ALT-PU-2020-3387-1
Closed vulnerabilities
Published: 2020-10-06
Modified: 2024-11-21
Modified: 2024-11-21
CVE-2020-26570
The Oberthur smart card software driver in OpenSC before 0.21.0-rc1 has a heap-based buffer overflow in sc_oberthur_read_file.
Severity: MEDIUM (5.5)
Vector: CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
References:
- [oss-security] 20201124 OpenSC 0.21.0 released
- [oss-security] 20201124 OpenSC 0.21.0 released
- https://bugs.chromium.org/p/oss-fuzz/issues/detail?id=24316
- https://bugs.chromium.org/p/oss-fuzz/issues/detail?id=24316
- https://github.com/OpenSC/OpenSC/commit/6903aebfddc466d966c7b865fae34572bf3ed23e
- https://github.com/OpenSC/OpenSC/commit/6903aebfddc466d966c7b865fae34572bf3ed23e
- [debian-lts-announce] 20211129 [SECURITY] [DLA 2832-1] opensc security update
- [debian-lts-announce] 20211129 [SECURITY] [DLA 2832-1] opensc security update
- FEDORA-2020-7c80831ffe
- FEDORA-2020-7c80831ffe
Published: 2020-10-06
Modified: 2024-11-21
Modified: 2024-11-21
CVE-2020-26571
The gemsafe GPK smart card software driver in OpenSC before 0.21.0-rc1 has a stack-based buffer overflow in sc_pkcs15emu_gemsafeGPK_init.
Severity: MEDIUM (5.5)
Vector: CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
References:
- [oss-security] 20201124 OpenSC 0.21.0 released
- [oss-security] 20201124 OpenSC 0.21.0 released
- https://bugs.chromium.org/p/oss-fuzz/issues/detail?id=20612
- https://bugs.chromium.org/p/oss-fuzz/issues/detail?id=20612
- [debian-lts-announce] 20211129 [SECURITY] [DLA 2832-1] opensc security update
- [debian-lts-announce] 20211129 [SECURITY] [DLA 2832-1] opensc security update
- FEDORA-2020-7c80831ffe
- FEDORA-2020-7c80831ffe
Published: 2020-10-06
Modified: 2024-11-21
Modified: 2024-11-21
CVE-2020-26572
The TCOS smart card software driver in OpenSC before 0.21.0-rc1 has a stack-based buffer overflow in tcos_decipher.
Severity: MEDIUM (5.5)
Vector: CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
References:
- [oss-security] 20201124 OpenSC 0.21.0 released
- [oss-security] 20201124 OpenSC 0.21.0 released
- https://bugs.chromium.org/p/oss-fuzz/issues/detail?id=22967
- https://bugs.chromium.org/p/oss-fuzz/issues/detail?id=22967
- https://github.com/OpenSC/OpenSC/commit/9d294de90d1cc66956389856e60b6944b27b4817
- https://github.com/OpenSC/OpenSC/commit/9d294de90d1cc66956389856e60b6944b27b4817
- [debian-lts-announce] 20211129 [SECURITY] [DLA 2832-1] opensc security update
- [debian-lts-announce] 20211129 [SECURITY] [DLA 2832-1] opensc security update
- FEDORA-2020-7c80831ffe
- FEDORA-2020-7c80831ffe