Lucene search

K
ubuntucveUbuntu.comUB:CVE-2023-2977
HistoryJun 01, 2023 - 12:00 a.m.

CVE-2023-2977

2023-06-0100:00:00
ubuntu.com
ubuntu.com
20
opensc
buffer overrun
smart card
asn1
heap-based buffer
vulnerability
asan

CVSS3

7.1

Attack Vector

LOCAL

Attack Complexity

LOW

Privileges Required

LOW

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

HIGH

Integrity Impact

NONE

Availability Impact

HIGH

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:H

EPSS

0

Percentile

14.8%

A vulnerbility was found in OpenSC. This security flaw cause a buffer
overrun vulnerability in pkcs15 cardos_have_verifyrc_package. The attacker
can supply a smart card package with malformed ASN1 context. The
cardos_have_verifyrc_package function scans the ASN1 buffer for 2 tags,
where remaining length is wrongly caculated due to moved starting pointer.
This leads to possible heap-based buffer oob read. In cases where ASAN is
enabled while compiling this causes a crash. Further info leak or more
damage is possible.

CVSS3

7.1

Attack Vector

LOCAL

Attack Complexity

LOW

Privileges Required

LOW

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

HIGH

Integrity Impact

NONE

Availability Impact

HIGH

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:H

EPSS

0

Percentile

14.8%