Описание
OpenSC before 0.27.0-rc1, fixed in commit 3f24f0b, contains a stack buffer overflow vulnerability in piv_process_history() in src/libopensc/card-piv.c that allows physically present attackers to trigger memory corruption by presenting a crafted PIV smart card or USB device returning a URL field longer than 118 bytes in the Key History Object ASN.1 response.
A flaw was found in OpenSC. A physically present attacker can exploit a stack buffer overflow vulnerability in the piv_process_history() function by presenting a specially crafted Personal Identity Verification (PIV) smart card or USB device. This can lead to memory corruption within the system, potentially causing instability or unexpected behavior.
Затронутые пакеты
| Платформа | Пакет | Состояние | Рекомендация | Релиз |
|---|---|---|---|---|
| Red Hat Enterprise Linux 10 | opensc | Fix deferred | ||
| Red Hat Enterprise Linux 7 | opensc | Fix deferred | ||
| Red Hat Enterprise Linux 8 | opensc | Fix deferred | ||
| Red Hat Enterprise Linux 9 | opensc | Fix deferred |
Показывать по
Ссылки на источники
Дополнительная информация
Статус:
6.3 Medium
CVSS3
Связанные уязвимости
OpenSC before 0.27.0-rc1, fixed in commit 3f24f0b, contains a stack buffer overflow vulnerability in piv_process_history() in src/libopensc/card-piv.c that allows physically present attackers to trigger memory corruption by presenting a crafted PIV smart card or USB device returning a URL field longer than 118 bytes in the Key History Object ASN.1 response.
OpenSC < 0.27.0-rc1 Stack Buffer Overflow via piv_process_history() in card-piv.c
OpenSC before 0.27.0-rc1, fixed in commit 3f24f0b, contains a stack bu ...
OpenSC before 0.27.0-rc1, fixed in commit 3f24f0b, contains a stack buffer overflow vulnerability in piv_process_history() in src/libopensc/card-piv.c that allows physically present attackers to trigger memory corruption by presenting a crafted PIV smart card or USB device returning a URL field longer than 118 bytes in the Key History Object ASN.1 response.
6.3 Medium
CVSS3