Записи bitcoin
59 опубликованных записей вендора bitcoin.
Профиль для исследователя
- Попали в KEV
- 0 · 0 %
- С эксплойтом
- 0 · 0 %
- Pre-auth RCE
- 3
- С записью об исправлении
- 13,6 %
- Медиана: публикация → KEV
- Ни одна запись не попала в KEV
Повторяющиеся классы
- CWE-770 Allocation of Resources Without Limits or Throttling10
- CWE-400 Uncontrolled Resource Consumption5
- CWE-399 Resource Management Errors4
- CWE-190 Integer Overflow or Wraparound3
- CWE-200 Exposure of Sensitive Information to an Unauthorized Actor3
- CWE-20 Improper Input Validation2
Классы уязвимостей, которые чаще всего встречаются у этого вендора: куда смотреть.
CWEВсе записи
59 записей| Срочность | CVE | Уязвимость | Критичность | KEV | EPSS | Опубликовано |
|---|---|---|---|---|---|---|
42В плане | CVE-2021-3401Эксплойта нет | Bitcoin Core before 0.19.0 might allow remote attackers to execute arbitrary code when another application unsafely passes the -platformplugbitcoin · bitcoin · CWE-88 | Критическая9,8 | — | 10,5 % | 4 февр. 2021 г. |
39Наблюдать | CVE-2015-20111Эксплойта нет | miniupnp before 4c90b87, as used in Bitcoin Core before 0.12 and other products, lacks checks for snprintf return values, leading to a buffeCWE-120 | Критическая9,8 | — | 1,3 % | 18 нояб. 2024 г. |
32Наблюдать | CVE-2018-17144Proof of concept | Bitcoin Core 0.14.x before 0.14.3, 0.15.x before 0.15.2, and 0.16.x before 0.16.3 and Bitcoin Knots 0.14.x through 0.16.x before 0.16.3 allobitcoin · bitcoin core | Высокая7,5 | — | 6,7 % | 19 сент. 2018 г. |
32Наблюдать | CVE-2012-4684Эксплойта нет | The alert functionality in bitcoind and Bitcoin-Qt before 0.7.0 supports different character representations of the same signature data, butbitcoin · bitcoin-qt · CWE-399 | Высокая7,8 | — | 2,9 % | 12 мар. 2013 г. |
32Наблюдать | CVE-2013-2292Эксплойта нет | bitcoind and Bitcoin-Qt 0.8.0 and earlier allow remote attackers to cause a denial of service (electricity consumption) by mining a block tobitcoin · bitcoin-qt · CWE-399 | Высокая7,8 | — | 2,6 % | 12 мар. 2013 г. |
31Наблюдать | CVE-2012-1910Эксплойта нет | Bitcoin-Qt 0.5.0.x before 0.5.0.5; 0.5.1.x, 0.5.2.x, and 0.5.3.x before 0.5.3.1; and 0.6.x before 0.6.0rc4 on Windows does not use MinGW mulbitcoin · bitcoin-qt | Высокая7,5 | — | 4,5 % | 6 авг. 2012 г. |
31Наблюдать | CVE-2018-17145Эксплойта нет | Bitcoin Core 0.16.x before 0.16.2 and Bitcoin Knots 0.16.x before 0.16.2 allow remote denial of service via a flood of multiple transaction bitcoin · bitcoin core · CWE-400 | Высокая7,5 | — | 4,1 % | 10 сент. 2020 г. |
31Наблюдать | CVE-2017-9230Эксплойта нет | The Bitcoin Proof-of-Work algorithm does not consider a certain attack methodology related to 80-byte block headers with a variety of initiabitcoin · bitcoin · CWE-338 | Высокая7,5 | — | 3,3 % | 24 мая 2017 г. |
31Наблюдать | CVE-2020-14198Эксплойта нет | Bitcoin Core 0.20.0 allows remote denial of service.bitcoin · bitcoin core | Высокая7,5 | — | 3,2 % | 10 сент. 2020 г. |
31Наблюдать | CVE-2010-5139Эксплойта нет | Integer overflow in wxBitcoin and bitcoind before 0.3.11 allows remote attackers to bypass intended economic restrictions and create many bibitcoin · bitcoin core · CWE-189 | Высокая7,5 | — | 2,7 % | 6 авг. 2012 г. |
31Наблюдать | CVE-2016-10725Эксплойта нет | In Bitcoin Core before v0.13.0, a non-final alert is able to block the special "final alert" (which is supposed to override all other alertsbitcoin · bitcoin core · CWE-310 | Высокая7,5 | — | 2,5 % | 5 июл. 2018 г. |
31Наблюдать | CVE-2016-10724Эксплойта нет | Bitcoin Core before v0.13.0 allows denial of service (memory exhaustion) triggered by the remote network alert system (deprecated since Q1 2bitcoin · bitcoin core · CWE-400 | Высокая7,5 | — | 2,3 % | 5 июл. 2018 г. |
