Search CVE reports


Toggle filters

21 – 30 of 53 results


CVE-2021-42778

Medium priority
Ignored

A heap double free issue was found in Opensc before version 0.22.0 in sc_pkcs15_free_tokeninfo.

1 affected package

opensc

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
opensc Not affected Not affected Not affected Not affected
Show less packages

CVE-2021-34193

Medium priority
Ignored

Stack overflow vulnerability in OpenSC smart card middleware before 0.23 via crafted responses to APDUs.

1 affected package

opensc

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
opensc Not affected Not affected Not affected Not affected
Show less packages

CVE-2020-28600

Medium priority
Needs evaluation

An out-of-bounds write vulnerability exists in the import_stl.cc:import_stl() functionality of Openscad openscad-2020.12-RC2. A specially crafted STL file can lead to code execution. An attacker can provide a malicious file to...

1 affected package

openscad

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
openscad Needs evaluation Needs evaluation Needs evaluation Not in release
Show less packages

CVE-2020-28599

Medium priority
Needs evaluation

A stack-based buffer overflow vulnerability exists in the import_stl.cc:import_stl() functionality of Openscad openscad-2020.12-RC2. A specially crafted STL file can lead to code execution. An attacker can provide a malicious file...

1 affected package

openscad

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
openscad Not affected Needs evaluation Needs evaluation Not in release
Show less packages

CVE-2020-26572

Medium priority

Some fixes available 3 of 5

The TCOS smart card software driver in OpenSC before 0.21.0-rc1 has a stack-based buffer overflow in tcos_decipher.

1 affected package

opensc

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
opensc Not affected Not affected Fixed Fixed
Show less packages

CVE-2020-26571

Medium priority

Some fixes available 3 of 5

The gemsafe GPK smart card software driver in OpenSC before 0.21.0-rc1 has a stack-based buffer overflow in sc_pkcs15emu_gemsafeGPK_init.

1 affected package

opensc

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
opensc Not affected Not affected Fixed Fixed
Show less packages

CVE-2020-26570

Medium priority

Some fixes available 3 of 5

The Oberthur smart card software driver in OpenSC before 0.21.0-rc1 has a heap-based buffer overflow in sc_oberthur_read_file.

1 affected package

opensc

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
opensc Not affected Not affected Fixed Fixed
Show less packages

CVE-2019-6502

Negligible priority
Vulnerable

sc_context_create in ctx.c in libopensc in OpenSC 0.19.0 has a memory leak, as demonstrated by a call from eidenv.

1 affected package

opensc

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
opensc Not affected Not affected Not affected Vulnerable
Show less packages

CVE-2019-20792

Low priority
Vulnerable

OpenSC before 0.20.0 has a double free in coolkey_free_private_data because coolkey_add_object in libopensc/card-coolkey.c lacks a uniqueness check.

1 affected package

opensc

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
opensc Not affected Not affected Not affected Vulnerable
Show less packages

CVE-2019-19481

Low priority
Vulnerable

An issue was discovered in OpenSC through 0.19.0 and 0.20.x through 0.20.0-rc3. libopensc/card-cac1.c mishandles buffer limits for CAC certificates.

1 affected package

opensc

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
opensc Not affected Not affected Not affected Vulnerable
Show less packages