OpenSC: Out of Bounds vulnerability
Published Mar 30, 2026
6.8
MEDIUMCVSS 3.1
EPSS 0.25%
Description
OpenSC is an open source smart card tools and middleware. Prior to version 0.27.0, feeding a crafted input to the fuzz_pkcs15_reader harness causes OpenSC to perform an out-of-bounds heap read in the X.509/SPKI handling path. Specifically, sc_pkcs15_pubkey_from_spki_fields() allocates a zero-length buffer and then reads one byte past the end of that allocation. This issue has been patched in version 0.27.0.
Affected products
-
Affected
- < 0.27.0
- < 0.27.0
No data.
Red Hat Enterprise Linux 10
opensc
Fix deferred
Red Hat Enterprise Linux 7
opensc
Fix deferred
Red Hat Enterprise Linux 8
opensc
Fix deferred
Red Hat Enterprise Linux 9
opensc
Fix deferred
| Product | Package | State | Advisory |
|---|---|---|---|
| Red Hat Enterprise Linux 10 | opensc | Fix deferred | n/a |
| Red Hat Enterprise Linux 7 | opensc | Fix deferred | n/a |
| Red Hat Enterprise Linux 8 | opensc | Fix deferred | n/a |
| Red Hat Enterprise Linux 9 | opensc | Fix deferred | n/a |
No package ranges for this CVE.
Remediation
Red Hat mitigation
Mitigation for this issue is either not available or the currently available options do not meet the Red Hat Product Security criteria comprising ease of use and deployment, applicability to widespread installation base or stability.
References (7)
- https://access.redhat.com/security/cve/CVE-2025-66037 Vendor Advisory
- https://bugzilla.redhat.com/show_bug.cgi?id=2453122 Issue Tracking
- https://euvd.enisa.europa.eu/vulnerability/EUVD-2025-209126 Advisory
- https://github.com/OpenSC/OpenSC/security/advisories/GHSA-m58q-rmjm-mmfx x_refsource_CONFIRMExploitVendor Advisory
- https://github.com/OpenSC/OpenSC/wiki/CVE-2025-66037 x_refsource_MISCVendor Advisory
- https://nvd.nist.gov/vuln/detail/CVE-2025-66037
- https://www.cve.org/CVERecord?id=CVE-2025-66037
| Link | Providers | Tags |
|---|---|---|
| https://access.redhat.com/security/cve/CVE-2025-66037 | Vendor Advisory | |
| https://bugzilla.redhat.com/show_bug.cgi?id=2453122 | Issue Tracking | |
| https://euvd.enisa.europa.eu/vulnerability/EUVD-2025-209126 | Advisory | |
| https://github.com/OpenSC/OpenSC/security/advisories/GHSA-m58q-rmjm-mmfx | x_refsource_CONFIRMExploitVendor Advisory | |
| https://github.com/OpenSC/OpenSC/wiki/CVE-2025-66037 | x_refsource_MISCVendor Advisory | |
| https://nvd.nist.gov/vuln/detail/CVE-2025-66037 | ||
| https://www.cve.org/CVERecord?id=CVE-2025-66037 |
Change history (0)
No recorded changes yet.
CVE.org / MITRE
CISA Vulnrichment
GitHub
No data