Logo
vulnerabilityCVE-2024-45616
Name
CVE-2024-45616
Source
NVD ( link)Debian ( link)
Description
A vulnerability was found in OpenSC, OpenSC tools, PKCS#11 module, minidriver, and CTK. An attacker could use a crafted USB Device or Smart Card, which would present the system with a specially crafted response to APDUs. The following problems were caused by insufficient control of the response APDU buffer and its length when communicating with the card.
Published Date
Updated Date
Workaround
-

Analysis#


Affected Component
Analysis
opensc
Exploitable

Vulnerability Ratings#


3.9
CVSSv31
3.9
CVSSv31
NaN
other

Others affected components#


Name
Project
Project Version
Version
Status
buildroot
2025.02.x
0.27.1
Not Affected
buildroot
master
0.27.1
Not Affected
openwrt
master
0.27.1-r1
Not Affected
openwrt
openwrt-25.12
0.26.1-r1
Not Affected
yocto
kirkstone
0.22.0
Exploitable
yocto
master
0.27.1
Not Affected