REDHAT-BUG-2309285: Low severity OpenSC libopensc vulnerability
The reported issues are part of the libopensc library, which makes them accessible from OpenSC tools, PKCS#11 module, minidriver, or CTK. One is only relevant to handling the card enrollment using the pkcs15-init tool. The attack requires a crafted USB device or smart card that would present the system with specially crafted responses to the APDUs, so they are considered high complexity and low severity.
The problem is missing initialization of variables expected to be initialized (as arguments to other functions, etc.). The uninitialized variables were reflected in the following functions:
- cacreadfile - pivgetchallenge - scasn1decodeobjectid - scpkcs15emuschsmdecodecvc - doinitapp, scpkcs15initcreatepin
Originally reported by Matteo Marini (Sapienza University of Rome)
Affected Software
Event History
Frequently Asked Questions
What is the severity of REDHAT-BUG-2309285?
The severity of REDHAT-BUG-2309285 is considered high due to potential exploitation from crafted USB devices or smart cards.
How do I fix REDHAT-BUG-2309285?
To fix REDHAT-BUG-2309285, update to the latest version of the libopensc library as recommended by the security advisory.
What specific vulnerability exists in REDHAT-BUG-2309285?
REDHAT-BUG-2309285 involves a vulnerability in the libopensc library affecting card enrollment processes when using the pkcs15-init tool.
Who is affected by REDHAT-BUG-2309285?
Users of the OpenSC tools and systems that utilize the libopensc library for smart card operations may be affected by REDHAT-BUG-2309285.
What can attackers achieve with the REDHAT-BUG-2309285 vulnerability?
Attackers can exploit REDHAT-BUG-2309285 to manipulate card enrollment processes, potentially leading to unauthorized access or data compromise.