Описание
A design flaw in Go-Ethereum 1.10.12 and older versions allows an attacker node to send 5120 future transactions with a high gas price in one message, which can purge all of pending transactions in a victim node's memory pool, causing a denial of service (DoS).
Ссылки
- Broken LinkNot Applicable
- Broken Link
- ExploitMitigationTechnical DescriptionThird Party Advisory
- ExploitMitigationTechnical DescriptionThird Party Advisory
- Broken LinkNot Applicable
- Broken Link
- ExploitMitigationTechnical DescriptionThird Party Advisory
- ExploitMitigationTechnical DescriptionThird Party Advisory
Уязвимые конфигурации
Конфигурация 1Версия до 1.10.12 (включая)
cpe:2.3:a:ethereum:go_ethereum:*:*:*:*:*:*:*:*
EPSS
Процентиль: 67%
0.00533
Низкий
7.5 High
CVSS3
5 Medium
CVSS2
Дефекты
NVD-CWE-noinfo
Связанные уязвимости
CVSS3: 7.5
debian
почти 4 года назад
A design flaw in Go-Ethereum 1.10.12 and older versions allows an atta ...
EPSS
Процентиль: 67%
0.00533
Низкий
7.5 High
CVSS3
5 Medium
CVSS2
Дефекты
NVD-CWE-noinfo