CVE-2010-5137: Medium severity bitcoin vulnerability
Published Aug 6, 2012
·Updated
wxBitcoin and bitcoind before 0.3.5 allow remote attackers to cause a denial of service (daemon crash) via a Bitcoin transaction containing an OPLSHIFT script opcode.
Affected Software
2 affected components
Bitcoin Bitcoin Core<=0.3.4
Bitcoin wxBitcoin<=0.3.4
Event History
Aug 6, 2012
CVE Published
via MITRE·04:00 PM
Data Sourced
via MITRE·04:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2010-5137?
CVE-2010-5137 is classified as a denial of service vulnerability that can lead to daemon crashes.
2
How do I fix CVE-2010-5137?
To mitigate CVE-2010-5137, users should upgrade to Bitcoin versions 0.3.5 or later.
3
What software is affected by CVE-2010-5137?
CVE-2010-5137 affects wxBitcoin and bitcoind versions before 0.3.5.
4
What type of attack does CVE-2010-5137 facilitate?
CVE-2010-5137 allows remote attackers to cause a denial of service through a specific Bitcoin transaction.
5
What causes the vulnerability in CVE-2010-5137?
The vulnerability in CVE-2010-5137 is caused by handling of the OP_LSHIFT script opcode in Bitcoin transactions.