PT-2023-25828 · Unknown+1 · Bitcoin Core+1

Nocyberwarforgames

·

Published

2023-07-06

·

Updated

2024-11-14

·

CVE-2023-37192

CVSS v3.1

7.5

High

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N
Name of the Vulnerable Software and Affected Versions Bitcoin Core version 22
Description The issue is related to memory management and protection in Bitcoin Core, allowing attackers to modify the stored sending address within the app's memory. This could potentially enable them to redirect Bitcoin transactions to wallets of their own choosing.
Recommendations For Bitcoin Core version 22, update to a version that includes fixes for memory management and protection issues to prevent potential transaction redirection. At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Missing Encryption of Sensitive Data

Weakness Enumeration

Related Identifiers

ALT-PU-2024-15200
CVE-2023-37192

Affected Products

Alt Linux
Bitcoin Core