Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2008-3972

Опубликовано: 11 сент. 2008
Источник: ubuntu
Приоритет: low
EPSS Низкий
CVSS2: 6.6

Описание

pkcs15-tool in OpenSC before 0.11.6 does not apply security updates to a smart card unless the card's label matches the "OpenSC" string, which might allow physically proximate attackers to exploit vulnerabilities that the card owner expected were patched, as demonstrated by exploitation of CVE-2008-2235.

РелизСтатусПримечание
dapper

ignored

end of life
devel

not-affected

0.11.4-5
feisty

ignored

end of life, was needed
gutsy

ignored

end of life, was needed
hardy

ignored

end of life
intrepid

not-affected

0.11.4-5
jaunty

not-affected

0.11.4-5
karmic

not-affected

0.11.4-5
lucid

not-affected

0.11.4-5
maverick

not-affected

0.11.4-5

Показывать по

Ссылки на источники

EPSS

Процентиль: 30%
0.00111
Низкий

6.6 Medium

CVSS2

Связанные уязвимости

nvd
больше 17 лет назад

pkcs15-tool in OpenSC before 0.11.6 does not apply security updates to a smart card unless the card's label matches the "OpenSC" string, which might allow physically proximate attackers to exploit vulnerabilities that the card owner expected were patched, as demonstrated by exploitation of CVE-2008-2235.

debian
больше 17 лет назад

pkcs15-tool in OpenSC before 0.11.6 does not apply security updates to ...

github
почти 4 года назад

pkcs15-tool in OpenSC before 0.11.6 does not apply security updates to a smart card unless the card's label matches the "OpenSC" string, which might allow physically proximate attackers to exploit vulnerabilities that the card owner expected were patched, as demonstrated by exploitation of CVE-2008-2235.

EPSS

Процентиль: 30%
0.00111
Низкий

6.6 Medium

CVSS2