Описание
A heap use after free issue was found in Opensc before version 0.22.0 in sc_file_valid.
Ссылки
- Issue TrackingMailing ListPatchThird Party Advisory
- Issue TrackingPatchThird Party Advisory
- PatchThird Party Advisory
- Third Party Advisory
- Issue TrackingMailing ListPatchThird Party Advisory
- Issue TrackingPatchThird Party Advisory
- PatchThird Party Advisory
- Third Party Advisory
Уязвимые конфигурации
Конфигурация 1Версия до 0.22.0 (исключая)
cpe:2.3:a:opensc_project:opensc:*:*:*:*:*:*:*:*
Конфигурация 2
cpe:2.3:o:fedoraproject:fedora:33:*:*:*:*:*:*:*
Конфигурация 3
Одно из
cpe:2.3:o:redhat:enterprise_linux:7.0:*:*:*:*:*:*:*
cpe:2.3:o:redhat:enterprise_linux:8.0:*:*:*:*:*:*:*
EPSS
Процентиль: 26%
0.00092
Низкий
5.3 Medium
CVSS3
5 Medium
CVSS2
Дефекты
CWE-416
CWE-416
Связанные уязвимости
CVSS3: 5.3
ubuntu
почти 4 года назад
A heap use after free issue was found in Opensc before version 0.22.0 in sc_file_valid.
CVSS3: 2
redhat
почти 5 лет назад
A heap use after free issue was found in Opensc before version 0.22.0 in sc_file_valid.
CVSS3: 5.3
debian
почти 4 года назад
A heap use after free issue was found in Opensc before version 0.22.0 ...
CVSS3: 5.3
github
почти 4 года назад
A heap use after free issue was found in Opensc before version 0.22.0 in sc_file_valid.
EPSS
Процентиль: 26%
0.00092
Низкий
5.3 Medium
CVSS3
5 Medium
CVSS2
Дефекты
CWE-416
CWE-416