CVE-2026-17507 - MLS membership checks compare a uint32 leaf_index as signed, admitting an out-of-range sender
CVE ID :CVE-2026-17507 Published : 2. Oktober 2026 08:17 | 1 Stunde, 3 Minuten ago Description :In Bouncy Castle for Java before 1.86, the MLS implementation (org.bouncycastle.mls) holds RFC 9420's uint32 leaf_index in a signed int, so a wire value with the top bit set decodes to a negative...