Skip to content

A DoS vulnerabilities fixed in go-ethereum v1.10.9 #583

@unclezoro

Description

@unclezoro

System information

Geth version: v1.1.5
OS & Version: Windows/Linux/OSX

A DoS vulnerabilities fixed in go-ethereum v1.10.9.

A vulnerable node is susceptible to crash when processing a maliciously crafted message from a peer, via the snap/1 protocol. The crash can be triggered by sending a malicious snap/1 GetTrieNodes package.

More details please check the report and the upstream PR

Metadata

Metadata

Assignees

No one assigned

    Labels

    No labels
    No labels

    Type

    No type

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions