Muscle

Pcsc-lite

6 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 6.25%
  • Veröffentlicht 23.02.2017 20:59:00
  • Zuletzt bearbeitet 20.04.2025 01:37:25

Use-after-free vulnerability in pcsc-lite before 1.8.20 allows a remote attackers to cause denial of service (crash) via a command that uses "cardsList" after the handle has been released through the SCardReleaseContext function.

  • EPSS 0.23%
  • Veröffentlicht 18.01.2011 18:03:07
  • Zuletzt bearbeitet 11.04.2025 00:51:21

Signedness error in ccid_serial.c in libccid in the USB Chip/Smart Card Interface Devices (CCID) driver, as used in pcscd in PCSC-Lite 1.5.3 and possibly other products, allows physically proximate attackers to execute arbitrary code via a smart card...

  • EPSS 0.28%
  • Veröffentlicht 18.01.2011 18:03:07
  • Zuletzt bearbeitet 11.04.2025 00:51:21

Stack-based buffer overflow in the ATRDecodeAtr function in the Answer-to-Reset (ATR) Handler (atrhandler.c) for pcscd in PCSC-Lite 1.5.3, and possibly other 1.5.x and 1.6.x versions, allows physically proximate attackers to cause a denial of service...

  • EPSS 0.04%
  • Veröffentlicht 18.06.2010 16:30:01
  • Zuletzt bearbeitet 11.04.2025 00:51:21

The MSGFunctionDemarshall function in winscard_svc.c in the PC/SC Smart Card daemon (aka PCSCD) in MUSCLE PCSC-Lite before 1.5.4 might allow local users to cause a denial of service (daemon crash) via crafted SCARD_SET_ATTRIB message data, which is i...

  • EPSS 0.02%
  • Veröffentlicht 18.06.2010 16:30:01
  • Zuletzt bearbeitet 11.04.2025 00:51:21

Buffer overflow in the MSGFunctionDemarshall function in winscard_svc.c in the PC/SC Smart Card daemon (aka PCSCD) in MUSCLE PCSC-Lite 1.5.4 and earlier might allow local users to gain privileges via crafted SCARD_CONTROL message data, which is impro...

  • EPSS 0.02%
  • Veröffentlicht 18.06.2010 16:30:01
  • Zuletzt bearbeitet 11.04.2025 00:51:21

Multiple buffer overflows in the MSGFunctionDemarshall function in winscard_svc.c in the PC/SC Smart Card daemon (aka PCSCD) in MUSCLE PCSC-Lite before 1.5.4 allow local users to gain privileges via crafted message data, which is improperly demarshal...