5.3
CVSSv3

CVE-2021-42780

Published: 18/04/2022 Updated: 21/06/2023
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
CVSS v3 Base Score: 5.3 | Impact Score: 1.4 | Exploitability Score: 3.9
VMScore: 445
Vector: AV:N/AC:L/Au:N/C:N/I:N/A:P

Vulnerability Summary

A use after return issue was found in Opensc before version 0.22.0 in insert_pin function that could potentially crash programs using the library.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

opensc project opensc

fedoraproject fedora 33

redhat enterprise linux 7.0

Vendor Advisories

A heap use after free issue was found in Opensc before version 0220 in sc_file_valid (CVE-2021-42779) A use after return issue was found in Opensc before version 0220 in insert_pin function that could potentially crash programs using the library (CVE-2021-42780) Heap buffer overflow issues were found in Opensc before version 0220 in pkcs15- ...