CVE-2021-42781: Buffer Overflow
Published Oct 21, 2021
·Updated
Heap buffer overflow issues were found in Opensc before version 0.22.0 in pkcs15-oberthur.c that could potentially crash programs using the library.
Affected Software
4 affected componentsFixes available
redhat/opensc<0.22.0
0.22.0
Opensc Project Opensc<0.22.0
Fedoraproject Fedora=33
redhat Enterprise Linux=7.0
Remediation
Patch Available
Patch Available
Patch Available
Patch Available
Patch Available
Patch Available
Event History
Apr 18, 2022
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
DescriptionWeakness
Data Sourced
via NVD·05:15 PM
RemedyDescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the vulnerability ID of this issue?
The vulnerability ID of this issue is CVE-2021-42781.
2
What is the severity level of CVE-2021-42781?
The severity level of CVE-2021-42781 is 5.3 (medium).
3
Which software versions are affected by CVE-2021-42781?
Versions before 0.22.0 of Opensc, Fedora 33, and Redhat Enterprise Linux 7.0 are affected by CVE-2021-42781.
4
What is the description of CVE-2021-42781?
CVE-2021-42781 is a heap buffer overflow issue in Opensc that could potentially crash programs using the library.
5
How do I fix the CVE-2021-42781 vulnerability?
To fix the CVE-2021-42781 vulnerability, you should update to version 0.22.0 of Opensc.