LWN.net Logo

pcsc-lite: privilege escalation

Package(s):pcsc-lite CVE #(s):CVE-2009-4901 CVE-2009-4902
Created:July 15, 2010 Updated:September 24, 2010
Description:

From the Red Hat bugzilla entry:

CVE-2009-4901: The MSGFunctionDemarshall function in winscard_svc.c in the PC/SC Smart Card daemon (aka PCSCD) in MUSCLE PCSC-Lite before 1.5.4 might allow local users to cause a denial of service (daemon crash) via crafted SCARD_SET_ATTRIB message data, which is improperly demarshalled and triggers a buffer over-read, a related issue to CVE-2010-0407.

CVE-2009-4902: Buffer overflow in the MSGFunctionDemarshall function in winscard_svc.c in the PC/SC Smart Card daemon (aka PCSCD) in MUSCLE PCSC-Lite 1.5.4 and earlier might allow local users to gain privileges via crafted SCARD_CONTROL message data, which is improperly demarshalled. NOTE: this vulnerability exists because of an incorrect fix for CVE-2010-0407.

Alerts:
Mandriva MDVSA-2010:189-1 2010-09-24
Mandriva MDVSA-2010:189 2010-09-24
SUSE SUSE-SR:2010:015 2010-08-17
openSUSE openSUSE-SU-2010:0500-1 2010-08-12
Ubuntu USN-969-1 2010-08-05
Red Hat RHSA-2010:0533-01 2010-07-14
CentOS CESA-2010:0533 2010-07-15

(Log in to post comments)

Copyright © 2013, Eklektix, Inc.
Comments and public postings are copyrighted by their creators.
Linux is a registered trademark of Linus Torvalds