Known Vulnerabilities for Opensc by Opensc Project
Listed below are 10 of the newest known vulnerabilities associated with "Opensc" by "Opensc Project".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-40528 json | OpenSC before 0.27.0, fixed in commit 0358817, contains a stack and heap buffer overrun vulnerability in the do_key_value() f... | Not Provided | 2026-05-29 | 2026-05-29 |
| CVE-2026-40510 json | OpenSC before 0.27.0-rc1, fixed in commit 3f24f0b, contains a stack buffer overflow vulnerability in piv_process_history() in... | Not Provided | 2026-05-29 | 2026-05-29 |
| CVE-2026-10275 json | A flaw has been found in OpenSC up to 0.26.1. This affects the function test_kpgen_certwrite of the file src/tools/pkcs11-too... | Not Provided | 2026-06-01 | 2026-06-01 |
| CVE-2025-66215 json | OpenSC is an open source smart card tools and middleware. Prior to version 0.27.0, an attacker with physical access to the co... | Not Provided | 2026-03-30 | 2026-03-31 |
| CVE-2025-66038 json | OpenSC is an open source smart card tools and middleware. Prior to version 0.27.0, sc_compacttlv_find_tag searches a compact-... | Not Provided | 2026-03-30 | 2026-04-01 |
| CVE-2025-66037 json | OpenSC is an open source smart card tools and middleware. Prior to version 0.27.0, feeding a crafted input to the fuzz_pkcs15... | Not Provided | 2026-03-30 | 2026-03-30 |
| CVE-2025-49010 json | OpenSC is an open source smart card tools and middleware. Prior to version 0.27.0, an attacker with physical access to the co... | Not Provided | 2026-03-30 | 2026-03-30 |
| CVE-2023-40661 json | Several memory vulnerabilities were identified within the OpenSC packages, particularly in the card enrollment process using ... | 6.4 - MEDIUM | 2023-11-06 | 2023-11-14 |
| CVE-2023-40660 json | A flaw was found in OpenSC packages that allow a potential PIN bypass. When a token/card is authenticated by one process, it ... | 6.6 - MEDIUM | 2023-11-06 | 2023-11-14 |
| CVE-2023-5992 json | ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new secur... | 5.9 - MEDIUM | 2024-01-31 | 2024-03-16 |
Known Affected Configurations (CPE V2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Opensc Project | Opensc | 0.3.1 | |||
| Application | Opensc Project | Opensc | 0.3.0 | |||
| Application | Opensc Project | Opensc | 0.20.0 | |||
| Application | Opensc Project | Opensc | 0.20.0 | |||
| Application | Opensc Project | Opensc | 0.20.0 | |||
| Application | Opensc Project | Opensc | 0.20.0 | |||
| Application | Opensc Project | Opensc | 0.2.0 | |||
| Application | Opensc Project | Opensc | 0.19.0 | |||
| Application | Opensc Project | Opensc | 0.19.0 | |||
| Application | Opensc Project | Opensc | 0.19.0 | |||
| Application | Opensc Project | Opensc | 0.18.0 | |||
| Application | Opensc Project | Opensc | 0.18.0 | |||
| Application | Opensc Project | Opensc | 0.18.0 | |||
| Application | Opensc Project | Opensc | 0.18.0 | |||
| Application | Opensc Project | Opensc | 0.17.0 | |||
| Application | Opensc Project | Opensc | 0.17.0 | |||
| Application | Opensc Project | Opensc | 0.17.0 | |||
| Application | Opensc Project | Opensc | 0.17.0 | |||
| Application | Opensc Project | Opensc | 0.16.0 | |||
| Application | Opensc Project | Opensc | 0.16.0 |