WRITEUP

WRITEUP
Exploit for CVE-2021-42778 - Opensc < 0.22.0 - Double Free
AI Analysis

This patch addresses a memory corruption vulnerability in OpenSC's IDPrime card handling, where a buffer overflow could occur due to improper handling of the token name buffer. The fix introduces a temporary variable to safely manage memory allocation and data copying.

Attack Type
info_leak
Complexity
moderate
Reliability
reliable
MITRE ATT&CK
T1006 - Direct Volume Access
Loading exploit code...
Download ZIP Password: eip
Source
Platform Writeup
Type patch
Files 1
Authors
Jakub Jelen
Vulnerability
CVE-2021-42778
Opensc < 0.22.0 - Double Free
MEDIUM
CVSS 5.3