Opensc Project / Opensc
55 CVEs
| CVE ID | Description | Severity | CVSS | Published |
|---|---|---|---|---|
| CVE-2026-10275 | OpenSC pkcs11-tool Key Generation pkcs11-tool.c test_kpgen_certwrite buffer overflow | LOW | 2.3 | Jun 1, 2026 |
| CVE-2026-40528 | OpenSC < 0.27.0 Buffer Overrun in do_key_value() via profile.c | LOW | 1.0 | May 29, 2026 |
| CVE-2026-40510 | OpenSC < 0.27.0-rc1 Stack Buffer Overflow via piv_process_history() in card-piv.c | LOW | 1.0 | May 29, 2026 |
| CVE-2025-13763 | Libopensc: opensc: multiple uses of uninitialized variable | MEDIUM | 5.7 | Apr 23, 2026 |
| CVE-2025-66215 | OpenSC: Stack-buffer-overflow WRITE in card-oberthur | MEDIUM | 6.8 | Mar 30, 2026 |
| CVE-2025-66038 | OpenSC: `sc_compacttlv_find_tag` can return out-of-bounds pointers | MEDIUM | 6.8 | Mar 30, 2026 |
| CVE-2025-66037 | OpenSC: Out of Bounds vulnerability | MEDIUM | 6.8 | Mar 30, 2026 |
| CVE-2025-49010 | OpenSC: Stack-buffer-overflow WRITE in GET RESPONSE | MEDIUM | 6.8 | Mar 30, 2026 |
| CVE-2024-8443 | Libopensc: heap buffer overflow in openpgp driver when generating key | LOW | 2.9 | Sep 10, 2024 |
| CVE-2024-45620 | Libopensc: incorrect handling of the length of buffers or files in pkcs15init | LOW | 3.9 | Sep 3, 2024 |
| CVE-2024-45619 | Libopensc: incorrect handling length of buffers or files in libopensc | MEDIUM | 4.3 | Sep 3, 2024 |
| CVE-2024-45618 | Libopensc: uninitialized values after incorrect or missing checking return values of functions in pkcs15init | LOW | 3.9 | Sep 3, 2024 |
| CVE-2024-45617 | Libopensc: uninitialized values after incorrect or missing checking return values of functions in libopensc | LOW | 3.9 | Sep 3, 2024 |
| CVE-2024-45616 | Libopensc: uninitialized values after incorrect check or usage of apdu response values in libopensc | LOW | 3.9 | Sep 3, 2024 |
| CVE-2024-45615 | Libopensc: pkcs15init: usage of uninitialized values in libopensc and pkcs15init | LOW | 3.9 | Sep 3, 2024 |
| CVE-2024-1454 | Opensc: memory use after free in authentic driver when updating token info | LOW | 3.4 | Feb 12, 2024 |
| CVE-2023-5992 | Opensc: side-channel leaks while stripping encryption pkcs#1 padding | MEDIUM | 5.9 | Jan 31, 2024 |
| CVE-2023-40661 | Opensc: multiple memory issues with pkcs15-init (enrollment tool) | MEDIUM | 6.4 | Nov 6, 2023 |
| CVE-2023-40660 | Opensc: potential pin bypass when card tracks its own login state | MEDIUM | 6.6 | Nov 6, 2023 |
| CVE-2023-4535 | Opensc: out-of-bounds read in myeid driver handling encryption using symmetric keys | MEDIUM | 4.5 | Nov 6, 2023 |
| CVE-2021-34193 | opensc: Stack overflow vulnerability in OpenSC smart card middleware | HIGH | 7.5 | Aug 22, 2023 |
| CVE-2023-2977 | opensc: buffer overrun vulnerability in pkcs15 cardos_have_verifyrc_package | HIGH | 7.1 | Jun 1, 2023 |
| CVE-2021-42778 | opensc: Heap double free in sc_pkcs15_free_tokeninfo | MEDIUM | 5.3 | Apr 18, 2022 |
| CVE-2021-42782 | opensc: Stack buffer overflow issues in various places | MEDIUM | 5.3 | Apr 18, 2022 |
| CVE-2021-42781 | opensc: Heap buffer overflow in pkcs15-oberthur.c | MEDIUM | 5.3 | Apr 18, 2022 |
Showing 1 to 25 of 55 CVEs