An issue was discovered in OpenSC through 0.19.0 and 0.20.x through 0.20.0-rc3. libopensc/card-setcos.c has an incorrect read operation during parsing of a SETCOS file attribute.
{ "binaries": [ { "binary_name": "opensc", "binary_version": "0.15.0-1ubuntu1+esm3" }, { "binary_name": "opensc-pkcs11", "binary_version": "0.15.0-1ubuntu1+esm3" } ] }
{ "binaries": [ { "binary_name": "opensc", "binary_version": "0.17.0-3ubuntu0.1~esm3" }, { "binary_name": "opensc-pkcs11", "binary_version": "0.17.0-3ubuntu0.1~esm3" } ] }