PT-2019-14817 · Bitcoin · Slp-Validate

Jcramer

·

Published

2019-11-15

·

Updated

2019-11-19

·

CVE-2019-16761

CVSS v3.1

5.7

Medium

VectorAV:N/AC:H/PR:H/UI:R/S:U/C:N/I:H/A:H
Name of the Vulnerable Software and Affected Versions slp-validate versions prior to 1.0.1
Description A specially crafted Bitcoin script can cause a discrepancy between the specified SLP consensus rules and the validation result of the slp-validate package. This allows an attacker to create a specially crafted Bitcoin script in order to cause a hard-fork from the SLP consensus.
Recommendations For versions prior to 1.0.1, upgrade to version 1.0.1 or later.

Fix

RCE

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2019-16761
GHSA-WMX6-VXCF-C3GR

Affected Products

Slp-Validate