Use-after-free in OpenSC - CVE-2019-19480

 

Use-after-free in OpenSC - CVE-2019-19480

Published: December 30, 2019


Vulnerability identifier: #VU23846
CSH Severity: Low
CVSS v4: 7 [CVSS:4.0/AV:P/AC:L/AT:N/PR:N/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N]
CVE-ID: CVE-2019-19480
CWE-ID: CWE-416
Exploitation vector: Local access
Exploit availability: No public exploit available

Vulnerability details

The vulnerability allows a local user to compromise vulnerable system.

The vulnerability exists due to a use-after-free error within the sc_pkcs15_decode_prkdf_entry() function in libopensc/pkcs15-prkey.c. A local user can pass specially crafted data to the application, trigger a use-after-free error and execute arbitrary code on the system.

Successful exploitation of the vulnerability may allow an attacker to compromise vulnerable system.


Affected software

OpenSC
Arch Linux
SUSE Linux Enterprise Module for Basesystem
Fedora
opensc (Alpine package)
opensc
opensc-debuginfo
opensc-debugsource

How to mitigate CVE-2019-19480

Install updates from vendor's website.

OpenSC - update to 0.20.0
opensc (Alpine package) - update to 0.20.0-r0
opensc - update to 0.19.0-3.7.1
opensc-debuginfo - update to 0.19.0-3.7.1
opensc-debugsource - update to 0.19.0-3.7.1
opensc - update to 0.20.0-3.fc31

External References

Related Security Bulletins