PT-2020-16368 · Ethereum · Geth

Slavikus

·

Published

2020-11-25

·

Updated

2025-08-08

·

CVE-2020-26240

CVSS v3.1

7.5

High

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N
Name of the Vulnerable Software and Affected Versions Geth versions prior to 1.9.24
Description An ethash mining DAG generation flaw in Geth could cause miners to erroneously calculate Proof of Work in an upcoming epoch. This issue is relevant only for miners, as non-mining nodes are unaffected. The flaw was observed on the ETC chain on 2020-11-06.
Recommendations For versions prior to 1.9.24, update to version 1.9.24 or later to resolve the issue. As a temporary workaround, consider restricting mining activities until the update is applied.

Fix

Weakness Enumeration

Related Identifiers

CVE-2020-26240
GHSA-V592-XF75-856P
GO-2022-0775
OPENSUSE-SU-2025:15424-1

Affected Products

Geth