Описание
An integer overflow in the distributeBTR function of a smart contract implementation for Bitcoin Red (BTCR), an Ethereum ERC20 token, allows the owner to accomplish an unauthorized increase of digital assets by providing a large address[] array, as exploited in the wild in May 2018, aka the "ownerUnderflow" issue.
Ссылки
- Third Party Advisory
- Third Party Advisory
Уязвимые конфигурации
Конфигурация 1
cpe:2.3:a:bitcoin_red_project:bitcoin_red:-:*:*:*:*:*:*:*
EPSS
Процентиль: 63%
0.00445
Низкий
7.5 High
CVSS3
5 Medium
CVSS2
Дефекты
CWE-190
Связанные уязвимости
CVSS3: 7.5
github
больше 3 лет назад
An integer overflow in the distributeBTR function of a smart contract implementation for Bitcoin Red (BTCR), an Ethereum ERC20 token, allows the owner to accomplish an unauthorized increase of digital assets by providing a large address[] array, as exploited in the wild in May 2018, aka the "ownerUnderflow" issue.
EPSS
Процентиль: 63%
0.00445
Низкий
7.5 High
CVSS3
5 Medium
CVSS2
Дефекты
CWE-190