CVE-2018-16426

Endless recursion when handling responses from an IAS-ECC card in iasecc_select_file in libopensc/card-iasecc.c in OpenSC before 0.19.0-rc1 could be used by attackers able to supply crafted smartcards to hang or crash the opensc library using programs.
Configurations

Configuration 1

cpe:2.3:a:opensc_project:opensc:*:*:*:*:*:*:*:*

Information

Published : 2018-09-04 12:29

Updated : 2019-10-03 12:03


NVD link : CVE-2018-16426

Mitre link : CVE-2018-16426

Products Affected
CWE
CWE-674

Uncontrolled Recursion