oval:org.mitre.oval:def:23861

Definition Id: oval:org.mitre.oval:def:23861
 
Oval ID: oval:org.mitre.oval:def:23861
Title: ELSA-2013:0523: ccid security and bug fix update (Low)
Description: Signedness error in ccid_serial.c in libccid in the USB Chip/Smart Card Interface Devices (CCID) driver, as used in pcscd in PCSC-Lite 1.5.3 and possibly other products, allows physically proximate attackers to execute arbitrary code via a smart card with a crafted serial number that causes a negative value to be used in a memcpy operation, which triggers a buffer overflow. NOTE: some sources refer to this issue as an integer overflow.
Family: unix Class: patch
Reference(s): ELSA-2013:0523-02
CVE-2010-4530
Version: 6
Platform(s): Oracle Linux 6
Product(s): ccid
Definition Synopsis:
Definition Id: oval:org.mitre.oval:def:16594
 
Oval ID: oval:org.mitre.oval:def:16594
Title: Oracle Linux 6.x
Description: The operating system installed on the system is Oracle Linux 6.x
Family: unix Class: inventory
Reference(s): cpe:/o:oracle:linux:6
Version: 5
Platform(s): Oracle Linux 6
Product(s):
Definition Synopsis:
Referenced By:
oval:org.mitre.oval:def:23861