CVE-2018-17144
openSUSE Security Advisory - openSUSE-SU-2024:0052-1
Severity Score
Exploit Likelihood
Affected Versions
Public Exploits
2Exploited in Wild
-Decision
Descriptions
Bitcoin Core 0.14.x before 0.14.3, 0.15.x before 0.15.2, and 0.16.x before 0.16.3 and Bitcoin Knots 0.14.x through 0.16.x before 0.16.3 allow a remote denial of service (application crash) exploitable by miners via duplicate input. An attacker can make bitcoind or Bitcoin-Qt crash.
Bitcoin Core en versiones 0.14.x anteriores a la 0.14.3, 0.15.x anteriores a la 0.15.2 y 0.16.x anteriores a la 0.16.3 y Bitcoin Knots desde las versiones 0.14.x hasta las 0.16.x anteriores a la 0.16.3 permiten una denegación remota de servicio (cierre inesperado de la aplicación) explotable por mineros mediante entradas duplicadas. Un atacante puede provocar el cierre inesperado de bitcoind o de Bitcoin-Qt.
An update that fixes one vulnerability is now available. This update for bitcoin fixes the following issues.
CVSS Scores
SSVC
- Decision:-
Timeline
- 2018-09-18 CVE Reserved
- 2018-09-19 CVE Published
- 2018-10-16 First Exploit
- 2024-08-05 CVE Updated
- 2025-07-05 EPSS Updated
- ---------- Exploited in Wild
- ---------- KEV Due Date
CWE
CAPEC
References (7)
URL | Tag | Source |
---|---|---|
https://en.bitcoin.it/wiki/Common_Vulnerabilities_and_Exposures#CVE-2018-17144 | Third Party Advisory | |
https://github.com/JinBean/CVE-Extension | Third Party Advisory |
URL | Date | SRC |
---|---|---|
https://github.com/iioch/ban-exploitable-bitcoin-nodes | 2018-10-16 | |
https://github.com/hikame/CVE-2018-17144_POC | 2024-08-12 |
URL | Date | SRC |
---|---|---|
https://github.com/bitcoin/bitcoin/blob/v0.16.3/doc/release-notes.md | 2024-03-13 | |
https://github.com/bitcoinknots/bitcoin/blob/v0.16.3.knots20180918/doc/release-notes.md | 2024-03-13 |
URL | Date | SRC |
---|---|---|
https://bitcoincore.org/en/2018/09/18/release-0.16.3 | 2024-03-13 |
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
Bitcoin Search vendor "Bitcoin" | Bitcoin Core Search vendor "Bitcoin" for product "Bitcoin Core" | >= 0.14.0 < 0.14.3 Search vendor "Bitcoin" for product "Bitcoin Core" and version " >= 0.14.0 < 0.14.3" | - |
Affected
| ||||||
Bitcoin Search vendor "Bitcoin" | Bitcoin Core Search vendor "Bitcoin" for product "Bitcoin Core" | >= 0.15.0 < 0.15.2 Search vendor "Bitcoin" for product "Bitcoin Core" and version " >= 0.15.0 < 0.15.2" | - |
Affected
| ||||||
Bitcoin Search vendor "Bitcoin" | Bitcoin Core Search vendor "Bitcoin" for product "Bitcoin Core" | >= 0.16.0 < 0.16.3 Search vendor "Bitcoin" for product "Bitcoin Core" and version " >= 0.16.0 < 0.16.3" | - |
Affected
| ||||||
Bitcoinknots Search vendor "Bitcoinknots" | Bitcoin Knots Search vendor "Bitcoinknots" for product "Bitcoin Knots" | >= 0.14.0 < 0.16.3 Search vendor "Bitcoinknots" for product "Bitcoin Knots" and version " >= 0.14.0 < 0.16.3" | - |
Affected
|