31Наблюдать | CVE-2017-12842Эксплойта нет | Bitcoin Core before 0.14 allows an attacker to create an ostensibly valid SPV proof for a payment to a victim who uses an SPV wallet, even ibitcoin · bitcoin core · CWE-20 | Высокая7,5 | — | 2,2 % | 16 мар. 2020 г. |
31Наблюдать | CVE-2010-5141Эксплойта нет | wxBitcoin and bitcoind before 0.3.5 do not properly handle script opcodes in Bitcoin transactions, which allows remote attackers to spend bibitcoin · bitcoin core · CWE-264 | Высокая7,5 | — | 2,2 % | 6 авг. 2012 г. |
31Наблюдать | CVE-2015-3641Эксплойта нет | bitcoind and Bitcoin-Qt prior to 0.10.2 allow attackers to cause a denial of service (disabled functionality such as a client application crbitcoin · bitcoin core | Высокая7,5 | — | 1,8 % | 12 мар. 2020 г. |
30Наблюдать | CVE-2019-15947Эксплойта нет | In Bitcoin Core 0.18.0, bitcoin-qt stores wallet.dat data unencrypted in memory.bitcoin · bitcoin core · CWE-312 | Высокая7,5 | — | 1,4 % | 5 сент. 2019 г. |
30Наблюдать | CVE-2023-33297Эксплойта нет | Bitcoin Core before 24.1, when debug mode is not used, allows attackers to cause a denial of service (e.g., CPU consumption) because draininbitcoin · bitcoin core · CWE-400 | Высокая7,5 | — | 1,4 % | 22 мая 2023 г. |
30Наблюдать | CVE-2021-3195Эксплойта нет | bitcoind in Bitcoin Core through 0.21.0 can create a new file in an arbitrary directory (e.g., outside the ~/.bitcoin directory) via a dumpwbitcoin · bitcoin core · CWE-20 | Высокая7,5 | — | 1,2 % | 26 янв. 2021 г. |
30Наблюдать | CVE-2024-35202Эксплойта нет | Bitcoin Core before 25.0 allows remote attackers to cause a denial of service (blocktxn message-handling assertion and node exit) by includibitcoin · bitcoin core · CWE-770 | Высокая7,5 | — | 0,9 % | 10 окт. 2024 г. |
30Наблюдать | CVE-2019-25220Эксплойта нет | Bitcoin Core before 24.0.1 allows remote attackers to cause a denial of service (daemon crash) via a flood of low-difficulty header chains (bitcoin · bitcoin core · CWE-770 | Высокая7,5 | — | 0,8 % | 18 нояб. 2024 г. |
30Наблюдать | CVE-2024-52915Эксплойта нет | Bitcoin Core before 0.20.0 allows remote attackers to cause a denial of service (memory consumption) via a crafted INV message.bitcoin · bitcoin core · CWE-770 | Высокая7,5 | — | 0,6 % | 18 нояб. 2024 г. |
30Наблюдать | CVE-2024-52920Эксплойта нет | Bitcoin Core before 0.20.0 allows remote attackers to cause a denial of service (infinite loop) via a malformed GETDATA message.bitcoin · bitcoin core · CWE-770 | Высокая7,5 | — | 0,6 % | 18 нояб. 2024 г. |
30Наблюдать | CVE-2023-37192Эксплойта нет | Memory management and protection issues in Bitcoin Core v22 allows attackers to modify the stored sending address within the app's memory, pbitcoin · bitcoin core · CWE-311 | Высокая7,5 | — | 0,6 % | 6 июл. 2023 г. |
30Наблюдать | CVE-2024-52914Эксплойта нет | In Bitcoin Core before 0.18.0, a node could be stalled for hours when processing the orphans of a crafted unconfirmed transaction.bitcoin · bitcoin core · CWE-770 | Высокая7,5 | — | 0,5 % | 18 нояб. 2024 г. |
30Наблюдать | CVE-2024-52916Эксплойта нет | Bitcoin Core before 0.15.0 allows a denial of service (OOM kill of a daemon process) via a flood of minimum difficulty headers.bitcoin · bitcoin core · CWE-770 | Высокая7,5 | — | 0,5 % | 18 нояб. 2024 г. |
- CVE-2021-340142В плане
Bitcoin Core before 0.19.0 might allow remote attackers to execute arbitrary code when another application unsafely passes the -platformplug
КритическаяCVSS 9,8Эксплойта нетEPSS 10 %bitcoin · bitcoin4 февр. 2021 г.
