CVE-2018-16424

Published
View on NVD ↗
CVSS v3
N/A
CVSS v2
4.6
MEDIUM
Affected
1
PROJECT

Description

A double free when handling responses in read_file in tools/egk-tool.c (aka the eGK card tool) in OpenSC before 0.19.0-rc1 could be used by attackers able to supply crafted smartcards to cause a denial of service (application crash) or possibly have unspecified other impact.

Open source smart card tools and middleware. PKCS#11/MiniDriver
GitHubGitHub
3.03K