CVE-2010-4531
published 2011-01-18CVE-2010-4531: Stack-based buffer overflow in the ATRDecodeAtr function in the Answer-to-Reset (ATR) Handler (atrhandler.c) for pcscd in PCSC-Lite 1.5.3, and possibly other…
PriorityP419medium4.4CVSS 2.0
AVLACMAuNCPIPAP
EPSS
0.50%
40.0th percentile
Stack-based buffer overflow in the ATRDecodeAtr function in the Answer-to-Reset (ATR) Handler (atrhandler.c) for pcscd in PCSC-Lite 1.5.3, and possibly other 1.5.x and 1.6.x versions, allows physically proximate attackers to cause a denial of service (crash) and possibly execute arbitrary code via a smart card with an ATR message containing a long attribute value.
Affected
6 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | pcsc-lite | < pcsc-lite 1.5.5-4 (bookworm) | pcsc-lite 1.5.5-4 (bookworm) |
| muscle | pcsc-lite | — | — |
| muscle | pcsc-lite | >= 0 < 1.5.5-4 | 1.5.5-4 |
| muscle | pcsc-lite | >= 0 < 1.5.5-4 | 1.5.5-4 |
| muscle | pcsc-lite | >= 0 < 1.5.5-4 | 1.5.5-4 |
| muscle | pcsc-lite | >= 0 < 1.5.5-4 | 1.5.5-4 |
CVSS provenance
nvdv2.04.4MEDIUMAV:L/AC:M/Au:N/C:P/I:P/A:P
osv4.4MEDIUM
vendor_debian4.4LOW
vendor_redhat4.4MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-jjwm-4fp3-g588: Stack-based buffer overflow in the ATRDecodeAtr function in the Answer-to-Reset (ATR) Handler (atrhandler
ghsa_unreviewed·2022-05-17
CVE-2010-4531 [MEDIUM] CWE-119 GHSA-jjwm-4fp3-g588: Stack-based buffer overflow in the ATRDecodeAtr function in the Answer-to-Reset (ATR) Handler (atrhandler
Stack-based buffer overflow in the ATRDecodeAtr function in the Answer-to-Reset (ATR) Handler (atrhandler.c) for pcscd in PCSC-Lite 1.5.3, and possibly other 1.5.x and 1.6.x versions, allows physically proximate attackers to cause a denial of service (crash) and possibly execute arbitrary code via a smart card with an ATR message containing a long attribute value.
OSV
CVE-2010-4531: Stack-based buffer overflow in the ATRDecodeAtr function in the Answer-to-Reset (ATR) Handler (atrhandler
osv·2011-01-18·CVSS 4.4
CVE-2010-4531 [MEDIUM] CVE-2010-4531: Stack-based buffer overflow in the ATRDecodeAtr function in the Answer-to-Reset (ATR) Handler (atrhandler
Stack-based buffer overflow in the ATRDecodeAtr function in the Answer-to-Reset (ATR) Handler (atrhandler.c) for pcscd in PCSC-Lite 1.5.3, and possibly other 1.5.x and 1.6.x versions, allows physically proximate attackers to cause a denial of service (crash) and possibly execute arbitrary code via a smart card with an ATR message containing a long attribute value.
Ubuntu
PCSC-Lite vulnerability
vendor_ubuntu·2011-04-27
CVE-2010-4531 PCSC-Lite vulnerability
Title: PCSC-Lite vulnerability
Summary: PCSC-Lite could be made to crash or run programs if it accessed a special
smart card.
Rafael Dominguez Vega discovered that PCSC-Lite incorrectly handled smart
cards with malformed ATR messages. An attacker having physical access
could exploit this with a special smart card and cause a denial of service
or execute arbitrary code.
Instructions: After a standard system update you need to restart smart card applications
to make all the necessary changes.
