Filtered by vendor Opensc Project
Subscribe
Total
44 CVE
CVE | Vendors | Products | Updated | CVSS v2 | CVSS v3 |
---|---|---|---|---|---|
CVE-2018-16425 | 1 Opensc Project | 1 Opensc | 2024-02-28 | 4.6 MEDIUM | 6.6 MEDIUM |
A double free when handling responses from an HSM Card in sc_pkcs15emu_sc_hsm_init in libopensc/pkcs15-sc-hsm.c in OpenSC before 0.19.0-rc1 could be used by attackers able to supply crafted smartcards to cause a denial of service (application crash) or possibly have unspecified other impact. | |||||
CVE-2018-16422 | 1 Opensc Project | 1 Opensc | 2024-02-28 | 4.6 MEDIUM | 6.6 MEDIUM |
A single byte buffer overflow when handling responses from an esteid Card in sc_pkcs15emu_esteid_init in libopensc/pkcs15-esteid.c in OpenSC before 0.19.0-rc1 could be used by attackers able to supply crafted smartcards to cause a denial of service (application crash) or possibly have unspecified other impact. | |||||
CVE-2018-16420 | 1 Opensc Project | 1 Opensc | 2024-02-28 | 4.6 MEDIUM | 6.6 MEDIUM |
Several buffer overflows when handling responses from an ePass 2003 Card in decrypt_response in libopensc/card-epass2003.c in OpenSC before 0.19.0-rc1 could be used by attackers able to supply crafted smartcards to cause a denial of service (application crash) or possibly have unspecified other impact. | |||||
CVE-2019-6502 | 1 Opensc Project | 1 Opensc | 2024-02-28 | 5.0 MEDIUM | 7.5 HIGH |
sc_context_create in ctx.c in libopensc in OpenSC 0.19.0 has a memory leak, as demonstrated by a call from eidenv. |