Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2016-10109

Опубликовано: 23 фев. 2017
Источник: ubuntu
Приоритет: medium
EPSS Низкий
CVSS2: 5
CVSS3: 7.5

Описание

Use-after-free vulnerability in pcsc-lite before 1.8.20 allows a remote attackers to cause denial of service (crash) via a command that uses "cardsList" after the handle has been released through the SCardReleaseContext function.

РелизСтатусПримечание
devel

released

1.8.14-1ubuntu2
esm-infra-legacy/trusty

DNE

trusty/esm was DNE [trusty was released [1.8.10-1ubuntu1.1]]
esm-infra/xenial

released

1.8.14-1ubuntu1.16.04.1
precise

released

1.7.4-2ubuntu2.1
precise/esm

not-affected

1.7.4-2ubuntu2.1
trusty

released

1.8.10-1ubuntu1.1
trusty/esm

DNE

trusty was released [1.8.10-1ubuntu1.1]
upstream

released

1.8.20-1
vivid/stable-phone-overlay

ignored

end of life
vivid/ubuntu-core

released

1.8.11-3ubuntu1.1

Показывать по

EPSS

Процентиль: 91%
0.06248
Низкий

5 Medium

CVSS2

7.5 High

CVSS3

Связанные уязвимости

CVSS3: 5.5
redhat
около 9 лет назад

Use-after-free vulnerability in pcsc-lite before 1.8.20 allows a remote attackers to cause denial of service (crash) via a command that uses "cardsList" after the handle has been released through the SCardReleaseContext function.

CVSS3: 7.5
nvd
почти 9 лет назад

Use-after-free vulnerability in pcsc-lite before 1.8.20 allows a remote attackers to cause denial of service (crash) via a command that uses "cardsList" after the handle has been released through the SCardReleaseContext function.

CVSS3: 7.5
debian
почти 9 лет назад

Use-after-free vulnerability in pcsc-lite before 1.8.20 allows a remot ...

suse-cvrf
около 9 лет назад

Security update for pcsc-lite

suse-cvrf
около 9 лет назад

Security update for pcsc-lite

EPSS

Процентиль: 91%
0.06248
Низкий

5 Medium

CVSS2

7.5 High

CVSS3