wxBitcoin and bitcoind before 0.3.13 do not properly handle bitcoins associated with Bitcoin transactions that have zero confirmations, which allows remote attackers to cause a denial of service (invalid-transaction flood) by sending low-valued transactions without transaction fees.
References
Link | Resource |
---|---|
http://www.bitcoin.org/smf/index.php?topic=1306.0 | |
https://en.bitcoin.it/wiki/CVEs | Vendor Advisory |
http://www.bitcoin.org/smf/index.php?topic=1306.0 | |
https://en.bitcoin.it/wiki/CVEs | Vendor Advisory |
Configurations
Configuration 1 (hide)
|
History
21 Nov 2024, 01:22
Type | Values Removed | Values Added |
---|---|---|
References | () http://www.bitcoin.org/smf/index.php?topic=1306.0 - | |
References | () https://en.bitcoin.it/wiki/CVEs - Vendor Advisory |
Information
Published : 2012-08-06 16:55
Updated : 2024-11-21 01:22
NVD link : CVE-2010-5140
Mitre link : CVE-2010-5140
CVE.ORG link : CVE-2010-5140
JSON object : View
Products Affected
bitcoin
- bitcoin_core
- wxbitcoin
CWE
CWE-119
Improper Restriction of Operations within the Bounds of a Memory Buffer