漏洞信息
尽管我们使用了先进的大模型技术,但其输出仍可能包含不准确或过时的信息。神龙努力确保数据的准确性,但请您根据实际情况进行核实和判断。
Vulnerability Title
Libopensc: uninitialized values after incorrect check or usage of apdu response values in libopensc
Vulnerability Description
A vulnerability was found in OpenSC, OpenSC tools, PKCS#11 module, minidriver, and CTK. An attacker could use a crafted USB Device or Smart Card, which would present the system with a specially crafted response to APDUs. The following problems were caused by insufficient control of the response APDU buffer and its length when communicating with the card.
CVSS Information
CVSS:3.1/AV:P/AC:H/PR:N/UI:N/S:U/C:L/I:L/A:L
Vulnerability Type
使用未经初始化的变量
Vulnerability Title
OpenSC 安全漏洞
Vulnerability Description
OpenSC是一款开源的智能卡工具和中间件。 OpenSC存在安全漏洞,该漏洞源于系统对特殊构造的APDUs响应处理不当,可能导致部分填充数据的缓冲区被错误地访问。
CVSS Information
N/A
Vulnerability Type
N/A