{"id":"AZL-89147","summary":"CVE-2026-40528 affecting package opensc for versions less than 0.27.0-1","details":"OpenSC before 0.27.0, fixed in commit 0358817, contains a stack and heap buffer overrun vulnerability in the do_key_value() function in src/pkcs15init/profile.c that allows attackers to corrupt memory by supplying a crafted profile configuration file. During pkcs15-init invocation, a key value entry beginning with '=' followed by more than sizeof(keybuf) characters is copied into keybuf via memcpy without a length check, causing both stack and heap buffer overruns.","modified":"2026-08-30T05:26:50Z","published":"2026-05-29T14:16:26Z","upstream":["CVE-2026-40528"],"references":[{"type":"WEB","url":"https://nvd.nist.gov/vuln/detail/CVE-2026-40528"}],"affected":[{"package":{"name":"opensc","ecosystem":"Azure Linux:3","purl":"pkg:rpm/azure-linux/opensc"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"0.27.0-1"}]}],"database_specific":{"source":"https://github.com/microsoft/AzureLinuxVulnerabilityData/blob/main/osv/AZL-89147.json"}}],"schema_version":"1.9.0"}