PT-2026-2802 · Unknown · Go-Ethereum

Yenya030

·

Published

2026-01-13

·

Updated

2026-01-26

·

CVE-2026-22868

CVSS v3.1

7.5

High

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions go-ethereum (geth) versions prior to 1.16.8
Description go-ethereum (geth) is a golang execution layer implementation of the Ethereum protocol. A specially crafted message can force a vulnerable node to shutdown or crash. This can be triggered remotely without requiring authentication.
Recommendations Upgrade to version 1.16.8.

Exploit

Fix

Resource Exhaustion

RCE

Weakness Enumeration

Related Identifiers

CVE-2026-22868
GHSA-MQ3P-RRMP-79JG
GO-2026-4314
SUSE-SU-2026:0292-1

Affected Products

Go-Ethereum