- CVE-2015-2011139Наблюдать
miniupnp before 4c90b87, as used in Bitcoin Core before 0.12 and other products, lacks checks for snprintf return values, leading to a buffe
КритическаяCVSS 9,8Эксплойта нетEPSS 1 %18 нояб. 2024 г.
- CVE-2018-1714432Наблюдать
Bitcoin Core 0.14.x before 0.14.3, 0.15.x before 0.15.2, and 0.16.x before 0.16.3 and Bitcoin Knots 0.14.x through 0.16.x before 0.16.3 allo
ВысокаяCVSS 7,5Proof of conceptEPSS 7 %bitcoin · bitcoin core19 сент. 2018 г.
- CVE-2012-468432Наблюдать
The alert functionality in bitcoind and Bitcoin-Qt before 0.7.0 supports different character representations of the same signature data, but
ВысокаяCVSS 7,8Эксплойта нетEPSS 3 %bitcoin · bitcoin-qt12 мар. 2013 г.
- CVE-2013-229232Наблюдать
bitcoind and Bitcoin-Qt 0.8.0 and earlier allow remote attackers to cause a denial of service (electricity consumption) by mining a block to
ВысокаяCVSS 7,8Эксплойта нетEPSS 3 %bitcoin · bitcoin-qt12 мар. 2013 г.
- CVE-2012-191031Наблюдать
Bitcoin-Qt 0.5.0.x before 0.5.0.5; 0.5.1.x, 0.5.2.x, and 0.5.3.x before 0.5.3.1; and 0.6.x before 0.6.0rc4 on Windows does not use MinGW mul
ВысокаяCVSS 7,5Эксплойта нетEPSS 5 %bitcoin · bitcoin-qt6 авг. 2012 г.
- CVE-2018-1714531Наблюдать
Bitcoin Core 0.16.x before 0.16.2 and Bitcoin Knots 0.16.x before 0.16.2 allow remote denial of service via a flood of multiple transaction
ВысокаяCVSS 7,5Эксплойта нетEPSS 4 %bitcoin · bitcoin core10 сент. 2020 г.
- CVE-2017-923031Наблюдать
The Bitcoin Proof-of-Work algorithm does not consider a certain attack methodology related to 80-byte block headers with a variety of initia
ВысокаяCVSS 7,5Эксплойта нетEPSS 3 %bitcoin · bitcoin24 мая 2017 г.
- CVE-2020-1419831Наблюдать
Bitcoin Core 0.20.0 allows remote denial of service.
ВысокаяCVSS 7,5Эксплойта нетEPSS 3 %bitcoin · bitcoin core10 сент. 2020 г.
- CVE-2010-513931Наблюдать
Integer overflow in wxBitcoin and bitcoind before 0.3.11 allows remote attackers to bypass intended economic restrictions and create many bi
ВысокаяCVSS 7,5Эксплойта нетEPSS 3 %bitcoin · bitcoin core6 авг. 2012 г.
- CVE-2016-1072531Наблюдать
In Bitcoin Core before v0.13.0, a non-final alert is able to block the special "final alert" (which is supposed to override all other alerts
ВысокаяCVSS 7,5Эксплойта нетEPSS 2 %bitcoin · bitcoin core5 июл. 2018 г.
