Denial of service in geth
CVE-2020-26242

6.5MEDIUM

Key Information:

Vendor

Ethereum

Vendor
CVE Published:
25 November 2020

What is CVE-2020-26242?

Go Ethereum, or "Geth", is the official Golang implementation of the Ethereum protocol. In Geth before version 1.9.18, there is a Denial-of-service (crash) during block processing. This is fixed in 1.9.18.

Affected Version(s)

go-ethereum < 1.9.18

References

CVSS V3.1

Score:
6.5
Severity:
MEDIUM
Confidentiality:
None
Integrity:
None
Availability:
None
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.
CVE-2020-26242 : Denial of service in geth