:2.3:a:bouncycastle:bc-java:1.30:*:*:*:*:*:*:*
- cpe:2.3:a:bouncycastle:bc-java:1.31:*:*:*:*:*:*:*
- cpe:2.3:a:bouncycastle:bc-java:1.32:*:*:*:*:*:*:*
- cpe:2.3:a:bouncycastle:bc-java:1.33:*:*:*:*:*:*:*
- cpe:2.3:a:bouncycastle:bc-java:1.34:*:*:*:*:*:*:*
- cpe:2.3:a:bouncycastle:bc-java:1.35:*:*:*:*:*:*:*
- cpe:2.3:a:bouncycastle:bc-java:1.36:*:*:*:*:*:*:*
- cpe:2.3:a:bouncycastle:bouncy-castle-crypto-package:*:*:*:*:*:*:*:*
- cpe:2.3:a:bouncycastle:bouncy-castle-crypto-package:1.0:*:*:*:*:*:*:*
- cpe:2.3:a:bouncycastle:bouncy-castle-crypto-package:1.01:*:*:*:*:*:*:*
More vulnerabilities in Bouncycastle Bc-java
- CVE-2018-1000613 — Critical (CVSS 9.8): Legion of the Bouncy Castle Legion of the Bouncy Castle Java Cryptography APIs 1.58 up to but not including 1.60…
- CVE-2026-58062 — Critical (CVSS 9.1): In Bouncy Castle for Java before 1.85, Stapled OCSP response accepted without binding to the checked certificate. This…
- CVE-2026-8763 — Critical (CVSS 9.1): In Bouncy Castle for Java before 1.85, Name Constraints bypass via trailing dot in rfc822Name and URI. This issue also…
- CVE-2026-59650 — Critical (CVSS 9.1): In Bouncy Castle for Java before 1.85, MTI/A0 DH agreement exponentiates unvalidated peer value. This issue also…
- CVE-2026-12817 — High (CVSS 8.6): In Bouncy Castle for Java before 1.85, OpenPGP AEAD decryption skips final tag on chunk-aligned data. This issue also…
- CVE-2026-12185 — High (CVSS 8.6): In Bouncy Castle for Java before 1.85, BKS/UBER keystore allocates from untrusted lengths before integrity check. This…