PT-2026-34554 · Unknown · Nimiq-Transaction

Published

2026-04-22

·

Updated

2026-04-23

·

CVE-2026-34067

CVSS v3.1

6.5

Medium

VectorAV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions nimiq-transaction versions prior to 1.3.0
Description The HistoryTreeProof::verify() function panics when processing a malformed proof where history.len() does not equal positions.len(), caused by an assert eq! check. Because the proof object is derived from untrusted p2p responses via ResponseTransactionsProof.proof, it is attacker-controlled at the network boundary. A malicious peer can trigger a system crash by providing a crafted inclusion proof with a length mismatch.
Recommendations Update to version 1.3.0.

Fix

Assertion Failure

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2026-34067
GHSA-264V-M8FM-76JM

Affected Products

Nimiq-Transaction