Описание
profanity through 1.60 has only four billion possible RNG initializations. Thus, attackers can recover private keys from Ethereum vanity addresses and steal cryptocurrency, as exploited in the wild in June 2022.
Ссылки
- Third Party Advisory
- Third Party Advisory
- Issue TrackingThird Party Advisory
- Third Party Advisory
- Third Party Advisory
- Issue TrackingThird Party Advisory
Уязвимые конфигурации
Конфигурация 1Версия до 1.60 (включая)
cpe:2.3:a:profanity_project:profanity:*:*:*:*:*:*:*:*
EPSS
Процентиль: 75%
0.00902
Низкий
7.5 High
CVSS3
Дефекты
CWE-338
Связанные уязвимости
CVSS3: 7.5
github
больше 3 лет назад
profanity through 1.60 has only four billion possible RNG initializations. Thus, attackers can recover private keys from Ethereum vanity addresses and steal cryptocurrency, as exploited in the wild in June 2022.
EPSS
Процентиль: 75%
0.00902
Низкий
7.5 High
CVSS3
Дефекты
CWE-338