CVE-2019-19479: Debian Linux
Medium severity, CVSS 5.5. EPSS: 0.4% chance of exploitation in the next 30 days.
An issue was discovered in OpenSC through 0.19.0 and 0.20.x through 0.20.0-rc3. libopensc/card-setcos.c has an incorrect read operation during parsing of a SETCOS file attribute.
Affected products
- Debian Debian Linux: version 8.0 only; version 9.0 only
- Fedoraproject Fedora: version 31 only
- Opensc Project Opensc: up to and including 0.19.0; version 0.20.0 only
Published 2019-12-01. Last modified 2026-06-17.