security advisorybuffer overflowcritical
MWR InfoSecurity identified a buffer overflow in pcscd, middleware to access a smart card via PC/SC, which could lead to the execution of arbitrary code. . -----BEGIN PGP SIGNED MESSAGE----- Hash: SHA1 - ------------------------------------------------------------------------ Debian Security Advisory DSA-2156-1 This email address is being protected from spambots. You need JavaScript enabled to view it. http://www.debian.org/security/ Steve Kemp January 31, 2011 http://www.debian.org/security/faq - ------------------------------------------------------------------------ Package : pcscd Vulnerability : buffer overflow Problem type : local Debian-specific: no CVE ID : CVE-2010-4531 MWR InfoSecurity identified a buffer overflow in pcscd, middleware to access a smart card via PC/SC, which could lead to the execution of arbitrary code. For the stable distribution (lenny), this problem has been fixed in version 1.4.102-1+lenny4. For the testing distribution (squeeze), this problem has been fixed in version 1.5.5-4. For the unstable distribution (sid), this problem has been fixed in version 1.5.5-4. We recommend that you upgrade your pcscd packages. Further information about Debian Security Advisories, how to apply these updates to your system and frequently asked questions can be found at: http://www.debian.org/security/ Mailing list: This email address is being protected from spambots. You need JavaScript enabled to view it. . Debian Security Advisory DSA-2156-2: severe vulnerability found in pcscd poses potential risk for unauthorized smart card manipulation.. Debian Security, Buffer Overflow, Smart Card Access, pcscd Middleware. . Severity: Critical. LinuxSecurity.com Team
Jan 31, 2011
•Critical
Debian