CVE-2018-16426

Endless recursion when handling responses from an IAS-ECC card in iasecc_select_file in libopensc/card-iasecc.c in OpenSC before 0.19.0-rc1 could be used by attackers able to supply crafted smartcards to hang or crash the opensc library using programs.
Configurations

Configuration 1 (hide)

cpe:2.3:a:opensc_project:opensc:*:*:*:*:*:*:*:*

History

No history.

Information

Published : 2018-09-04 00:29

Updated : 2024-02-28 16:48


NVD link : CVE-2018-16426

Mitre link : CVE-2018-16426

CVE.ORG link : CVE-2018-16426


JSON object : View

Products Affected

opensc_project

  • opensc
CWE
CWE-674

Uncontrolled Recursion