Bitcoin Core Under Attack: Remote Denial of Service Vulnerability Discovered
CVE-2024-52918

Currently unrated

Key Information:

Vendor

Bitcoin

Vendor
CVE Published:
18 November 2024

What is CVE-2024-52918?

A vulnerability exists in Bitcoin-Qt, part of the Bitcoin Core software suite, prior to version 0.20.0, which can be exploited by remote attackers. By sending a specially crafted BIP21 URL with a large file parameter, an attacker can induce a denial of service condition, leading to excessive memory usage and potential application crashes. This vulnerability emphasizes the importance of securing software interfaces against malformed inputs to prevent disruption of services.

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.