Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2025-13763

Опубликовано: 23 апр. 2026
Источник: redhat
CVSS3: 5.7

Описание

Multiple uses of uninitialized variables were found in libopensc that may lead to information disclosure or application crash. An attack requires a crafted USB device or smart card that would present the system with specially crafted responses to the APDUs

Отчет

Physical access is required for a successful attack of this vulnerability which increases the complexity and lowers the severity of this flaw hence it was rated Low.

Меры по смягчению последствий

To mitigate this issue, avoid connecting untrusted USB devices or smart cards to systems running affected versions of Red Hat Enterprise Linux. This operational control reduces the risk of an attacker presenting a specially crafted device to exploit the uninitialized variable flaws in libopensc.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat Enterprise Linux 10openscFix deferred
Red Hat Enterprise Linux 7openscFix deferred
Red Hat Enterprise Linux 8openscFix deferred
Red Hat Enterprise Linux 9openscFix deferred

Показывать по

Дополнительная информация

Статус:

Low
https://bugzilla.redhat.com/show_bug.cgi?id=2417581libopensc: opensc: Multiple uses of uninitialized variable

5.7 Medium

CVSS3

Связанные уязвимости

CVSS3: 5.7
ubuntu
4 месяца назад

Multiple uses of uninitialized variables were found in libopensc that may lead to information disclosure or application crash. An attack requires a crafted USB device or smart card that would present the system with specially crafted responses to the APDUs

CVSS3: 5.7
nvd
4 месяца назад

Multiple uses of uninitialized variables were found in libopensc that may lead to information disclosure or application crash. An attack requires a crafted USB device or smart card that would present the system with specially crafted responses to the APDUs

msrc
4 месяца назад

Libopensc: opensc: multiple uses of uninitialized variable

CVSS3: 5.7
debian
4 месяца назад

Multiple uses of uninitialized variables were found in libopensc that ...

5.7 Medium

CVSS3