Heap buffer overflow issues were found in Opensc before version 0.22.0 in pkcs15-oberthur.c that could potentially crash programs using the library.
CVSS Details
- CVSS 3.1 Base Score: 5.3
- CVSS 3.1 Vector: (CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L)
Covered by Rapid7
| Product | Vendor Advisory | Solution File | Added | Published |
|---|---|---|---|---|
| Amazon Linux Ami 2 | — | Upgrade opensc-debuginfoUpgrade opensc | Jul 4, 2023 | Apr 18, 2022 |
| Debian | — | Upgrade opensc | Jun 22, 2023 | Apr 18, 2022 |
| Gentoo Linux | — | Upgrade dev-libs/opensc. | Sep 8, 2022 | Apr 18, 2022 |
| Redhat_linux | — | No solution exists | Jul 9, 2025 | Apr 18, 2022 |
| Suse | — | Upgrade openscUpgrade opensc-32bit | Oct 30, 2021 | Oct 29, 2021 |
Prioritise with Active Threat Intelligence
With curated Threat Intelligence, you can see which vulnerabilities truly put you at risk, prioritize what matters most, and act before attackers do.
Explore Intelligence Hub