First published: Sun Dec 01 2019(Updated: )
An issue was discovered in OpenSC through 0.19.0 and 0.20.x through 0.20.0-rc3. libopensc/card-cac1.c mishandles buffer limits for CAC certificates.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Opensc Project Opensc | =0.19.0 | |
Opensc Project Opensc | =0.20.0-rc1 | |
Opensc Project Opensc | =0.20.0-rc2 | |
Opensc Project Opensc | =0.20.0-rc3 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2019-19481 is a vulnerability discovered in OpenSC through versions 0.19.0 and 0.20.x through 0.20.0-rc3. It mishandles buffer limits for CAC certificates in the libopensc/card-cac1.c file.
CVE-2019-19481 has a severity level of 4.6, which is considered medium severity.
Versions 0.19.0, 0.20.0-rc1, 0.20.0-rc2, and 0.20.0-rc3 of OpenSC are affected by CVE-2019-19481.
To fix CVE-2019-19481, users should update to the latest version of OpenSC available.
More information about CVE-2019-19481 can be found at the following references: [1] [2] [3].