CVE-2021-42782
CVE-2021-42782
Vexday Risk Score
3Low
SSVC decision (CISA)
Track
No exploitation signal → monitor
CVSS —EPSS 2.6%KEV nãoPoC —Nuclei —Metasploit —Patch referenciado
Lifecycle
18 Apr 2022Published on NVD
Recommendation: Monitor — no exploitation signal at the moment.
Stack buffer overflow issues were found in Opensc before version 0.22.0 in various places that could potentially crash programs using the library.
Affected products
n/a · openscWant to know if your infrastructure is exposed to this?
Talk to TrueHacking →References
https://bugzilla.redhat.com/show_bug.cgi?id=2016448https://github.com/OpenSC/OpenSC/commit/1252aca9https://github.com/OpenSC/OpenSC/commit/456ac566https://github.com/OpenSC/OpenSC/commit/7114fb71https://github.com/OpenSC/OpenSC/commit/78cdab94https://github.com/OpenSC/OpenSC/commit/ae1cf0behttps://lists.debian.org/debian-lts-announce/2023/06/msg00025.htmlhttps://lists.debian.org/debian-lts-announce/2024/12/msg00026.htmlhttps://security.gentoo.org/glsa/202209-03