CVE-2019-19480: Medium severity suse opensc vulnerability
An issue was discovered in OpenSC through 0.19.0 and 0.20.x through 0.20.0-rc3. libopensc/pkcs15-prkey.c has an incorrect free operation in scpkcs15decodeprkdfentry.
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is CVE-2019-19480?
CVE-2019-19480 is a vulnerability discovered in OpenSC through version 0.19.0 and version 0.20.x through 0.20.0-rc3. It is caused by an incorrect free operation in the libopensc/pkcs15-prkey.c file.
What is the severity of CVE-2019-19480?
The severity of CVE-2019-19480 is medium, with a CVSS score of 4.6.
What software is affected by CVE-2019-19480?
OpenSC versions 0.19.0 and 0.20.x (up to and including 0.20.0-rc3) are affected by CVE-2019-19480.
How can I fix CVE-2019-19480?
To fix CVE-2019-19480, it is recommended to update to a version of OpenSC that is not affected by the vulnerability, such as version 0.20.1 or later.
Where can I find more information about CVE-2019-19480?
You can find more information about CVE-2019-19480 on the following references: [link1], [link2], [link3].