Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2021-3401

Опубликовано: 04 фев. 2021
Источник: debian
EPSS Низкий

Описание

Bitcoin Core before 0.19.0 might allow remote attackers to execute arbitrary code when another application unsafely passes the -platformpluginpath argument to the bitcoin-qt program, as demonstrated by an x-scheme-handler/bitcoin handler for a .desktop file or a web browser. NOTE: the discoverer states "I believe that this vulnerability cannot actually be exploited."

Пакеты

ПакетСтатусВерсия исправленияРелизТип
bitcoinfixed0.20.1~dfsg-1package
dogecoinfixed1.14.6-1package

Примечания

  • https://github.com/dogecoin/dogecoin/issues/2665

EPSS

Процентиль: 86%
0.03001
Низкий

Связанные уязвимости

CVSS3: 9.8
ubuntu
около 5 лет назад

Bitcoin Core before 0.19.0 might allow remote attackers to execute arbitrary code when another application unsafely passes the -platformpluginpath argument to the bitcoin-qt program, as demonstrated by an x-scheme-handler/bitcoin handler for a .desktop file or a web browser. NOTE: the discoverer states "I believe that this vulnerability cannot actually be exploited."

CVSS3: 9.8
nvd
около 5 лет назад

Bitcoin Core before 0.19.0 might allow remote attackers to execute arbitrary code when another application unsafely passes the -platformpluginpath argument to the bitcoin-qt program, as demonstrated by an x-scheme-handler/bitcoin handler for a .desktop file or a web browser. NOTE: the discoverer states "I believe that this vulnerability cannot actually be exploited."

CVSS3: 9.8
github
больше 3 лет назад

Bitcoin Core before 0.19.0 might allow remote attackers to execute arbitrary code when another application unsafely passes the -platformpluginpath argument to the bitcoin-qt program, as demonstrated by an x-scheme-handler/bitcoin handler for a .desktop file or a web browser. NOTE: the discoverer states "I believe that this vulnerability cannot actually be exploited."

EPSS

Процентиль: 86%
0.03001
Низкий