CVE-2019-19481: Buffer Overflow
Published Dec 1, 2019
·Updated
An issue was discovered in OpenSC through 0.19.0 and 0.20.x through 0.20.0-rc3. libopensc/card-cac1.c mishandles buffer limits for CAC certificates.
Affected Software
4 affected components
Opensc Project Opensc=0.19.0
Opensc Project Opensc=0.20.0-rc1
Opensc Project Opensc=0.20.0-rc2
Opensc Project Opensc=0.20.0-rc3
Remediation
Event History
Dec 1, 2019
CVE Published
via MITRE·10:37 PM
Data Sourced
via MITRE·10:37 PM
Description
Frequently Asked Questions
1
What is CVE-2019-19481?
CVE-2019-19481 is a vulnerability discovered in OpenSC through versions 0.19.0 and 0.20.x through 0.20.0-rc3. It mishandles buffer limits for CAC certificates in the libopensc/card-cac1.c file.
2
How severe is CVE-2019-19481?
CVE-2019-19481 has a severity level of 4.6, which is considered medium severity.
3
Which software versions are affected by CVE-2019-19481?
Versions 0.19.0, 0.20.0-rc1, 0.20.0-rc2, and 0.20.0-rc3 of OpenSC are affected by CVE-2019-19481.
4
How can I fix CVE-2019-19481?
To fix CVE-2019-19481, users should update to the latest version of OpenSC available.
5
Where can I find more information about CVE-2019-19481?
More information about CVE-2019-19481 can be found at the following references: [1] [2] [3].