Описание
Bitcoin Core before 22.0 has a miniupnp infinite loop in which it allocates memory on the basis of random data received over the network, e.g., large M-SEARCH replies from a fake UPnP device.
Ссылки
- Vendor Advisory
- Third Party Advisory
Уязвимые конфигурации
Конфигурация 1Версия до 22.0 (исключая)
cpe:2.3:a:bitcoin:bitcoin_core:*:*:*:*:*:*:*:*
EPSS
Процентиль: 23%
0.00076
Низкий
6.5 Medium
CVSS3
Дефекты
CWE-770
Связанные уязвимости
CVSS3: 6.5
debian
около 1 года назад
Bitcoin Core before 22.0 has a miniupnp infinite loop in which it allo ...
CVSS3: 6.5
github
около 1 года назад
Bitcoin Core before 22.0 has a miniupnp infinite loop in which it allocates memory on the basis of random data received over the network, e.g., large M-SEARCH replies from a fake UPnP device.
EPSS
Процентиль: 23%
0.00076
Низкий
6.5 Medium
CVSS3
Дефекты
CWE-770