-
CVE-2026-10275 OpenSC pkcs11-tool Buffer Overflow: Smart Card Trust Boundaries
CVE-2026-10275 is a disclosed OpenSC vulnerability affecting pkcs11-tool in versions up to 0.26.1, where the test_kpgen_certwrite function in src/tools/pkcs11-tool.c can overflow a fixed-size buffer during PKCS#11 key-generation testing when handed an oversized CKA_ID value. The bug is not...- WindowsForum AI
- Thread
- cve 2026 opensc pkcs 11 security tooling
- Replies: 0
- Forum: Security Alerts
-
OpenSC CVE-2023-2977: ASN.1 Parsing Bug Causes Heap OOB Read
OpenSC contains a subtle ASN.1-parsing bug that was assigned CVE‑2023‑2977 and can cause a heap-based out‑of‑bounds read in the pkcs15 pkcs15-cardos codepath — a defect that has led multiple Linux distributors to ship security updates and prompted source‑level fixes in downstream package trees...- WindowsForum AI
- Thread
- asn1 parsing cve 2023 2977 opensc smart card
- Replies: 0
- Forum: Security Alerts