bitcoind and Bitcoin-Qt prior to 0.15.1 have a stack-based buffer overflow if an attacker-controlled SOCKS proxy server is used. This results from an integer signedness error when the proxy server responds with an acknowledgement of an unexpected target domain name.
Published at: March 12, 2020 at 05:15PM
View on website
More Stories
New vulnerability on the NVD: CVE-2020-19107
New vulnerability on the NVD: CVE-2020-19108
New vulnerability on the NVD: CVE-2020-19109