VYPR

PyPI package

libosdp

pkg:pypi/libosdp

Vulnerabilities (2)

  • CVE-2024-52296MedNov 12, 2024
    affected < 2.4.0fixed 2.4.0

    libosdp is an implementation of IEC 60839-11-5 OSDP (Open Supervised Device Protocol) and provides a C library with support for C++, Rust and Python3. At ospd_common.c, on the osdp_reply_name function, any reply id between REPLY_ACK and REPLY_XRD is valid, but names array do not

  • CVE-2024-52288MedNov 11, 2024
    affected < 3.0.0fixed 3.0.0

    libosdp is an implementation of IEC 60839-11-5 OSDP (Open Supervised Device Protocol) and provides a C library with support for C++, Rust and Python3. In affected versions an unexpected `REPLY_CCRYPT` or `REPLY_RMAC_I` may be introduced into an active stream when they should not