Количество 3
Количество 3
CVE-2018-18920
Py-EVM v0.2.0-alpha.33 allows attackers to make a vm.execute_bytecode call that triggers computation._stack.values with '"stack": [100, 100, 0]' where b'\x' was expected, resulting in an execution failure because of an invalid opcode. This is reportedly related to "smart contracts can be executed indefinitely without gas being paid."
CVE-2018-18920
Py-EVM v0.2.0-alpha.33 allows attackers to make a vm.execute_bytecode ...
GHSA-vqgp-4jgj-5j64
Py-EVM is vulnerable to arbitrary bytecode injection
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVE-2018-18920 Py-EVM v0.2.0-alpha.33 allows attackers to make a vm.execute_bytecode call that triggers computation._stack.values with '"stack": [100, 100, 0]' where b'\x' was expected, resulting in an execution failure because of an invalid opcode. This is reportedly related to "smart contracts can be executed indefinitely without gas being paid." | CVSS3: 8.8 | 1% Низкий | около 7 лет назад | |
CVE-2018-18920 Py-EVM v0.2.0-alpha.33 allows attackers to make a vm.execute_bytecode ... | CVSS3: 8.8 | 1% Низкий | около 7 лет назад | |
GHSA-vqgp-4jgj-5j64 Py-EVM is vulnerable to arbitrary bytecode injection | CVSS3: 8.8 | 1% Низкий | около 7 лет назад |
Уязвимостей на страницу