Blockstream c-lightning through 0.10.1 allows loss of funds because of dust HTLC exposure.
References
Link | Resource |
---|---|
https://bitcoinmagazine.com/technical/good-griefing-a-lingering-vulnerability-on-lightning-network-that-still-needs-fixing | Press/Media Coverage Third Party Advisory |
https://github.com/ElementsProject/lightning | Third Party Advisory |
https://lists.linuxfoundation.org/pipermail/lightning-dev/2020-May/002714.html | Mailing List Vendor Advisory |
https://lists.linuxfoundation.org/pipermail/lightning-dev/2021-October/003257.html | Mailing List Mitigation Vendor Advisory |
https://lists.linuxfoundation.org/pipermail/lightning-dev/2021-October/003264.html | Mailing List Vendor Advisory |
Configurations
History
No history.
Information
Published : 2021-10-04 17:15
Updated : 2024-02-28 18:48
NVD link : CVE-2021-41592
Mitre link : CVE-2021-41592
CVE.ORG link : CVE-2021-41592
JSON object : View
Products Affected
elementsproject
- c-lightning
CWE
CWE-770
Allocation of Resources Without Limits or Throttling