CVE-2018-16426
04.09.2018, 00:29
Endless recursion when handling responses from an IAS-ECC card in iasecc_select_file in libopensc/card-iasecc.c in OpenSC before 0.19.0-rc1 could be used by attackers able to supply crafted smartcards to hang or crash the opensc library using programs.Enginsight
Vendor | Product | Version |
---|---|---|
opensc_project | opensc | 𝑥 ≤ 0.18.0 |
𝑥
= Vulnerable software versions

Debian Releases

Ubuntu Releases
Common Weakness Enumeration
References