CVE-2018-16423
Published
CVSS v3
N/A
CVSS v2
4.6
MEDIUM
Affected
1
PROJECT
Description
A double free when handling responses from a smartcard in sc_file_set_sec_attr in libopensc/sc.c in OpenSC before 0.19.0-rc1 could be used by attackers able to supply crafted smartcards to cause a denial of service (application crash) or possibly have unspecified other impact.