CVE-2017-6953: Gemalto Smartdiag Diagnosis Tool

High severity, CVSS 7.8. EPSS: 1.3% chance of exploitation in the next 30 days.

Gemalto SmartDiag Diagnosis Tool v2.5 has a stack-based Buffer Overflow with SEH Overwrite via long "Register a new card" input fields. There may be a risk of local code execution with untrusted input to SmartDiag.exe or SymDiag.exe.

Affected products

  • Gemalto Smartdiag Diagnosis Tool: up to and including 2.5

Published 2017-05-08. Last modified 2026-06-17.