Opensc-project

    Dashboard / Vendors

    Products: 1
    Vulnerabilities: 5
    Known Exploited: 0
    0
    Critical Level Threats
    2
    High Level Threats
    2
    Medium Level Threats
    1
    Low Level Threats

    Vulnerabilities

    100806040200
    JanFebMarAprMayJunJulAugSepOctNovDec
    Critical Level Threats
    High Level Threats
    Medium Level Threats
    Low Level Threats

    Products Security index

    Actions
    Items Per Page

    Vulnerabilities

    CVE-2010-4523

    Multiple stack-based buffer overflows in libopensc in OpenSC 0.11.13 and earlier allow physically proximate attackers to execute arbitrary code via a long serial-number field on a smart card, related to (1) card-acos5.c, (2) card-atrust-acos.c, and (3) card-starcos.c.

    Last Modified: Apr 11, 2025
    Published: Jan 07, 2011

    CVE-2009-1603

    opensc: insecure public exponent in opensc 0.11.7

    Last Modified: Apr 23, 2026
    Published: May 08, 2009

    CVE-2009-0368

    OpenSC before 0.11.7 allows physically proximate attackers to bypass intended PIN requirements and read private data objects via a (1) low level APDU command or (2) debugging tool, as demonstrated by reading the 4601 or 4701 file with the opensc-explorer or opensc-tool program.

    Last Modified: Apr 23, 2026
    Published: Mar 02, 2009

    CVE-2008-3972

    pkcs15-tool in OpenSC before 0.11.6 does not apply security updates to a smart card unless the card's label matches the "OpenSC" string, which might allow physically proximate attackers to exploit vulnerabilities that the card owner expected were patched, as demonstrated by exploitation of CVE-2008-2235.

    Last Modified: Apr 23, 2026
    Published: Sep 10, 2008

    CVE-2008-2235

    opensc: incorrect initialization of Siemens CardOS M4 smart cards

    Last Modified: Apr 23, 2026
    Published: Jul 31, 2008
    Items Per Page
    Opensc-Project Vulnerabilities & Security CVEs | CVE-DB