Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:22097
HistoryDec 04, 2019 - 8:22 a.m.

Denial Of Service (DoS)

2019-12-0408:22:37
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
14

EPSS

0.001

Percentile

40.0%

libopenSC is susceptible to denial of service (DoS) attack. The vulnerability exists because libopensc/pkcs15-prkey.c freed memory incorrectly after the failure in the function sc_pkcs15_decode_prkdf_entry, leading to mishandling of the buffer limits for CAC certificates and an application crash.