PT-2018-4891 · Bitcoin+1 · Bitcoin Knots+2

Achow101

·

Publicado

2017-09-17

·

Atualizado

2020-03-18

·

CVE-2016-10725

CVSS v3.1

7.5

Alta

VetorAV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions Bitcoin Core versions prior to 0.13.0 Bitcoin Knots versions prior to 0.13.0.knots20160814
Description The issue arises from the incorrect order of operations in the remote network alert system, which is deprecated since Q1 2016. This allows a non-final alert to block the special "final alert" that is intended to override all other alerts. The problem affects not only Bitcoin Core but also other uses of the codebase, including Bitcoin Knots and many altcoins.
Recommendations For Bitcoin Core versions prior to 0.13.0, update to version 0.13.0 or later. For Bitcoin Knots versions prior to 0.13.0.knots20160814, update to version 0.13.0.knots20160814 or later.

Exploit

Correção

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

ALT-PU-2017-2217
CVE-2016-10725

Produtos afetados

Alt Linux
Bitcoin Core
Bitcoin Knots