ALSA-2023:7160
Dashboard / Vulnerabilities / ALSA-2023:7160
Summary: Low: opensc security and bug fix update
Details: The OpenSC set of libraries and utilities provides support for working with smart cards. OpenSC focuses on cards that support cryptographic operations and enables their use for authentication, mail encryption, or digital signatures. Security Fix(es): * opensc: buffer overrun vulnerability in pkcs15 cardos_have_verifyrc_package (CVE-2023-2977) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section. Additional Changes: For detailed information on changes in this release, see the AlmaLinux Release Notes linked from the References section.
References: https://access.redhat.com/errata/RHSA-2023:7160, https://access.redhat.com/security/cve/CVE-2023-2977, https://bugzilla.redhat.com/2211088, https://errata.almalinux.org/8/ALSA-2023-7160.html
Affected packages
Package
Name: opensc
Purl: pkg:rpm/almalinux/opensc
Affected ranges
Type: ECOSYSTEM
Events:
