Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2019-20792

Опубликовано: 04 янв. 2020
Источник: redhat
CVSS3: 6.4
EPSS Низкий

Описание

OpenSC before 0.20.0 has a double free in coolkey_free_private_data because coolkey_add_object in libopensc/card-coolkey.c lacks a uniqueness check.

A use-after-free vulnerability was discovered in OpenSC while disconnecting a smart card. This flaw allows a physical attacker to exploit this vulnerability by inserting and removing a malicious smart card, handled by the coolkey driver, that could potentially execute code on the target system, with privileges that depend on the particular configuration and system that makes use of the OpenSC library.

Меры по смягчению последствий

If the coolkey driver is not necessary for the configuration and system in use, it is possible to disable it by not listing it in the /etc/opensc.conf file. For example:

app default { card_drivers = cac, cac1, PIV-II; }

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat Enterprise Linux 7openscWill not fix
Red Hat Enterprise Linux 8openscFixedRHSA-2020:448304.11.2020

Показывать по

Дополнительная информация

Статус:

Moderate
Дефект:
CWE-416
https://bugzilla.redhat.com/show_bug.cgi?id=1837946opensc: Double free in coolkey_free_private_data in libopensc/card-coolkey.c

EPSS

Процентиль: 38%
0.00165
Низкий

6.4 Medium

CVSS3

Связанные уязвимости

CVSS3: 6.8
ubuntu
почти 6 лет назад

OpenSC before 0.20.0 has a double free in coolkey_free_private_data because coolkey_add_object in libopensc/card-coolkey.c lacks a uniqueness check.

CVSS3: 6.8
nvd
почти 6 лет назад

OpenSC before 0.20.0 has a double free in coolkey_free_private_data because coolkey_add_object in libopensc/card-coolkey.c lacks a uniqueness check.

CVSS3: 6.8
debian
почти 6 лет назад

OpenSC before 0.20.0 has a double free in coolkey_free_private_data be ...

github
больше 3 лет назад

OpenSC before 0.20.0 has a double free in coolkey_free_private_data because coolkey_add_object in libopensc/card-coolkey.c lacks a uniqueness check.

oracle-oval
около 5 лет назад

ELSA-2020-4483: opensc security, bug fix, and enhancement update (MODERATE)

EPSS

Процентиль: 38%
0.00165
Низкий

6.4 Medium

CVSS3