Description

Bitcoin Core before 24.0.1 allows remote attackers to cause a denial of service (daemon crash) via a flood of low-difficulty header chains (aka a "Chain Width Expansion" attack) because a node does not first verify that a presented chain has enough work before committing to store it.

INFO

Published Date :

2024-11-18T00:00:00.000Z

Last Modified :

2024-11-18T16:28:52.209Z

Source :

mitre
AFFECTED PRODUCTS

The following products are affected by CVE-2019-25220 vulnerability.

Vendors Products
Bitcoin
  • Bitcoin Core

CVSS Vulnerability Scoring System

Detailed values of each vector for above chart.
Attack Vector
Attack Complexity
Privileges Required
User Interaction
Scope
Confidentiality Impact
Integrity Impact
Availability Impact