Vulnerability Description
Stack overflow vulnerability in OpenSC smart card middleware before 0.23 via crafted responses to APDUs.
CVSS Score
7.5
HIGH
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Opensc Project | Opensc | < 0.22.0 |
Related Weaknesses (CWE)
References
- https://bugs.chromium.org/p/oss-fuzz/issues/detail?id=27719Issue TrackingMailing List
- https://bugs.chromium.org/p/oss-fuzz/issues/detail?id=28185Issue TrackingMailing List
- https://bugs.chromium.org/p/oss-fuzz/issues/detail?id=28383Issue TrackingMailing List
- https://bugs.chromium.org/p/oss-fuzz/issues/detail?id=28768Issue TrackingMailing List
- https://bugs.chromium.org/p/oss-fuzz/issues/detail?id=28843Issue TrackingMailing List
- https://bugs.chromium.org/p/oss-fuzz/issues/detail?id=28855Issue TrackingMailing List
- https://bugs.chromium.org/p/oss-fuzz/issues/detail?id=29912Issue TrackingMailing List
- https://bugs.chromium.org/p/oss-fuzz/issues/detail?id=30112Issue TrackingMailing List
- https://bugs.chromium.org/p/oss-fuzz/issues/detail?id=30800Issue TrackingMailing List
- https://bugs.chromium.org/p/oss-fuzz/issues/detail?id=31448Issue TrackingMailing List
- https://bugs.chromium.org/p/oss-fuzz/issues/detail?id=31540Issue TrackingMailing List
- https://bugs.chromium.org/p/oss-fuzz/issues/detail?id=32149Issue TrackingMailing List
- https://bugs.chromium.org/p/oss-fuzz/issues/detail?id=27719Issue TrackingMailing List
- https://bugs.chromium.org/p/oss-fuzz/issues/detail?id=28185Issue TrackingMailing List
- https://bugs.chromium.org/p/oss-fuzz/issues/detail?id=28383Issue TrackingMailing List
FAQ
What is CVE-2021-34193?
CVE-2021-34193 is a vulnerability with a CVSS score of 7.5 (HIGH). Stack overflow vulnerability in OpenSC smart card middleware before 0.23 via crafted responses to APDUs.
How severe is CVE-2021-34193?
CVE-2021-34193 has been rated HIGH with a CVSS base score of 7.5/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2021-34193?
Check the references section above for vendor advisories and patch information. Affected products include: Opensc Project Opensc.