Логотип exploitDog
bind:"BDU:2024-11083" OR bind:"CVE-2024-8443"
Консоль
Логотип exploitDog

exploitDog

bind:"BDU:2024-11083" OR bind:"CVE-2024-8443"

Количество 10

Количество 10

fstec логотип

BDU:2024-11083

около 1 года назад

Уязвимость функции openpgp_generate_key_rsa() утилиты персонализации смарт-карт pkcs15-init набора программных инструментов и библиотек для работы со смарт-картами OpenSC, позволяющая нарушителю обойти ограничения безопасности и выполнить произвольный код

CVSS3: 2.9
EPSS: Низкий
ubuntu логотип

CVE-2024-8443

10 месяцев назад

A heap-based buffer overflow vulnerability was found in the libopensc OpenPGP driver. A crafted USB device or smart card with malicious responses to the APDUs during the card enrollment process using the `pkcs15-init` tool may lead to out-of-bound rights, possibly resulting in arbitrary code execution.

CVSS3: 2.9
EPSS: Низкий
redhat логотип

CVE-2024-8443

10 месяцев назад

A heap-based buffer overflow vulnerability was found in the libopensc OpenPGP driver. A crafted USB device or smart card with malicious responses to the APDUs during the card enrollment process using the `pkcs15-init` tool may lead to out-of-bound rights, possibly resulting in arbitrary code execution.

CVSS3: 2.9
EPSS: Низкий
nvd логотип

CVE-2024-8443

10 месяцев назад

A heap-based buffer overflow vulnerability was found in the libopensc OpenPGP driver. A crafted USB device or smart card with malicious responses to the APDUs during the card enrollment process using the `pkcs15-init` tool may lead to out-of-bound rights, possibly resulting in arbitrary code execution.

CVSS3: 2.9
EPSS: Низкий
debian логотип

CVE-2024-8443

10 месяцев назад

A heap-based buffer overflow vulnerability was found in the libopensc ...

CVSS3: 2.9
EPSS: Низкий
github логотип

GHSA-mgc5-p43f-72pc

10 месяцев назад

A heap-based buffer overflow vulnerability was found in the libopensc OpenPGP driver. A crafted USB device or smart card with malicious responses to the APDUs during the card enrollment process using the `pkcs15-init` tool may lead to out-of-bound rights, possibly resulting in arbitrary code execution.

CVSS3: 3.4
EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2024:3445-1

9 месяцев назад

Security update for opensc

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2024:3444-1

9 месяцев назад

Security update for opensc

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2024:3443-1

9 месяцев назад

Security update for opensc

EPSS: Низкий
redos логотип

ROS-20241211-01

6 месяцев назад

Множественные уязвимости opensc

CVSS3: 4.3
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
fstec логотип
BDU:2024-11083

Уязвимость функции openpgp_generate_key_rsa() утилиты персонализации смарт-карт pkcs15-init набора программных инструментов и библиотек для работы со смарт-картами OpenSC, позволяющая нарушителю обойти ограничения безопасности и выполнить произвольный код

CVSS3: 2.9
0%
Низкий
около 1 года назад
ubuntu логотип
CVE-2024-8443

A heap-based buffer overflow vulnerability was found in the libopensc OpenPGP driver. A crafted USB device or smart card with malicious responses to the APDUs during the card enrollment process using the `pkcs15-init` tool may lead to out-of-bound rights, possibly resulting in arbitrary code execution.

CVSS3: 2.9
0%
Низкий
10 месяцев назад
redhat логотип
CVE-2024-8443

A heap-based buffer overflow vulnerability was found in the libopensc OpenPGP driver. A crafted USB device or smart card with malicious responses to the APDUs during the card enrollment process using the `pkcs15-init` tool may lead to out-of-bound rights, possibly resulting in arbitrary code execution.

CVSS3: 2.9
0%
Низкий
10 месяцев назад
nvd логотип
CVE-2024-8443

A heap-based buffer overflow vulnerability was found in the libopensc OpenPGP driver. A crafted USB device or smart card with malicious responses to the APDUs during the card enrollment process using the `pkcs15-init` tool may lead to out-of-bound rights, possibly resulting in arbitrary code execution.

CVSS3: 2.9
0%
Низкий
10 месяцев назад
debian логотип
CVE-2024-8443

A heap-based buffer overflow vulnerability was found in the libopensc ...

CVSS3: 2.9
0%
Низкий
10 месяцев назад
github логотип
GHSA-mgc5-p43f-72pc

A heap-based buffer overflow vulnerability was found in the libopensc OpenPGP driver. A crafted USB device or smart card with malicious responses to the APDUs during the card enrollment process using the `pkcs15-init` tool may lead to out-of-bound rights, possibly resulting in arbitrary code execution.

CVSS3: 3.4
0%
Низкий
10 месяцев назад
suse-cvrf логотип
SUSE-SU-2024:3445-1

Security update for opensc

9 месяцев назад
suse-cvrf логотип
SUSE-SU-2024:3444-1

Security update for opensc

9 месяцев назад
suse-cvrf логотип
SUSE-SU-2024:3443-1

Security update for opensc

9 месяцев назад
redos логотип
ROS-20241211-01

Множественные уязвимости opensc

CVSS3: 4.3
6 месяцев назад

Уязвимостей на страницу