Vulnerabilities > Opensc Project > Opensc > 0.21.0

DATE CVE VULNERABILITY TITLE RISK
2024-09-03 CVE-2024-45615 Use of Uninitialized Resource vulnerability in multiple products
A vulnerability was found in OpenSC, OpenSC tools, PKCS#11 module, minidriver, and CTK.
high complexity
redhat opensc-project CWE-908
3.9
2024-09-03 CVE-2024-45616 Use of Uninitialized Resource vulnerability in multiple products
A vulnerability was found in OpenSC, OpenSC tools, PKCS#11 module, minidriver, and CTK.
high complexity
redhat opensc-project CWE-908
3.9
2024-09-03 CVE-2024-45617 Use of Uninitialized Resource vulnerability in multiple products
A vulnerability was found in OpenSC, OpenSC tools, PKCS#11 module, minidriver, and CTK.
high complexity
redhat opensc-project CWE-908
3.9
2024-09-03 CVE-2024-45618 Use of Uninitialized Resource vulnerability in multiple products
A vulnerability was found in pkcs15-init in OpenSC.
high complexity
redhat opensc-project CWE-908
3.9
2024-09-03 CVE-2024-45619 Classic Buffer Overflow vulnerability in multiple products
A vulnerability was found in OpenSC, OpenSC tools, PKCS#11 module, minidriver, and CTK.
low complexity
redhat opensc-project CWE-120
4.3
2024-09-03 CVE-2024-45620 Classic Buffer Overflow vulnerability in multiple products
A vulnerability was found in the pkcs15-init tool in OpenSC.
high complexity
redhat opensc-project CWE-120
3.9
2024-02-12 CVE-2024-1454 The use-after-free vulnerability was found in the AuthentIC driver in OpenSC packages, occuring in the card enrolment process using pkcs15-init when a user or administrator enrols or modifies cards. 3.4
2024-01-31 CVE-2023-5992 A vulnerability was found in OpenSC where PKCS#1 encryption padding removal is not implemented as side-channel resistant.
network
high complexity
opensc-project redhat
5.9
2023-11-06 CVE-2023-40660 Improper Authentication vulnerability in multiple products
A flaw was found in OpenSC packages that allow a potential PIN bypass.
low complexity
opensc-project redhat CWE-287
6.6
2023-11-06 CVE-2023-40661 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in multiple products
Several memory vulnerabilities were identified within the OpenSC packages, particularly in the card enrollment process using pkcs15-init when a user or administrator enrolls cards.
low complexity
opensc-project redhat CWE-119
6.4