Red Hat
pcsc-lite: Stack-based buffer overflow in Answer-to-Reset (ATR) decoder
vendor_redhat·2010-12-13·CVSS 4.4
CVE-2010-4531 [MEDIUM] CWE-121 pcsc-lite: Stack-based buffer overflow in Answer-to-Reset (ATR) decoder
pcsc-lite: Stack-based buffer overflow in Answer-to-Reset (ATR) decoder
Stack-based buffer overflow in the ATRDecodeAtr function in the Answer-to-Reset (ATR) Handler (atrhandler.c) for pcscd in PCSC-Lite 1.5.3, and possibly other 1.5.x and 1.6.x versions, allows physically proximate attackers to cause a denial of service (crash) and possibly execute arbitrary code via a smart card with an ATR message containing a long attribute value.
Package: pcsc-lite (Red Hat Enterprise Linux 5) - Will not fix
Debian
CVE-2010-4531: pcsc-lite - Stack-based buffer overflow in the ATRDecodeAtr function in the Answer-to-Reset ...
vendor_debian·2010·CVSS 4.4
CVE-2010-4531 [MEDIUM] CVE-2010-4531: pcsc-lite - Stack-based buffer overflow in the ATRDecodeAtr function in the Answer-to-Reset ...
Stack-based buffer overflow in the ATRDecodeAtr function in the Answer-to-Reset (ATR) Handler (atrhandler.c) for pcscd in PCSC-Lite 1.5.3, and possibly other 1.5.x and 1.6.x versions, allows physically proximate attackers to cause a denial of service (crash) and possibly execute arbitrary code via a smart card with an ATR message containing a long attribute value.
Scope: local
bookworm: resolved (fixed in 1.5.5-4)
bullseye: resolved (fixed in 1.5.5-4)
forky: resolved (fixed in 1.5.5-4)
sid: resolved (fixed in 1.5.5-4)
trixie: resolved (fixed in 1.5.5-4)
No detection rules found.
No public exploits indexed.
http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=607781http://labs.mwrinfosecurity.com/files/Advisories/mwri_pcsc-atr-handler-buffer-overflow_2010-12-13.pdfhttp://lists.alioth.debian.org/pipermail/pcsclite-cvs-commit/2010-November/004923.htmlhttp://lists.fedoraproject.org/pipermail/package-announce/2011-January/053079.htmlhttp://lists.fedoraproject.org/pipermail/package-announce/2011-January/053095.htmlhttp://secunia.com/advisories/42912http://secunia.com/advisories/43112http://www.debian.org/security/2011/dsa-2156http://www.mandriva.com/security/advisories?name=MDVSA-2011:015http://www.openwall.com/lists/oss-security/2010/12/22/7http://www.openwall.com/lists/oss-security/2011/01/03/3http://www.securityfocus.com/bid/45450http://www.vupen.com/english/advisories/2010/3264http://www.vupen.com/english/advisories/2011/0101http://www.vupen.com/english/advisories/2011/0180http://www.vupen.com/english/advisories/2011/0256https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2010-4531http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=607781http://labs.mwrinfosecurity.com/files/Advisories/mwri_pcsc-atr-handler-buffer-overflow_2010-12-13.pdfhttp://lists.alioth.debian.org/pipermail/pcsclite-cvs-commit/2010-November/004923.htmlhttp://lists.fedoraproject.org/pipermail/package-announce/2011-January/053079.htmlhttp://lists.fedoraproject.org/pipermail/package-announce/2011-January/053095.htmlhttp://secunia.com/advisories/42912http://secunia.com/advisories/43112http://www.debian.org/security/2011/dsa-2156http://www.mandriva.com/security/advisories?name=MDVSA-2011:015http://www.openwall.com/lists/oss-security/2010/12/22/7http://www.openwall.com/lists/oss-security/2011/01/03/3http://www.securityfocus.com/bid/45450http://www.vupen.com/english/advisories/2010/3264http://www.vupen.com/english/advisories/2011/0101http://www.vupen.com/english/advisories/2011/0180http://www.vupen.com/english/advisories/2011/0256https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2010-4531
2011-01-18
Published