Opensc · Opensc · CVE-2008-3972
**Name of the Vulnerable Software and Affected Versions**
OpenSC versions prior to 0.11.6
**Description**
The issue allows physically proximate attackers to exploit vulnerabilities in a smart card that the card owner expected were patched, because security updates are not applied unless the card's label matches the "OpenSC" string.
**Recommendations**
For versions prior to 0.11.6, update to version 0.11.6 or later to ensure security updates are applied to the smart card regardless of its label.