6.6
CVSSv2

CVE-2008-3972

Published: 11/09/2008 Updated: 08/08/2017
CVSS v2 Base Score: 6.6 | Impact Score: 9.2 | Exploitability Score: 3.9
VMScore: 587
Vector: AV:L/AC:L/Au:N/C:N/I:C/A:C

Vulnerability Summary

pkcs15-tool in OpenSC prior to 0.11.6 does not apply security updates to a smart card unless the card's label matches the "OpenSC" string, which might allow physically proximate malicious users to exploit vulnerabilities that the card owner expected were patched, as demonstrated by exploitation of CVE-2008-2235.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

opensc-project opensc 0.11.0

opensc-project opensc 0.10.0

opensc-project opensc 0.8.1

opensc-project opensc 0.8.0

opensc-project opensc

opensc-project opensc 0.11.4

opensc-project opensc 0.10.1

opensc-project opensc 0.9.6

opensc-project opensc 0.7.0

opensc-project opensc 0.6.1

opensc-project opensc 0.11.3

opensc-project opensc 0.9.5

opensc-project opensc 0.9.4

opensc-project opensc 0.6.0

opensc-project opensc 0.5.0

opensc-project opensc 0.11.2

opensc-project opensc 0.11.1

opensc-project opensc 0.9.3

opensc-project opensc 0.9.2

opensc-project opensc 0.4.0