- CVE-2016-1072431Наблюдать
Bitcoin Core before v0.13.0 allows denial of service (memory exhaustion) triggered by the remote network alert system (deprecated since Q1 2
ВысокаяCVSS 7,5Эксплойта нетEPSS 2 %bitcoin · bitcoin core5 июл. 2018 г.
- CVE-2017-1284231Наблюдать
Bitcoin Core before 0.14 allows an attacker to create an ostensibly valid SPV proof for a payment to a victim who uses an SPV wallet, even i
ВысокаяCVSS 7,5Эксплойта нетEPSS 2 %bitcoin · bitcoin core16 мар. 2020 г.
- CVE-2010-514131Наблюдать
wxBitcoin and bitcoind before 0.3.5 do not properly handle script opcodes in Bitcoin transactions, which allows remote attackers to spend bi
ВысокаяCVSS 7,5Эксплойта нетEPSS 2 %bitcoin · bitcoin core6 авг. 2012 г.
- CVE-2015-364131Наблюдать
bitcoind and Bitcoin-Qt prior to 0.10.2 allow attackers to cause a denial of service (disabled functionality such as a client application cr
ВысокаяCVSS 7,5Эксплойта нетEPSS 2 %bitcoin · bitcoin core12 мар. 2020 г.
- CVE-2019-1594730Наблюдать
In Bitcoin Core 0.18.0, bitcoin-qt stores wallet.dat data unencrypted in memory.
ВысокаяCVSS 7,5Эксплойта нетEPSS 1 %bitcoin · bitcoin core5 сент. 2019 г.
- CVE-2023-3329730Наблюдать
Bitcoin Core before 24.1, when debug mode is not used, allows attackers to cause a denial of service (e.g., CPU consumption) because drainin
ВысокаяCVSS 7,5Эксплойта нетEPSS 1 %bitcoin · bitcoin core22 мая 2023 г.
- CVE-2021-319530Наблюдать
bitcoind in Bitcoin Core through 0.21.0 can create a new file in an arbitrary directory (e.g., outside the ~/.bitcoin directory) via a dumpw
ВысокаяCVSS 7,5Эксплойта нетEPSS 1 %bitcoin · bitcoin core26 янв. 2021 г.
- CVE-2024-3520230Наблюдать
Bitcoin Core before 25.0 allows remote attackers to cause a denial of service (blocktxn message-handling assertion and node exit) by includi
ВысокаяCVSS 7,5Эксплойта нетEPSS 1 %bitcoin · bitcoin core10 окт. 2024 г.
- CVE-2019-2522030Наблюдать
Bitcoin Core before 24.0.1 allows remote attackers to cause a denial of service (daemon crash) via a flood of low-difficulty header chains (
ВысокаяCVSS 7,5Эксплойта нетEPSS 1 %bitcoin · bitcoin core18 нояб. 2024 г.
- CVE-2024-5291530Наблюдать
Bitcoin Core before 0.20.0 allows remote attackers to cause a denial of service (memory consumption) via a crafted INV message.
ВысокаяCVSS 7,5Эксплойта нетEPSS 1 %bitcoin · bitcoin core18 нояб. 2024 г.
- CVE-2024-5292030Наблюдать
Bitcoin Core before 0.20.0 allows remote attackers to cause a denial of service (infinite loop) via a malformed GETDATA message.
ВысокаяCVSS 7,5Эксплойта нетEPSS 1 %bitcoin · bitcoin core18 нояб. 2024 г.
- CVE-2023-3719230Наблюдать
Memory management and protection issues in Bitcoin Core v22 allows attackers to modify the stored sending address within the app's memory, p
ВысокаяCVSS 7,5Эксплойта нетEPSS 1 %bitcoin · bitcoin core6 июл. 2023 г.
- CVE-2024-5291430Наблюдать
In Bitcoin Core before 0.18.0, a node could be stalled for hours when processing the orphans of a crafted unconfirmed transaction.
ВысокаяCVSS 7,5Эксплойта нетEPSS 1 %bitcoin · bitcoin core18 нояб. 2024 г.
- CVE-2024-5291630Наблюдать
Bitcoin Core before 0.15.0 allows a denial of service (OOM kill of a daemon process) via a flood of minimum difficulty headers.
ВысокаяCVSS 7,5Эксплойта нетEPSS 1 %bitcoin · bitcoin core18 нояб. 2024 г.