Описание
Security update for pcsc-lite
pcsc-lite was updated to fix one security issue.
This security issue was fixed:
- CVE-2016-10109: This use-after-free and double-free issue allowed local attacker to cause a Denial of Service and possible privilege escalation (bsc#1017902).
Список пакетов
openSUSE Leap 42.1
libpcsclite1-1.8.17-3.1
libpcsclite1-32bit-1.8.17-3.1
libpcscspy0-1.8.17-3.1
libpcscspy0-32bit-1.8.17-3.1
pcsc-lite-1.8.17-3.1
pcsc-lite-devel-1.8.17-3.1
openSUSE Leap 42.2
libpcsclite1-1.8.17-3.1
libpcsclite1-32bit-1.8.17-3.1
libpcscspy0-1.8.17-3.1
libpcscspy0-32bit-1.8.17-3.1
pcsc-lite-1.8.17-3.1
pcsc-lite-devel-1.8.17-3.1
Ссылки
- E-Mail link for openSUSE-SU-2017:0178-1
- SUSE Security Ratings
Описание
Use-after-free vulnerability in pcsc-lite before 1.8.20 allows a remote attackers to cause denial of service (crash) via a command that uses "cardsList" after the handle has been released through the SCardReleaseContext function.
Затронутые продукты
openSUSE Leap 42.1:libpcsclite1-1.8.17-3.1
openSUSE Leap 42.1:libpcsclite1-32bit-1.8.17-3.1
openSUSE Leap 42.1:libpcscspy0-1.8.17-3.1
openSUSE Leap 42.1:libpcscspy0-32bit-1.8.17-3.1
Ссылки
- CVE-2016-10109
- SUSE Bug 1017902