Common vulnerabilities and Exposures (CVE)

Skip to main content

Required CVE Record Information

Description

go-ethereum (geth) is a golang execution layer implementation of the Ethereum protocol. Prior to 1.13.15, a vulnerable node can be made to consume very large amounts of memory when handling specially crafted p2p messages sent from an attacker node. The fix has been included in geth version `1.13.15` and onwards.

CVSS 1 Total

ScoreSeverityVersionVector String
7.5HIGH3.1CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H

Updated:

This container includes required additional information provided by the CVE Program for this vulnerability.

Authorized Data Publishers