CVE-2018-17145
Bitcoin Core 0.16.x before 0.16.2 and Bitcoin Knots 0.16.x before 0.16.2 allow remote denial of service via a flood of multiple transaction inv messages with random hashes, aka INVDoS. NOTE: this can also affect other cryptocurrencies, e.g., if they were forked from Bitcoin Core after 2017-11-15.
Published:Sep 10, 2020
Last Modified:Nov 21, 2024
EPS:Sep 10, 2020
EPSS Score:0.01133
CVSS Score:7.5
Affected Products
Vendor
Product
Action
Vendor
Bcoin
Product
Bcoin
Bcoin
Bcoin
Vendor
Bitcoin
Product
Bitcoin Core
Bitcoin
Bitcoin Core
Vendor
Bitcoinknots
Product
Bitcoin Knots
Bitcoinknots
Bitcoin Knots
Vendor
Btcd Project
Product
Btcd
Btcd Project
Btcd
Vendor
Decred
Product
Dcrd
Decred
Dcrd
Vendor
Litecoin
Product
Litecoin
Litecoin
Litecoin
Vendor
Namecoin
Product
Namecoin Core
Namecoin
Namecoin Core
Common Weakness Enumeration
Common Attack Pattern Enumeration and Classification (CAPEC)
References
Common Vulnerability Scoring System
Attack Vector
Network
Adjacent
Local
Physical
Privileges Required
None
Low
High
User Interaction
None
Required
Scope
Unchanged
Changed
Confidentiality
None
Low
High
Integrity
None
Low
High
Availability
None
Low
High
