PT-2021-23678 · Ethereum · Ethereum Consensus Protocol

Published

2021-10-20

·

Updated

2021-10-26

·

CVE-2021-42765

CVSS v3.1

7.5

High

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions Ethereum consensus protocol versions prior to 2021-10-19
Description The Proof-of-Stake (PoS) Ethereum consensus protocol allows an adversary to leverage network delay to cause a denial of service, resulting in the indefinite stalling of consensus decisions.
Recommendations For versions prior to 2021-10-19, update the Ethereum consensus protocol to a version released after 2021-10-19 to prevent the denial of service attack. At the moment, there is no information about additional mitigation measures for this issue.

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2021-42765

Affected Products

Ethereum Consensus Protocol