Show filters
55 Total Results
Displaying 21-30 of 55
Sort by:
Attacker Value
Unknown

CVE-2021-42780

Disclosure Date: April 18, 2022 (last updated February 23, 2025)
A use after return issue was found in Opensc before version 0.22.0 in insert_pin function that could potentially crash programs using the library.
Attacker Value
Unknown

CVE-2021-42779

Disclosure Date: April 18, 2022 (last updated February 23, 2025)
A heap use after free issue was found in Opensc before version 0.22.0 in sc_file_valid.
Attacker Value
Unknown

CVE-2021-42778

Disclosure Date: April 18, 2022 (last updated February 23, 2025)
A heap double free issue was found in Opensc before version 0.22.0 in sc_pkcs15_free_tokeninfo.
Attacker Value
Unknown

CVE-2020-28600

Disclosure Date: May 10, 2021 (last updated February 22, 2025)
An out-of-bounds write vulnerability exists in the import_stl.cc:import_stl() functionality of Openscad openscad-2020.12-RC2. A specially crafted STL file can lead to code execution. An attacker can provide a malicious file to trigger this vulnerability.
Attacker Value
Unknown

CVE-2020-28599

Disclosure Date: February 24, 2021 (last updated February 22, 2025)
A stack-based buffer overflow vulnerability exists in the import_stl.cc:import_stl() functionality of Openscad openscad-2020.12-RC2. A specially crafted STL file can lead to code execution. An attacker can provide a malicious file to trigger this vulnerability.
Attacker Value
Unknown

CVE-2020-26570

Disclosure Date: October 06, 2020 (last updated February 22, 2025)
The Oberthur smart card software driver in OpenSC before 0.21.0-rc1 has a heap-based buffer overflow in sc_oberthur_read_file.
Attacker Value
Unknown

CVE-2020-26571

Disclosure Date: October 06, 2020 (last updated February 22, 2025)
The gemsafe GPK smart card software driver in OpenSC before 0.21.0-rc1 has a stack-based buffer overflow in sc_pkcs15emu_gemsafeGPK_init.
Attacker Value
Unknown

CVE-2020-26572

Disclosure Date: October 06, 2020 (last updated February 22, 2025)
The TCOS smart card software driver in OpenSC before 0.21.0-rc1 has a stack-based buffer overflow in tcos_decipher.
Attacker Value
Unknown

CVE-2019-20792

Disclosure Date: April 29, 2020 (last updated February 21, 2025)
OpenSC before 0.20.0 has a double free in coolkey_free_private_data because coolkey_add_object in libopensc/card-coolkey.c lacks a uniqueness check.
Attacker Value
Unknown

CVE-2013-1866

Disclosure Date: January 30, 2020 (last updated February 21, 2025)
OpenSC OpenSC.tokend has an Arbitrary File Creation/Overwrite Vulnerability