Mandriva Linux Security Advisory 2009-089 – OpenSC before 0.11.7 allows physically proximate attackers to bypass intended PIN requirements and read private data objects via a (1) low level APDU command or (2) debugging tool, as demonstrated by reading the 4601 or 4701 file with the opensc-explorer or opensc-tool program. The updated packages fix the issue.
You can download this advisory from the following link: https://packetstormsecurity.com/files/download/76531/MDVSA-2009-089.txt
Source: https://packetstormsecurity.com/files/76531/Mandriva-Linux-Security-Advisory-2009-089.html

